Open-source software. On your server.
Run it on your own infrastructure. Unlimited users, no per-seat pricing, no vendor lock-in.
Self-hosted
Runs on your VPS, your cloud or your own hardware. Data never leaves where you put it.
Open source
Fully auditable code. Read it, fork it, self-host it. No black boxes, no telemetry.
Unlimited
Users, projects and storage. No seat counting, no usage tiers, no surprise invoices.
Encrypted
Per-storage encryption, up to full encryption where the server never holds plaintext.
One install. The whole toolkit.
Not a thin demo — a complete platform out of the box.
Multiple storage backends
Local disk or any major object store. Mix several in one install and choose per project.
Configurable encryption
Plain, server-managed, or fully password-derived — pick the guarantee that fits the data.
SSO / OIDC
Sign in with your identity provider, or enforce SSO-only login for the whole team.
Sharing boxes
Turn any folder into a controlled sharing surface with granular, per-member permissions.
Quick links
Share files with a link: custom slug, expiry date, password and a download cap.
Trash & retention
Deleted items land in a recoverable trash with a configurable auto-purge window.
Audit log
Every action recorded, with a per-event policy you tune for severity and noise.
Built-in preview
Documents, video, audio and markdown, previewed in the browser — no download needed.
AI agent access
Connect an AI agent over MCP with a scoped token and human-in-the-loop approval.
Built for the agentic era.
Speaks the Model Context Protocol. Connect an AI agent and let it work inside your files — only where you allow it, and only with your approval where you require it.
- Each agent gets a rotatable, scoped API token.
- Mark any tool as requiring your approval before it runs.
- Permissions cascade: account, then project, then folder — most specific wins.
- Agents never touch fully-encrypted storage. Every read and write is logged.
Store it wherever you trust.
Point each project at the backend that fits — a humble disk or any major object store — and mix several in one installation.
Encryption that matches the threat.
Chosen per storage, so different data can carry different guarantees inside the same installation.
- None — files stored as-is, direct client-to-storage transfers.
- Managed — strong encryption at rest with a server-held key.
- Full — files, names and metadata encrypted with keys derived from your password.
Up and running in minutes.
One image, two architectures. Connect a storage and you are done.
Run
Run the install script or pull the Docker image onto your server.
Configure
Connect a storage backend and pick the encryption mode that fits.
Invite
Add teammates by email, SSO, or a shareable sign-up link.
Quick answers.
Is it really free?
What does self-hosted mean?
Which storage backends are supported?
Does it support single sign-on?
Can AI agents use it?
What are the hardware requirements?
Run your own instance today.
Free, open source and yours to keep.