Any advices how to store sensitive information in cloud?

I know about cryptomator only, but it, unfortunately, doesn’t support Mega.

After some critical vulns I don’t trust Mega encryption as my one and only barrier.

Do you have any recommendations how to solve this?

1 Like

Use any other cloud storage service with Cryptomator? It works with others really well. I use it with Koofr because I can buy Koofr plans anonymously though you get 10 GB for free.

4 Likes

Self-host your own cloud with its own authentication instead.

Backblaze, scaleway s3 are cheaper. Look for rclone, cryptomator and other s3 compatible interfaces or at least use cryptomator with conventional storage solutions.

Mega was bought off from kim long time ago and has no relation to him. Mega is notorious for illegal activity, CP sharing and might not survive for long due to regulatory pressure. Mega resembles hetzner and might ban you for stacking encryption.

Always separate storage provider from the encryption solution. Don’t put eggs in one basket and use independent crypto layers.

1 Like

I wish it was so simple. I have approximately 7 GB of data I rarely use, but I need them to be present.

And paying only for 7 GB storage I rarely use? It is just impractical because I already paid Proton (no I cannot “just use Proton”, because this data must be separated in case of failure or other circumstances)

I tried searching for other services, but they either paid, either limited by space less than 5GB, either require phone number (which I DO NOT have for privacy reasons)

Is it secure enough? Because data is my documents, that can be easily used for fraud.

No-no. This is no way I do so. Too much of a hassle and it won’t solve main issue: storage must be independent from subscriptions, KYC or failures.

Can you explain?

Thats what I try to do…

1 Like

If these documents are that important then you should be paying to protect them, so what a out Peergos or Tresorit?

Otherwise, Cryptomator with OneDrive, Google, etc. gives you plenty of free storage.

1 Like

It’s about not to loose them if I somehow cannot pay for renewal (I don’t have bank card for privacy (do not confuse with bank account)), so I afraid of loosing tham because of it.

As I said:

either require phone number (which I DO NOT have for privacy reasons)

If it was so simple, I wouldn’t ask here…

1 Like

I know you just said you don’t want hastle, but here’s a sort-of-hacky “solution” if you’re not command-line phobic, don’t mind hastle and absolutely value security & privacy:

  • Buy a non-KYC virtual private server, preferably one with hard-disk drives - you can rent terabytes for cheap
  • Encrypt sensitive information using client-side encryption (Veracrypt volume or LUKS encrypted virtual disk with a randomly generated passphrase),
  • Transfer information to and from server using SFTP
  • Decrypt data only on client device.
2 Likes

Filen offers 10GB in their free plan, and don’t ask for phone number

2 Likes

If you read my comment again, you’ll find the answers present already.

Again, read my comment again. You’re using it with Cryptomator so its as secure as it can get.

3 Likes

Ah! I see what you meant. Did you tried that setup?

1 Like

I think he would answer you to read his comment again

3 Likes

Please read my comments again.

3 Likes

Both hetzner and mega ban privacy cautious people right away. Hetzner will demand citizenship information, proofs of residence but will still ban you while holding your data as a hostage. Besides that, their storagebox isn’t even redundant and only promises RAID. Don’t cheap out on cloud storage.

Please don’t.

2 Likes

That is super unfortunate. Well now I am gonna ditch Mega for sure.


Now I am exploring Koofr. Hope it will work normally.

Another way as I see - just get one more Proton account (free, up to 5GB) and compress all pics i have there with ffmpeg (but I wonder if it help to reduce 1,8GB to fit 5GB limit, and what will happen with quality).

I still prefer going with Koofr + cryptomator since I like having my own, independent encryption

1 Like

The best part about this set up in my experience is that this combination work well on all OSs, and you can buy Koofr plans that are already affordable anonymously. No other cloud storage provider does this that also has a working client on all OSs.

1 Like

OS’es is not a problem for me (all my os’es - Linux (and Android)), but it is pain in ass when I need to share some files.

Approach with Cryptomator allows me to have separate vault for sharing with family for example.

Regarding purchasing plans, yeah, it makes sense if it will work out with me. I will just cancel Mega (both) and move docs + gallery into encrypted vault…

The main kill-feature is that they accept crypto.

1 Like

Through a proxy*, but yes.

1 Like