Curated list of privacy-respecting cloud storage providers, end-to-end encryption tools, self-host options, jurisdiction analysis, and audit reports.
Companion editorial site: Priviy — independent reviews of cloud privacy providers.
- End-to-end encrypted providers
- Zero-knowledge providers
- Self-host alternatives
- Encryption layers (any provider)
- Jurisdiction & legal analysis
- Audits & transparency reports
- File-sharing tools
- Password & secrets in the cloud
- Backup tools (E2E)
- Communities
- References
- Proton Drive — Swiss, open-source clients, E2E by default.
- Tresorit — Swiss, business-focused, strong compliance suite.
- Sync.com — Canadian, E2E, generous free tier.
- Mega.io — NZ, E2E, controversial founder but tech audited.
- Filen.io — EU (Germany), open-source clients.
- Internxt — Spain, post-quantum-ready, lifetime pricing.
- pCloud Crypto — Switzerland, opt-in E2E vault (add-on).
- Tresorit — verified zero-knowledge with key escrow option.
- Sync.com — full zero-knowledge architecture.
- SpiderOak One — pioneer zero-knowledge backup.
- IceDrive — Twofish encryption, zero-knowledge tier.
- Internxt — zero-knowledge with open-source verification.
- Nextcloud — full self-host suite (files, calendar, talk, etc.).
- Seafile — performant E2E sync, open-source.
- OwnCloud Infinite Scale — Go-based modern rewrite.
- Garage — S3-compatible distributed storage.
- MinIO — high-performance S3 self-host.
- Syncthing — P2P sync without central server.
- Cryptomator — open-source client-side encryption for any cloud.
- Boxcryptor — (acquired by Dropbox, EOL but historical reference).
- rclone crypt — encryption backend with cloud-agnostic config.
- gocryptfs — Go encrypted overlay filesystem.
- age — modern simple file encryption tool.
- Editorial: E2E vs zero-knowledge cloud storage 2026 (FR).
- Editorial: E2E vs zero-knowledge cloud storage 2026 (EN).
- Five Eyes / Fourteen Eyes overview (Wikipedia).
- CLOUD Act explained — EFF.
- GDPR & cloud storage — ENISA.
- Swiss data protection law — FDPIC.
- Tresorit security audit reports.
- Proton transparency reports.
- Mega source code review (2022, Five Eyes attack).
- Tutanota security audit.
- Sync.com SOC 2 + audit.
- OnionShare — Tor-anonymous one-shot file sharing.
- Send (Firefox fork) — E2E temporary file send.
- Bitwarden Send — small files + secrets.
- Wormhole.app — Magic Wormhole web port.
- Bitwarden — open-source password manager (cloud or self-host).
- Vaultwarden — unofficial Bitwarden server in Rust.
- Proton Pass — Swiss password manager E2E.
- KeePassXC — local-first password DB.
- Restic — encrypted, deduplicated backups (any backend).
- Borg Backup — efficient deduplicating archiver.
- Duplicacy — fast lock-free deduplication.
- Arq — Mac/Windows GUI to any cloud (E2E).
- Kopia — modern Go-based encrypted backup.
- r/privacy.
- r/PrivacyToolsIO → moved to Privacy Guides.
- r/selfhosted — for self-host alternatives.
- r/cryptography.
- Privacy Guides — independent recommendations.
- PRISM Break — escape mass-surveillance services.
- EFF — Surveillance Self-Defense.
- NIST SP 800-209 — Security Guidelines for Storage Infrastructure.
PRs welcome. Providers must publish their encryption model (whitepaper or technical docs) and have at least one third-party audit OR open-source clients. Marketing-heavy entries rejected.