How your files are handled
Version 1.0.0 · Effective October 5, 2026
You were sent this link by the organization named on your upload or download page. This page explains what happens to the files you upload or download through it. It is given to you on behalf of that organization, which asked for the files. ReceiveVault is the service that organization uses to receive them.
Who is responsible for your files
That organization is. It decided what to ask you for, it will use the files, and it decides how long they are kept. Under privacy law it is the organization accountable for them.
ReceiveVault (Viscous Bits Computing Solutions Inc., Ontario, Canada) stores the files, scans them for viruses, delivers them to that organization, and deletes them on that organization's schedule. We do not read them, sell them, or use them for anything else.
What happens when you upload
- Your file travels over an encrypted connection to a server in Toronto, Canada.
- It is scanned for viruses. If a virus is found, the file is deleted and that organization is told.
- It is stored encrypted and made available only to that organization.
- That organization downloads it. You may receive an email receipt.
- The file is deleted automatically on that organization's schedule: by default 90 days after the request's last activity, and never more than one year. That organization may delete it sooner.
If you receive files through a download link, the same applies in reverse: that organization sent them, they are stored in Canada, and they are deleted 30 days after the link expires.
What is recorded
Besides the files, ReceiveVault records:
- your name and email address, as that organization entered them;
- the file's name, size, type and a fingerprint (hash) used to detect corruption;
- the internet address (IP) and browser of the device you uploaded or downloaded from, and the time. That organization can see these in its records;
- if that organization required an email code before you could use the link, the address the code went to and the attempts made;
- anonymous measurements of your device's performance if you use the camera capture feature, kept 90 days and not linked to you.
We do not place analytics or advertising trackers on this page.
Feedback. There is no feedback form on this page. We accept feedback only from signed-in account users. If something on this page does not work, tell that organization; they can report it to us.
If you are asked for government identification
That organization may ask for a photo of a government identity document, such as a driver's licence or passport. If so:
- that organization is asking for it and is responsible for having a lawful reason to;
- ReceiveVault stores and transmits the image. It does not check that the document is genuine, current, or belongs to you. Any checking is done by that organization;
- the image is stored encrypted, on the same deletion schedule as your other files, and our support tools cannot open it;
- if your browser reads the barcode on the back of a licence, it does so only to check that the photo is legible. What it reads is never sent to us or to that organization;
- health cards are never accepted. Do not upload a document that shows a health number or social insurance number unless that organization has told you why it is needed;
- if you are under 16, do not upload identification.
Children's documents
Please share a child's documents only if you are the child's parent or guardian. That organization is responsible for asking only people who are entitled to provide them.
Emails you may receive
That organization may have ReceiveVault send you the invitation, up to three reminders, and a receipt when your file arrives. Every reminder has a one-click link to stop further reminders.
Your rights
You can ask that organization to tell you what it holds about you, correct it, or delete it. Ask that organization first; the request came from them and they hold the files.
If you cannot reach that organization, write to us at legal@receivevault.com and we will help. Our Privacy Policy describes ReceiveVault's own practices in full.
What changed
- 1.0.0 (this version). First published version.