Self-hosted, privacy-first

About enblob

We're passionate about self-hosted and privacy-respecting software. enblob is what that looks like for file sync: your storage, your keys, your rules — with none of our servers in the middle.

Why We Built
enblob

Every mainstream sync tool asks for the same thing: put your files on someone else's server, hand over the keys, and trust a policy page not to change. That bargain has never sat right with us.

We'd been self-hosting our own infrastructure for years — and kept hitting the same gap. Object storage was cheap, fast, and available from a dozen providers, but the sync clients on top of it either wanted their own cloud in the middle or asked you to run a server you'd then have to keep alive, patched, and backed up.

So we built the thing we wanted: a client that encrypts on your machine and syncs straight to a bucket you already control. No server of ours in the path. No key escrow. If we disappeared tomorrow, your files would still be sitting in your own storage, exactly where you put them.

enblob /ɛnˈblɒb/

v. — to encapsulate and synchronise data into self-contained blob storage under one's own control.

"I enblobbed my manuscript files to my S3 storage."

The name says the whole product. Your data gets wrapped up, sealed, and put somewhere you own — not parked in a place you rent access to.

What We Believe

Four principles that decide what goes into the product — and what stays out.

Privacy by Default

Encryption happens on your device, before anything leaves it. Privacy isn't a setting to find in a menu — it's the only mode enblob has.

Self-Hosted First

Your bucket, your provider, your region. Point enblob at storage you already run and it stays there — we never become a dependency you can't remove.

No Lock-In

S3-compatible means you can change providers, or leave, whenever you like. Software should earn its place every month — not trap you into staying.

Auditable by Design

Deterministic snapshots and a clear history mean you can check what happened to your data, rather than take our word for it.

What We Don't Do

The clearest way to explain a privacy product is to say what it can't do to you.

  • We don't hold your encryption keys.

    Keys are generated and stay on your devices. We can't decrypt your files, and neither can anyone who asks us to.

  • We don't store your files.

    There's no enblob cloud behind the product. Your data goes from your device to your bucket and nowhere else.

  • We don't profile you or sell data.

    No ad tech, no data brokers, no building a picture of you out of your file names. We sell software, not access to you.

  • We don't lock you into our storage.

    Any S3-compatible provider works. Switching providers — or walking away from enblob — leaves your files intact and in your hands.

Sound Like Your Kind of Software?

enblob is in early access. If self-hosted and private is how you want your files to work, come and try it.

We're a small team and we read everything that lands at hello@enblob.com.