Collect new-hire documents without a readable copy on our servers
Onboarding a new hire means gathering exactly the documents you’re most obliged to protect — passport or ID, right-to-work, bank details, signed contracts, tax forms. Routing those through email or a generic form leaves plaintext copies you’re now responsible for.
ShieldFive File Request hands each new hire one link with a checklist. They upload with no account, each file sealed to your organisation’s keys in their browser, and HR decrypts the set in-house.
Sealed before HR ever sees it
Passport pages, right-to-work evidence and bank details are encrypted to your organisation’s public key on the new hire’s device. The identity dossier you are collecting never exists in readable form on our side at all.
They are not an employee yet
A new starter has no work email, no SSO, and no reason to create an account for a one-time upload. One link, opened on whatever device they have, is the difference between documents arriving on day one and a passport photo landing in someone’s personal inbox.
Personnel data stays in the EU
Ciphertext and metadata stay in the EU, with a GDPR data-processing agreement on every seat. Employee records are among the clearest cases where a works council or a DPO will ask exactly where the data sits and who processes it.
Encryption chosen for a long retention
Documents are sealed with a hybrid of ML-KEM-1024 and X25519 via the open-source @shieldfive/crypto core. Personnel files are kept for years after someone leaves; the encryption is chosen for that horizon, and it is on by default.
Start collecting documents securely
Create a request, share one link, and your clients upload without an account — each file sealed to your keys in their browser.
Start collecting — free14-day trial, everything unlocked · then free for 1 open request at a time · no card · clients never pay
Questions
- Is this appropriate for right-to-work and ID documents?
- The files are sealed to your keys on the new hire’s device and stored only as ciphertext in the EU, with a GDPR data-processing agreement included. We never hold your keys. That’s a stronger posture than emailed attachments or a form host that retains readable copies.
- Can the HR team share access?
- Yes. Add seats and the decryption identity is sealed to each HR team member’s account, so the team shares one onboarding inbox without sharing personal keys.