Tresorit
Swiss end-to-end encrypted cloud storage with zero-knowledge security - a privacy-first alternative to Dropbox
Quick Overview
| Company | Tresorit AG (Swiss Post subsidiary) |
|---|---|
| Category | Cloud Storage |
| Headquarters | Zurich, Switzerland (originally Budapest, Hungary) |
| EU Presence | Yes - Switzerland (EFTA) & Hungary (EU) |
| Data Centers | Switzerland, Ireland, Netherlands |
| Open Source | No |
| GDPR Compliant | Yes |
| End-to-End Encryption | Yes (Zero-Knowledge) |
| Main Features | E2E encryption, zero-knowledge, secure file sharing, link passwords, expiry dates, file versioning |
| Pricing | From 10.42/month (Personal) |
| Best For | Businesses and individuals requiring maximum security for sensitive files |
| Replaces | Dropbox, Google Drive, OneDrive |
Detailed Review
Tresorit is a premium end-to-end encrypted cloud storage service that has become synonymous with uncompromising security in the cloud storage space. Founded in 2011 in Budapest, Hungary, by a team of security researchers and cryptographers, the company has since relocated its headquarters to Zurich, Switzerland, and was acquired by Swiss Post in 2021. This unique Swiss-Hungarian heritage, combined with backing from one of the world's most trusted postal services, makes Tresorit a compelling choice for users who prioritize data privacy above all else.
Swiss Jurisdiction and Privacy Laws
Switzerland's position outside the European Union but within the European Economic Area provides a unique privacy advantage. Swiss data protection laws are among the strongest in the world, and the country has a long tradition of privacy and neutrality. The Swiss Federal Data Protection Act (FADP) provides robust protections, and Switzerland is not subject to EU mass surveillance directives while still maintaining GDPR adequacy status.
The acquisition by Swiss Post in 2021 further strengthened Tresorit's position. Swiss Post is a government-owned entity with over 170 years of trusted service, bringing institutional stability and credibility to Tresorit. This backing ensures long-term sustainability while maintaining Tresorit's independence in security decisions. Swiss Post has committed to preserving Tresorit's zero-knowledge architecture and not accessing user data.
Zero-Knowledge Encryption Architecture
Tresorit's zero-knowledge encryption means that all files are encrypted on the user's device before being uploaded to the cloud. The encryption keys never leave the user's device, and Tresorit has no technical ability to access the content of stored files. This is fundamentally different from services like Dropbox or Google Drive, where the provider holds the encryption keys and can technically access your files.
The service uses AES-256 encryption for files at rest and TLS for data in transit. Each file is encrypted with a unique key, and these keys are themselves encrypted with the user's password-derived master key. Even file names, folder structures, and metadata are encrypted. This comprehensive approach ensures that even if Tresorit's servers were compromised, the attacker would only find unintelligible encrypted data.
Secure File Sharing Features
One of Tresorit's standout features is its secure file sharing capabilities. Unlike basic cloud storage services, Tresorit allows you to share files and folders with granular control over access. You can set link passwords, expiration dates, download limits, and access permissions. Even when sharing with non-Tresorit users, the files remain encrypted, and recipients access them through a secure web interface.
The service also supports secure collaboration through shared folders called "tresors." Team members can be invited with different permission levels (read-only, editor, manager), and all changes are synchronized while maintaining end-to-end encryption. This makes Tresorit suitable for businesses that need to collaborate on sensitive documents without compromising security.
Business and Enterprise Features
Tresorit offers robust features for business users. Admin controls allow IT administrators to manage users, set security policies, and monitor activity without accessing file contents. Features include device management, remote wipe capabilities, and detailed audit logs. The service integrates with Active Directory and supports single sign-on (SSO) through SAML 2.0.
For regulated industries, Tresorit provides compliance certifications and documentation. The service is used by law firms, healthcare organizations, financial institutions, and government agencies that require the highest levels of data protection. Tresorit has achieved ISO 27001 certification and maintains compliance with various industry regulations including HIPAA for healthcare data.
Cross-Platform Availability
Tresorit provides applications for all major platforms including Windows, macOS, Linux, iOS, and Android. The desktop applications integrate with the file system through a virtual drive, making Tresorit files appear alongside local files in File Explorer or Finder. The mobile apps allow you to access, preview, and share files on the go, with automatic photo backup functionality.
A web interface is also available for accessing files from any browser without installing software. While the web client maintains end-to-end encryption, Tresorit recommends using the desktop or mobile apps for the most secure experience, as they provide additional protections against potential browser-based attacks.
Pricing and Value Proposition
Tresorit positions itself as a premium service, and its pricing reflects this. The Personal plan starts at 10.42 euros per month (billed annually) and includes 500GB of storage. The Professional plan at 24 euros per month offers 2TB of storage and additional features like advanced sharing controls. Business plans start at 12 euros per user per month with additional admin and collaboration features.
While more expensive than mainstream alternatives like Dropbox, Tresorit's pricing is competitive with other zero-knowledge encrypted services when comparing equivalent security features. The service accepts various payment methods including credit cards and PayPal, with business plans supporting invoicing.
Limitations to Consider
Tresorit's premium pricing may be prohibitive for casual users who don't require maximum security. There is no free tier available, only a 14-day trial. The zero-knowledge architecture also means that if you forget your password and haven't set up recovery options, your data is permanently inaccessible - this is a security feature, not a bug, but requires users to manage their passwords carefully.
File size limits exist on some plans, and the service is primarily focused on file storage rather than productivity features. If you need integrated document editing like Google Docs, you'll need to use Tresorit alongside other tools. The lack of open-source code means users must trust Tresorit's security claims, though the service has undergone independent security audits.
Who Should Use Tresorit
Tresorit is ideal for businesses and professionals handling sensitive data who cannot compromise on security. Law firms, healthcare providers, financial advisors, journalists, and anyone dealing with confidential information will find Tresorit's zero-knowledge encryption and Swiss jurisdiction reassuring. The service is also suitable for privacy-conscious individuals willing to pay a premium for true end-to-end encryption in their cloud storage.
Alternatives to Tresorit
Looking for other European cloud storage providers? Here are some alternatives worth considering:
pCloud
Swiss cloud storage with lifetime plans
Proton Drive
Swiss encrypted drive from Proton
Nextcloud
Self-hosted cloud platform
Sync.com
Canadian zero-knowledge storage
Frequently Asked Questions
Zero-knowledge encryption means that Tresorit has no knowledge of or access to your encryption keys or file contents. All encryption and decryption happens on your device, and only you hold the keys. Even if Tresorit's servers were compromised, attackers would only find encrypted data they cannot read.
Yes, Tresorit was acquired by Swiss Post in 2021. Swiss Post has committed to maintaining Tresorit's independent operations and zero-knowledge architecture. The acquisition provides institutional backing and long-term stability while preserving the service's privacy-first approach.
Due to zero-knowledge encryption, Tresorit cannot reset your password or recover your data if you forget it. However, Tresorit offers a recovery key feature that you should set up when creating your account. Store this recovery key in a safe place - it's your only way to regain access if you forget your password.
No, Tresorit does not offer a free plan. However, they provide a 14-day free trial that gives you full access to the service. This allows you to test all features before committing to a paid subscription.
The main difference is security. Tresorit uses zero-knowledge end-to-end encryption, meaning only you can access your files. Dropbox encrypts files in transit and at rest, but holds the encryption keys and can technically access your data. Tresorit is more expensive but offers significantly stronger privacy protections and Swiss jurisdiction.
Yes, Tresorit allows you to share files with anyone via secure links. Recipients don't need a Tresorit account - they can access files through a secure web interface. You can add passwords, set expiration dates, and limit the number of downloads for extra security.
Yes, Tresorit is fully GDPR compliant. Switzerland has been granted adequacy status by the EU, meaning Swiss data protection is considered equivalent to EU standards. Tresorit also offers EU data center options for users who prefer their data stored within the European Union.
Tresorit operates data centers in Switzerland, Ireland, and the Netherlands. Business users can choose their preferred data center location for compliance purposes. All data centers maintain high security standards and are certified for various industry regulations.