Secure File Transfers

Send files with your controls

ITAR-compliant file sharing via AWS GovCloud with SSE-KMS encryption, four verification levels, and geo/IP gating.
Create a transfer

Files, recipient, and security in one form

Pick or drop files, choose a recipient, and set the security rules in a single drawer. Share from the document library, from a business entity like an order or PO, or upload ad-hoc files through the Share Locker. Every method routes through the same pipeline.

Drag and drop. Upload files directly, or pick from existing documents.

Recipient and note. Select a contact and add a message that appears on the download page.

Security in-line. Expiry, single-use, and verification level set before the link is created.

One pipeline. All three share modes enforce the same encryption and audit rules.

New transfer

Share Locker
1

Files

Drop files or click to browse

hub-flange.step

8.1 MB

BR4471-Rev-C-redacted.pdf

2.3 MB

2

Recipient

Dana Rodriguez

[email protected] · Acme Machine Works

Drawings and model for PO #88-114302. Redacted copy included.

3

Security

Link expires

1d3d7d14d30d

Single-use link

Verification

PIN required
Encrypted in transit and at rest
Create link
Verification

Four gates between the file and the recipient

Choose the level of identity verification the recipient must clear before they see the file. Export-controlled files require PIN verification at minimum, and a PIN is generated automatically.

Link only. Open access for low-sensitivity files.

PIN required. A code shared out of band. ITAR transfers generate a PIN automatically, never sent by email.

Email verification. A one-time code sent to the recipient's verified email.

PIN + Email. Both gates, when your program requires two methods of verification.

Recipient verification

Set the level before the link goes out.

Link only

Open access, no verification

PIN required

ITAR minimum
ITAR floor

Email verification

Code sent to recipient's email

PIN + Email

Both gates required
Export-controlled files require PIN verification at minimum. Add email verification if your program requires a second check.
Recipient experience

Branded, verified, and GovCloud-backed

The recipient sees your company name through every step. Files are served from a dedicated transfer bucket on AWS GovCloud through FIPS 140-2 validated endpoints, encrypted at rest with SSE-KMS, and isolated from production storage.

Your brand. Company name and logo on the download page.

GovCloud encrypted. Dedicated transfer bucket on FIPS endpoints with SSE-KMS encryption.

Expiry and single-use. The trust rail shows exactly when the link expires and whether it is single-use.

One-click download. File manifest, sizes, and a single download button.

AC

Secure share from

Acme Machine Works

GovCloud encrypted

Encrypted at rest in AWS GovCloud.

Expires Sep 21

The link stops working after this date.

Single-use

The link is consumed after one download.

Acme Machine Works sent you 2 files

Drawings and model for PO #88-114302. Redacted copy included.

2 files

10.4 MB

hub-flange.step

8.1 MB

BR4471-Rev-C-redacted.pdf

2.3 MB

Download all · 10.4 MB
Audit trail

Every interaction, nothing unrecorded

Every interaction with a shared link is logged: creation, views, PIN attempts, downloads, and revocations. The sender is notified when a file is first viewed and when a download completes.

16 event types. From link creation through revocation.

First-view alert. Know the moment a recipient opens the link.

Download tracking. Every download is recorded with a timestamp.

Transfer #2741

BR4471-Rev-C.pdf
4 events

Created

Verification: PIN required · Aug 14 · 2:30 PM

Recipient notified

Email sent · Aug 14 · 2:30 PM

First viewed

El Segundo, CA · Aug 14 · 4:12 PM

Download completed

El Segundo, CA · Aug 14 · 4:13 PM
Transfer management

Status, files, and link controls

Every transfer shows its live status, recipient, attached files, and the controls to manage the link. Issue a new URL, re-issue and email the recipient, or revoke access permanently. Each action is logged in the audit trail.

Live status. Active, expired, spent, or revoked at a glance.

Issue new link. Generate a fresh URL. The previous one stops working.

Re-issue and email. Send a new link directly to the recipient.

Revoke access. Permanently deactivate the link. It cannot be reinstated.

Transfer details

ActiveSingle-usePIN requiredExpires Sep 21
Recipient
DR

Dana Rodriguez

[email protected]

Files

hub-flange.step

8.1 MB

BR4471-Rev-C-redacted.pdf

2.3 MB


Link controls
Issue new linkRe-issue & emailRevoke access
FAQ

Common questions

No. It is included in every Infab subscription. There is no per-transfer fee, no storage surcharge, and no add-on to enable.

Files are encrypted at rest with SSE-KMS on AWS GovCloud and served through FIPS 140-2 validated endpoints. The transfer bucket is isolated from production storage.

Infab requires PIN verification at minimum and generates a PIN automatically. The link becomes single-use, the geo policy locks to US-only, and each recipient must be an attested contact with an organizational email address. You can add email verification on top if your program requires a second check.

Yes. The audit trail records every interaction: views, PIN attempts, and downloads. Each event includes a timestamp.

The Share Locker is for ad-hoc file transfers that do not belong to a specific order, quote, or PO. Drop files into the locker and share them through the same security pipeline as any other transfer.

The link returns a revocation notice. It cannot be reinstated. If the recipient needs access again, you re-issue a new link, which generates a new URL and a new audit record.

Share Files Under the Same Controls That Protect Them

ITAR-compliant, encrypted, audited, and included in your subscription

No contracts. Cancel anytime.

See how Infab handles compliance
InfabCAGE 06V71DUNS 128263681NAICS: 518210, 541511, 541519© 2026 Infab Softworks, LLC

All Rights Reserved.