# Retyc > Retyc is a sovereign European encrypted file-sharing platform and secure dataroom, > built as a privacy-first and sovereign alternative to WeTransfer. It uses post-quantum > cryptography (AGE), a zero-knowledge architecture, and runs exclusively on European > infrastructure. Operated by TripleStack SAS, Lyon, France. This file is an extended version of /llms.txt, providing more context for language models and AI search engines. ## What Retyc is Retyc is an end-to-end encrypted platform for two main needs: 1. Secure file transfer, as a privacy-first alternative to services such as WeTransfer and Smash. 2. Encrypted virtual datarooms, for sharing and collaborating on sensitive documents (due diligence, M&A, audits, legal and accounting files). Everything is encrypted client-side before upload. The server only ever stores encrypted blobs and cannot read file contents or metadata (file names, sizes, types, recipients). This is what "zero-knowledge" means at Retyc: the operator is technically unable to access user data. ## Products ### File transfer (https://retyc.com/products/transfer) - Client-side encryption before upload. - End-to-end encryption with a zero-knowledge architecture. - Post-quantum cryptography based on AGE. - Encrypted metadata: file names, sizes, and types are not visible to the server. - Configurable expiration (from one hour up to several months depending on the plan) and per-recipient access control, with the ability to revoke access at any time. - Three sending modes: public transfer to email recipients (with an optional passphrase when a recipient has no Retyc key); "transfer for me," a personal link to receive files from someone; and templated transfers, a predefined checklist of documents to collect. - Recipients without a Retyc account decrypt files via a passphrase shared out of band. ### Dataroom (https://retyc.com/products/dataroom) - Encrypted virtual data rooms for sensitive document sharing and collaboration. - Per-user roles (owner, admin, editor, viewer); permissions can be changed or revoked at any time. - End-to-end encrypted activity log: downloads, file and version changes, folder operations, renames, user and role changes. Each event is timestamped and attributed, and the log is exportable to CSV. - File versioning and folder organization. - Built-in encrypted chat per dataroom. - Optional expiration on datarooms. - Same zero-knowledge, end-to-end encryption guarantees as file transfer. ## Security and technology (https://retyc.com/security/technology) - Encryption: age (modern file encryption) with hybrid post-quantum recipients (both classic age1 and post-quantum age1pq1 recipient types). Passphrase-derived keys use scrypt. - Open-source, auditable cryptography (no security through obscurity). - Architecture: zero-knowledge. The server stores only encrypted blobs and cannot decrypt any user data. - Encrypted metadata: file names, sizes, types, and user information are encrypted. - Infrastructure: all services run on European cloud providers (e.g. Scaleway, Clever Cloud) with data centers in France, for EU data sovereignty. - CLOUD Act resistant: hosting is exclusively within European Union jurisdiction. - No advertising tracking and no non-consensual cookies. - Transparency: see https://retyc.com/security/transparency for cookies, data handling, and security practices. ## White paper (https://retyc.com/resources/white-paper) A detailed technical and security white paper, available in English and French (with a downloadable PDF). It covers: - The European regulatory context (GDPR) and the real threat model for file transfers, plus why purely contractual confidentiality guarantees are not enough. - The technical architecture and security model, including an explicit account of what Retyc can and cannot do, the assumptions and deliberate limits of the model, and how residual risks are minimized. - End-to-end encryption with quantum-resistant mechanisms: age-encryption, post-quantum hybrid keys, and key management and rotation. - The zero-knowledge architecture and its implications for compliance, with its limits stated transparently. - European technological independence: 100% European hosting, hosting certifications, replication and high availability, and independence from Big Tech. - Operational transparency: open-source cryptography, a public transparency page, a zero-AI policy, an external security audit, and a vulnerability disclosure process. ## Pricing (https://retyc.com/pricing) - Transparent pricing with a free tier for file transfers. - Subscription plans for datarooms, based on storage and features. - Free tier available. ## Comparison with alternatives (https://retyc.com/resources/wetransfer-alternatives) Retyc compares itself with WeTransfer, Smash, and Swisstransfer on criteria such as: - End-to-end encryption with zero-knowledge: Retyc yes; WeTransfer, Smash, and Swisstransfer no. - Service cannot read your files: only Retyc. - Encrypted metadata: only Retyc. - Company and data hosting within the European Union: Retyc (France); WeTransfer and Smash host on AWS; Swisstransfer is Swiss. - No advertising tracking: only Retyc. - CLOUD Act resistant: Retyc (EU only) and Swisstransfer (Switzerland only). ## Email integrations Retyc supports email integration for file transfers: - Embedded email attachments. - Email attachments as a link to Retyc with client-side encryption. - Email providers can't read the file contents or metadata. Tools supported: - [Gmail](https://retyc.com/integrations/gmail) - [Outlook](https://retyc.com/integrations/outlook) - [Thunderbird](https://retyc.com/integrations/thunderbird) All these tools are open-source and fully compliant with the GDPR. ## Solutions Dedicated pages describe how Retyc fits specific professions: - [Legal](https://retyc.com/solutions/legal): datarooms and encrypted transfers for lawyers and legal departments, reinforcing professional secrecy with an auditable, zero-knowledge architecture. - [Accountants](https://retyc.com/solutions/accountants): secure client document intake, encrypted transfer of payslips and filings, GDPR-compliant retention. - [Public sector](https://retyc.com/solutions/public-sector): sovereign encrypted transfers and datarooms for administrations and local authorities, hosted in France. French public agents can sign in with ProConnect. - [Enterprise](https://retyc.com/solutions/enterprise): secure collaboration, IP protection, granular roles, custom branding, and domain on the Enterprise plan. - [Tech teams](https://retyc.com/solutions/tech): automation through the open-source SDK, CLI, and MCP server. ## Use cases Retyc targets legal professionals, DPOs, CISOs, accountants, and technical teams that require GDPR-compliant, sovereign, and secure file transfers and datarooms within the European Union. ## Company - Operated by TripleStack SAS, based in Lyon, France. - Fully independent European company, no GAFAM involvement. - Self-funded by the founders, no external funding. ## Notes - Retyc's public beta ended on 2 June 2026. - Open-source CLI client (https://github.com/retyc/cli) to integrate Retyc into workflows and automate file transfers and dataroom management. MCP server included. - Files are encrypted client-side before upload; the server never has access to unencrypted data or metadata.