RED — Rhea Encrypted Data
Enterprise data, readable only to the people who should read it.
RED is Rhea's data-protection platform. It combines client-side encryption, bring-your-own-storage, and cryptographic approvals so organizations can store sensitive content anywhere and keep it readable only under their control.
01 — What RED does
One command center for enterprise data control.
RED lets organizations manage, organize, share, protect, and move business data across supported storage and cloud environments — efficiently, securely, and under stronger control.
Files and records are encrypted before they leave the device. Only ciphertext reaches storage. Access is governed by organization permissions, cryptographic workflows, and audit records.
Rhea does not decrypt customer content. Storage providers see only ciphertext.
02 — Capabilities
A single platform for protected data operations.
Client-side encryption
AES-256-GCM performed on the device. Ciphertext is the only thing that leaves.
Bring your own storage
Connect the organization's own storage — starting with AWS S3. Data stays under the customer's control.
Bring your own database
Apply RED security, policies, field protection, query restrictions, and audit trails to connected databases.
Cryptographic approvals
Sensitive actions can require signed approval through Rhea Key on a trusted device.
Secure file requests
Collect files from external parties into an encrypted submission workflow.
Audit & access records
Every access attempt, permission change, and approval is captured for enterprise accountability.
03 — Architecture
Ciphertext at rest. Plaintext only on the device.
Encryption keys are handled inside the user's browser session. Data encryption keys are wrapped and never exposed to Rhea's infrastructure. File contents never pass through Rhea Key or Rhea ID.
See the three-lane architecture