The data room that cannot read your deal

M&A. Capital raising. Diligence. Sealed in your browser before it is uploaded, so what we store is ciphertext and what we hold is nothing.

GuardStein · Notes
A Markdown note in split view beside its live preview, with rendered draw.io diagrams and the dark sidebar

What the platform can and cannot do

Built so that trusting us is never part of the deal

1

0

keys held by the server

A Vault is sealed in your browser. A database dump reads as ciphertext.

2

AES-256

GCM on every document

Authenticated encryption. Tampering is refused, never silently accepted.

3

ML-KEM-1024

plus P-384, on every shared key

The post-quantum hybrid ASD's ISM wants in new software by 2030.

4

600,000

PBKDF2-SHA512 rounds

Behind a vault password. Or a passkey, or a recovery code.

What we can still see: how many documents a room holds, roughly how large they are, when they were added and opened, and the email address of everyone invited. Use a code name for the deal, which is what the room shows by default.

GuardStein Deal Room

Run a deal without handing anyone the keys

A conventional data room asks you to trust that its staff will not look. This one cannot.

  1. 1

    Access is a key, not a checkbox

    Documents live in bundles, the unit you disclose. Each bundle has its own key, and letting someone in means wrapping that key to them. There is no permission flag to misconfigure.

  2. 2

    Counterparties need no account

    A reviewer opens a link and reads. The link identifies them and decrypts nothing; a passphrase sent by a second channel does the decrypting, and never reaches us.

  3. 3

    Read in place, on the record

    PDFs, Word, spreadsheets and decks open in the browser, watermarked with the reader and the time. Every open is logged in a hash-chained trail, guests included.

  4. 4

    Signed in the browser

    Named people read a document and agree to a sentence, signing over the document they decrypted in their own tab, with a drawn mark and each place on the page inside the signature.

  5. 5

    An NDA gate that is a key

    Name one document as the NDA and nobody on the other side receives a key for anything else until their NDA ceremony completes. A screen that forgot to ask would have nothing to show.

  6. 6

    Verified by anyone

    Export a signed copy and anyone can check every signature offline. One click more confirms the keys, the ceremony and our own countersignature on the record.

Who you are, and who can open what

Authentication, end to end

Signing in and opening a Vault are two different locks, because the server that knows who you are still cannot decrypt for you.

Sign in
Single sign-on through your organisation, backed by short-lived ES256 tokens verified on every request. Self-host and it runs open with no accounts at all.
Open a Vault
Passkeys, a vault password, or a recovery code, separate from your login, because the server that authenticates you still cannot decrypt for you.
Automation and CLI
Personal API tokens, obtained through the OAuth device flow: you approve in a browser and no secret is ever pasted into a terminal or config file.
Integrations
Per-user OAuth for Microsoft 365 and Miro; tokens are encrypted at rest and scoped to exactly what a share or an embed needs.

Live, in your browser

See it for yourself

Exactly what a Vault does when you save a note and when you share it.

Type a secret, seal it, and see the envelope byte for byte as our servers would store it. Then wrap that key to a reviewer with ML-KEM-1024, the way a deal room shares a document key, and watch them open it without ever learning your passphrase. Nothing is sent.

Your browser: plaintext

In your browser

Type a secret and a passphrase. Encryption happens here, on your device. The plaintext never leaves this tab.

Server storage: sealed

What the server stores

Ciphertext only. No key ever leaves your browser, so this is all we could ever hand to anyone, or lose in a breach.

Encrypt a message to see the sealed bbv1: envelope.
A stolen passkey still cannot read your Vault

A Vault’s decryption key is derived on your device at unlock, from the authenticator itself, and is never written to the passkey sync, the browser’s credential store, or our servers. The attacks that recover synced passkeys steal a passkey’s sign-in key, which is a different secret. On a Vault, that is at worst a sign-in problem, never a decryption one.

What this does not protect against

The code that holds your keys runs in your browser, and we serve it. A build altered after it left our pipeline could read what the page decrypts. That is true of every end-to-end encrypted product with a web client, and we would rather say it than imply otherwise. Every script carries an integrity hash so a modified file is refused, the exact build running is shown inside the product with its commit, and the cryptography is in the open on this page so it can be checked against what ships.

A room is set up in an afternoon, not a procurement cycle.Verify a signed copy

GuardStein Notes

Everything before the deal, in one place and none of it locked in

A

Notes that stay files

Plain Markdown with front matter, and a link graph that builds itself from [[wikilinks]] and unlinked mentions.

GuardStein Notes
B

Boards edited together

Sticky notes and connectors, merged without conflicts, live presence.

Live boards
C

Diagrams by description

Describe an architecture and get an editable draw.io diagram.

AI diagrams
D

Vaults we cannot open

Sealed in your browser before storage. The server keeps ciphertext and no key.

End-to-end encryption
E

Share a note by link

An expiry, a code to one named address, and a log of every open.

Share links
F

Claude works here too

Claude Code and Claude Desktop through the MCP server, no keys to copy.

MCP integration
G

Export that looks finished

A print-styled PDF with every diagram drawn properly.

PDF export
H

Teams, Miro and S3

Real files into Teams, Miro boards alongside, your own S3 bucket.

Integrations

Transparent pricing

The price is on the page, and the deal room is in the plan

Personal

Freeforever

  • Unlimited notes, folders and boards
  • Link graph, backlinks and unlinked mentions
  • 15 AI diagram generations a month
  • PDF export and Markdown download
  • Share links with an expiry and a verified email

Premium

A$10per seat, per month

  • End-to-end encrypted Vaults
  • Deal Room: staged disclosure, guest reviewers, signing, the full trail
  • Shared workspaces, invitations and roles
  • Boards with live presence
  • 100 AI diagram generations per seat, monthly

If a subscription lapses, a workspace becomes read-only, never deleted.

Your next transaction deserves a room that cannot read it.

Sealed in the browser, signed in the browser, verified by anyone. Discover how a deal gets done without a key ever leaving your side.