Post-quantum cold encryption
Documents you keep for the long term will be protected at rest with encryption designed to resist the computers of tomorrow, not only today's.
See the roadmapSovereignty
Four facts about where your data lives and who touches it. No certification we do not hold, no superlative, no small print.
Everything on this page derives from these four statements.
Location is not jurisdiction
A server in Europe operated by a US company still answers to US law: the CLOUD Act reaches the provider wherever the data sits. What protects you is who operates the service. Dicte Send is operated by a French company, on dedicated servers in France, outside the scope of the US CLOUD Act. This is a statement of fact, not legal advice; your counsel can verify it against our contract.
AI that stays home
Search, analyses and the assistant run on Dicte Send's own dedicated servers. There is no call to an external AI service, no subscription to a foreign provider, no copy of your pages elsewhere. If you switch the AI off, nothing else changes.
Learn moreVisitor addresses are stored as a hash: enough to spot abuse and prove consent, not enough to identify a person from the record.
The application sets a single cookie needed to keep you signed in. No third-party script, no tracker, here or in the product.
When a recipient accepts a rule at the gate, an NDA or a disclosure, the acceptance, the time and a hashed address are kept as proof.
Administrative and security actions are recorded with identifiers, never content. Exportable by your administrator.
Visit records are purged after the period your administrator sets. Documents you delete are kept briefly for recovery, then removed.
Sovereignty claims are cheap to make and expensive to prove. We make only the four above.
Security and hosting certifications will be published on the trust page when obtained, never before.
No service is immune to every foreign law. We state the jurisdiction we operate under and the law that does not apply to us.
We do not publish the names of our suppliers or the layout of our infrastructure. Your security team can ask us under NDA.
No customer counts, no uptime percentages, no ratings until they exist and can be checked.
Lawyers, notaries and in-house counsel who owe professional secrecy to their clients and cannot have a US provider in the chain.
Legal use caseAdvisers who handle counterparties' data and must show where it went.
M&A use caseConsultancies and HR advisers processing personal data for clients who ask where it is stored and by whom.
HR and consulting use caseDocuments you keep for the long term will be protected at rest with encryption designed to resist the computers of tomorrow, not only today's.
See the roadmapThen talk to us. We answer the questions a security questionnaire asks, in writing.
Yes. Documents, analytics, AI processing and your recipients' data are stored and processed on dedicated servers in France.
No. Dicte Send is operated by a French company on dedicated servers in France, outside the scope of the US CLOUD Act. No US provider is involved in operating the service.
The French company that publishes Dicte Send. The servers are dedicated to the service and located in France; we do not publish the name of the data-centre supplier on this site.
No. AI models run on our own dedicated servers. No model or service is subcontracted.
We publish only what we can prove. Certifications will appear on the trust page when obtained.
Yes. On request we provide a written statement of these facts for your compliance file, and a data-processing agreement.