Feature: Encrypted File Storage Secure file storage for businesses End-to-end encrypted file storage and sharing with zero-knowledge security built for business. Encrypt, share and control business files Encrypt every file at the record level All files stored in Keeper are encrypted with AES-256 at the record level. Keys are generated locally on the device and protected by Keeper's zero-knowledge architecture. Only the user who owns the record, or the individuals the record is shared with, can decrypt the attached files. Authenticate securely with SSO, MFA, biometrics or master password Keeper derives authentication keys with PBKDF2 using 1,000,000 rounds from the user's master password, generating encryption keys locally. Admins can enforce Multi-Factor Authentication (MFA) and connect existing Identity Providers (IdPs) using Keeper SSO Connect®. Share files securely with teams and 3rd parties Easily share vault items across teams with fine-grained permissions and role-based access. For external users, like vendors or contractors, use One-Time Share to grant secure, time-limited access without requiring a Keeper account. Keep critical files safe and accessible from anywhere Keep employee records, contracts, financial documents, creative assets and more organized in a single location. Files are private by default, accessible only to authorized users and available across web, desktop and mobile. Seamlessly transfer files upon decommissioning Keeper enables admins to securely transfer passwords, passkeys, credentials and files to designated managers, to ensure that critical access is retained from former employees. Simply lock the vault of the decommissioned employee, transfer the contents to the recipient and delete the old account. Automate DevOps workflows with Keeper Secrets Manager Keeper Secrets Manager is an SDK for DevOps users. Using Secure File Storage, engineers can upload digital certificates and SSH keys as file attachments, and then use Keeper's CI/CD and IAC tools to easily and securely retrieve files during automation workflows. Enable encrypted file intake Keeper's bidirectional sharing enables users to send an encrypted link to any recipient, including non-Keeper users, to upload file attachments and enter any other requested information. The changes are saved directly in the Keeper Vault. Why organizations choose Keeper for secure file storage Zero trust and zero knowledge Keeper applies a zero-trust access model and zero-knowledge encryption architecture. Every access request is fully authenticated and authorized, and only end users can decrypt data. Keeper cannot access vault contents, supporting full data sovereignty and regulatory compliance. Cloud-native architecture Integrate CI/CD pipelines, DevOps tools, custom software and multi-cloud environments into a fully-managed, zero-knowledge platform to secure infrastructure secrets and reduce secrets sprawl. Centralized vault experience Employees access credentials, passkeys, secrets and encrypted files from a unified and intuitive vault interface. This simplifies workflows, reduces training costs and strengthens adoption across the organization. Keeper integrates with all major IdPs to streamline provisioning and access control.