Technical reference

Cloak Files specifications

Cryptography, platforms, sharing, and Enterprise Gateway features at a glance.

🔒

Cloak Files specifications

Encryption
Unique cryptographic key for each user
AES encryption (256-bit and above)
RSA encryption (2048-bit and above)
Single Sign-On
Google ID, Facebook ID, Apple ID
Active Directory, LDAP (with Security Gateway)
Key Management
Tools for lost-key recovery, endpoint revocation, user revocation.
Supported Platforms
iOS 11 and above
Android N and above
Latest Chrome, Firefox, Safari, Edge
Windows 10, 8, 7, Vista, XP
macOS
Document-in-Storage Protection
All file formats.
Document-in-Transit Protection
All file formats.
Sharing
Pre-defined sharing list
Owner notification and approval of file-access requests
Privacy-by-Design
Users can choose to keep their own Cloak Key. In this mode, Cloak Apps cannot access your encryption key — the trade-off is that key recovery is not possible if you lose it. Enterprise users can also create and store users' keys at an on-premise Cloak Gateway.
🛡️

Enterprise Gateway specifications

Single Sign-On
Active Directory
LDAP
Data Messaging
Messaging queue with application-layer encryption.
Data Encryption
AES encryption (256-bit and above)
RSA encryption (2048-bit and above)
Diffie–Hellman
Multi-Factor Authentication
Cloak Mobile Token application's One-Time Password.
Mobile Token
Decouples enterprise login credentials from mobile-application authentication.
Audit / Tracking
Audit trace for user activities and administration tasks.
Reliability
Cloud services built on Amazon Web Services.
Enterprise Tools
Full-featured web-based administration console.