What Drive protects
Private Drive encrypts file contents, file names, and folder names on your device before upload. Cloak receives encrypted objects, encrypted names, and the operational metadata needed to store, synchronize, version, and return them.
Cloak cannot decrypt Private Drive content or recreate a lost account number or recovery key. A recipient can decrypt an item only when you deliberately share the required link or key material with them.
What Cloak can still see
- Your random account identifier and active session state
- Encrypted object sizes, upload and modification times, and storage usage
- Connection information available to the gateway while a request is handled
- Share creation, expiry, revocation, and access events—not the encrypted file name or contents
- Payment references when you buy storage, depending on the payment method
Daily storage and recovery
Your recovery responsibility
Store the account number and recovery material somewhere separate from your synced devices. Losing them together means the vault cannot be recovered—not by support, a payment receipt, or an identity document.
Cloak is not your only backup. Keep another current copy of irreplaceable files on media or with a provider you control independently.