Privacy policy
Rift is built so that we cannot read your files. This policy covers the information we do handle.
It applies to the Rift software, this website, and the network services Rift uses to connect machines and store encrypted data. Last updated 10 October 2026.
What we cannot see
We cannot see your files. File contents and file names are encrypted on your machine, with keys we never receive.
We cannot see your private keys. They are made on your machines and stay there.
Rift has no accounts. A machine or an agent is identified by a public key it makes for itself. We do see IP addresses, as described below.
What we collect
Network metadata. To connect your machines, Rift uses relay and discovery servers, and Rift Cloud uses storage hosts. These services see IP addresses, public keys, and the size and timing of encrypted traffic. Some of them are run by independent operators, who see the same information.
Website logs. Our web server records each request, including the IP address, the browser and the page. This site sets no cookies and runs no analytics.
Messages. If you email us or apply for a role, we keep what you send.
The Rift software sends us no usage analytics.
How we use it
We use this information to run the services, to keep them secure, and to answer you. We keep it only as long as that takes.
We do not sell personal information. We do not use it for advertising.
Your choices
You can ask for a copy of the personal data we hold about you, or ask us to delete it, at privacy@rift.sh.
Depending on where you live, laws such as the GDPR and the CCPA give you further rights, including the right to complain to a regulator. To use any of them, write to the same address.
Rift is not directed at children under 13.