Vault Starter
5 GB managed encrypted storage.
- 5 GB storage quota
- Client-side encrypted files
- Encrypted folders and sharing
- Managed Obris service
- Obris VPN required for managed access
Obris Vault is free to use with an active Obris VPN connection. Files are encrypted on the authorised device before upload, and Vault operates only through the Obris VPN network. It does not operate through another VPN provider or a normal internet connection.
The server is designed to store and move encrypted content without needing plaintext file contents or plaintext file encryption keys during normal operation.
The Obris Vault app is free with an active Obris VPN connection, and Managed Vault includes a free starter storage tier. Larger managed storage options and Private or Enterprise deployments are separate offerings.
5 GB managed encrypted storage.
More encrypted storage for everyday documents, photographs and files.
Higher capacity encrypted storage for larger Vault collections.
Customer-hosted single-node Vault for organisations that want to operate their own service.
Higher-capacity customer-hosted licensing with a larger included user count and node allowance.
Private and Enterprise values are the current configured catalogue defaults. One unique active Vault user account consumes one licence seat; linked devices for the same user do not consume additional seats.
Vault keeps the user workflow familiar while moving file encryption and key ownership to authorised endpoints.
File content is encrypted locally before upload and decrypted locally after an authorised download.
Recipients receive encrypted file-key envelopes rather than a decrypted server-side copy of the file.
Encrypted folder metadata, viewer/editor sharing and inherited folder relationships are supported.
New Vault installations use the existing Obris trusted-device approval path and proof of the device signing key.
Use the Obris managed service or configure an HTTPS customer-hosted Private Vault deployment.
Reservations prevent concurrent uploads from silently exceeding the account storage limit.
The managed service performs authentication, storage, sharing relationships and quota enforcement on encrypted material. Obris VPN is the required network path for Vault access.
Zero knowledge content design does not mean zero metadata. Vault intentionally separates encrypted file content from the operational metadata needed to run the service.
The Android client defaults to Obris Managed Vault and can also select an HTTPS Private Vault endpoint. Obris VPN remains required for Vault client access.
Hosted and operated by Obris. Obris manages the service, TLS, database, object storage, updates and consumer entitlement enforcement.
Customer-hosted single-node deployment with current version 1 support targeted at Ubuntu Server 24.04 LTS on x86_64.
Uses the same encrypted content architecture with a larger included user count and additional node allowance.
Encrypted upload/download/delete, encrypted sharing, folders, VPN-only managed API access, trusted-device authentication and quota accounting are implemented. The supplied technical documentation also identifies multi-device key recovery, authoritative Google Play verification, off-server encrypted backups, monitoring and independent review as outstanding or planned readiness work.