CryptPad – Office Collaboration with Zero-Knowledge Encryption
Edit documents together without the server reading along.
With CryptPad, we operate an end-to-end encrypted office suite: documents, spreadsheets, presentations, and whiteboards are encrypted right in the browser, before they ever reach our server.
CryptPad: Encrypted Office Collaboration
Documents, spreadsheets, whiteboards, and forms with zero-knowledge encryption – edited collaboratively, without the operator ever seeing the content.
- End-to-end encrypted documents, spreadsheets & whiteboards
- Real-time collaboration with no extra software, straight in the browser
- Team & permission management via encrypted shared drives
What is CryptPad?
CryptPad is an open-source office suite with a zero-knowledge architecture: encryption happens client-side in the browser, before any data is even sent to the server. Not even we, as the operator, can see the content.
- Documents, spreadsheets & presentations with real-time collaboration
- Whiteboards & Kanban boards for visual collaboration
- Forms for encrypted surveys and data collection
- Open source under AGPLv3
When to choose CryptPad over Nextcloud or OCIS?
Nextcloud and OCIS encrypt data in transit and at rest, but the server itself can still process content in principle (e.g. for search or office integration). CryptPad goes a step further: thanks to client-side encryption, not even the operator can read the documents. That makes it especially suited for:
- Particularly sensitive documents (legal advice, HR files, confidential projects)
- Organizations with requirements where the hosting operator itself must have no access
- NGOs, editorial teams, or consultancies with a high confidentiality need
For classic file sync with broad office integration and add-on apps, Nextcloud or OCIS usually remain the more practical choice. We're happy to advise which platform fits your protection needs.
Our offering
We operate your CryptPad instance – either:
- On your infrastructure (on-prem, private cloud, KubernetesKubernetes is a system for managing containerized applications – automated, scalable, and fault-tolerant. Learn more →)
- On our infrastructure (e.g. hosted in Austria)
We handle:
- Setup, updates & patchingPatch management keeps systems secure, stable, and reliably up to date. Learn more →
- User and team management via encrypted shared drives
- MonitoringMonitoring spots problems before they escalate – active oversight, not just reacting. Learn more →, backupBackups are the life insurance of digital systems. Learn more → & recovery of the (encrypted) data
- Integration with Keycloak or your existing authentication
Use cases
- Confidential documents & contracts that no operator should be able to see
- Collaborative work on sensitive content in projects or consulting engagements
- Whiteboards & Kanban boards for encrypted team workshops
- Forms & surveys with a high confidentiality need
Technical details
- Encryption: client-side (zero-knowledge), server only ever processes encrypted data
- Authentication: local accounts or Keycloak/SSO
- Document types: rich text, spreadsheets, presentations, Kanban, whiteboard, forms
- Extendable: via team drives & permission management
Frequently asked questions
Can RiKuWe, as the operator, see our documents?
No. Thanks to client-side zero-knowledge encryption, our server only ever processes encrypted data – viewing the content is technically impossible.
How does CryptPad differ from Nextcloud or OCIS?
Nextcloud and OCIS offer broad office integration and a large app ecosystem, but process data server-side. CryptPad encrypts already in the browser, so not even the operator has access to content – at the cost of a smaller feature set.
Where is my data stored?
Depending on your setup, either on your own infrastructure or in a European data center (e.g. Austria, Germany) – encrypted either way.
Ready to get started?
Let's discuss whether CryptPad fits your confidentiality needs.
Book an intro call