logo

Limited-Time Special Offer:

Sign up now and get 50% off all rates free access to custom landing page branding features and unlimited file uploads of up to 5 GB

SWIFTSEND

Advantages

What makes us so special?

  • Downloading files during upload

    The recipient can start downloading files as soon as the sender begins uploading them, thanks to our streaming feature.

  • Continuing a stopped download

    If file uploading is interrupted, there is no loss of continuity. The sender can continue uploading after the interruption.

  • Maintaining file and folder organization

    When transferring multiple files within folders, organization is preserved during the entire cycle, from uploading to downloading.

Why choose us

Our products safeguard your privacy and security.

  • Transfer Analysis with Anti-Virus Software

  • Transfers with Password Protection

  • Highest levels of encryption (SSL/TLS and AES 256-bit)

  • Encryption of stored files

Use cases

Get more done: Our unique use cases.

  • Send files of up to 250 GB per transfer

    The files will be accessible for up to 365 days. In addition, you also have access to up to 1000 GB of storage.

  • Track your sent files and manage your transfers

    Keep track of your transfers, hide or set passwords, set expiration dates, and much more.

  • Preview and stream your uploaded files

    You have the ability to preview and stream various file types, including video, audio, and PDF documents.

  • Secure file transfers via email or shareable links

    Send large files using email or share a link to a large audience from any device. Customize each transfer to your needs.

  • Download or upload for FREE
     

    Enjoy up to 5 GBs per transfer. Your files remain accessible for 7 days without registration. For FREE.

  • Multithreaded uploads
     

    Multithreaded uploads allow multiple file uploads at the same time, reducing overall upload time.

  • Schedule emails for custom delivery times

    Send emails to recipients at your preferred date and time (at the end or at the beginning of the transfer).

  • Limiting the maximum number of downloads

    You can limit the maximum number of downloads and set an expiration date for your transfers with your account.

  • SwiftSend is for anybody and everybody

    Explore our offers to find the best option for your needs, from free to studio, with feature-rich plans.

Get Flexible

Flexible plans customized for your budget.

Free, forever

€0

No registration. No money. No problem.

  • 5 GB per transfer

  • 50 GB storage size

  • Files available for 7 days

  • Custom landing page branding features

  • Antivirus protection

ProSave 50%

612 /month

Best for sending large files regularly.

  • 100 GB per transfer

  • 250 GB storage size

  • Files available for 30 days

  • Password protection

  • Custom domain

  • Download history and tracking

  • Features available in the plans below

All features

StudioSave 50%

14.529 /month

Best for sending really large files regularly.

  • 250 GB per transfer

  • 1000 GB storage size

  • Files available for 365 days

  • All features available in the plans below

All features
View Plan Comparison

Faqʼs

We are here to answer all of your questions.

Below are some of the most frequently asked questions. If you don’t see your question below, please visit our support center.

  • What is the maximum file size I can transfer?

    The maximum file size for transfer is 5 GB for free users. Create an account to increase it.

  • How long are files stored on your server?

    Files are stored for 7 days for free users. After that, they are automatically deleted. With your SwiftSend account, you can set the expiration date up to a year in advance.

  • Can I transfer files anonymously without registering?

    Yes. You can upload and share files without creating an account. Simply go to the homepage, add your files, and share the generated link with your recipient. No registration is required for basic transfers.

  • What should I do if my file upload is interrupted or does not complete?

    In case a file upload is interrupted (e.g., internet connection failure), you can continue uploading from the point of interruption instead of starting the upload from the beginning.

  • How is the security of my transmitted files ensured?

    Security and privacy are the cornerstones of our application. We utilize secure transmission protocols (such as HTTPS) to establish a secure connection between your device and our servers. This ensures that your files are safeguarded from interception or eavesdropping by third parties.

  • Is it possible to set a password for my transferred files?

    Yes, you can set a password for your file transfers to provide additional protection (not available in Free Forever plan).

  • How will I know if my file has been successfully delivered to the recipient?

    You will receive a notification email when the recipient downloads the file. Registered users can see an access log of each transfer.

  • Can I track my file transfer history?

    Yes, you can track your transfer history in your profile's 'My transfers' section.

  • How can I contact your support if I have a problem?

    If you have a problem, you can describe it in detail on the Contact Support page.

  • If I sent files by mistake, can I close access to the files?

    Yes. Click on your profile, then the 'My transfers' section, and select the desired transfer. You can delete the transfer, hide or set a password, and much more.

  • What is your advantage over competitors?

    a. Your recipient can start downloading files immediately after you’ve started uploading files. Suppose the recipient's internet speed is not lower than your internet speed. They will finish downloading the files at about the same moment you finish uploading them. b. In case a file upload is interrupted (e.g., internet connection failure), the sender can continue uploading from the point of interruption instead of starting uploading from the beginning. c. When transferring multiple files within folders, organization is preserved during the entire cycle, from uploading through downloading.

  • Can I use your service for business purposes?

    Yes, as long as you do not violate our Terms of Service.

Ready to get started?
Create a free trial account!

Get Started

Data Processing Agreement

Last Updated: May 11, 2026 | Version: 1.0

Who needs this agreement?

This Data Processing Agreement ("DPA") applies to business customers ("Customers") who use SwiftSend to transfer or store files containing personal data of their own clients, employees, or other individuals, in the context of their commercial or professional activities. If you are using SwiftSend purely as a private individual, this DPA does not apply to you — please refer to our Privacy Policy.

To request a signed copy of this DPA or to discuss bespoke terms, contact: legal@swiftsend.io

1. Definitions

In this DPA, the following terms have the meanings set out below:

"Applicable Privacy Law"

means all applicable data protection and privacy laws and regulations, including but not limited to Regulation (EU) 2016/679 ("GDPR"), the Portuguese Lei de Proteção de Dados Pessoais (Law No. 58/2019), and, where applicable, the California Consumer Privacy Act (CCPA).

"Controller"

means the entity that determines the purposes and means of processing Personal Data. In this DPA, the Customer is the Controller.

"Customer"

means the legal entity or individual business user that has entered into the Terms of Service with SwiftSend and that processes Personal Data through the Service.

"Data Subject"

means an identified or identifiable natural person to whom Personal Data relates.

"Personal Data"

means any information relating to an identified or identifiable natural person processed by SwiftSend as Processor on behalf of the Customer in connection with the Service.

"Processing"

(and related terms such as "Process" and "Processed") has the meaning given in the GDPR and includes any operation performed on Personal Data.

"Processor"

means the entity that processes Personal Data on behalf of the Controller. In this DPA, SwiftSend is the Processor.

"Security Incident"

means any accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to Personal Data.

"Service"

means the SwiftSend file transfer platform and related services as described in the Terms of Service.

"Sub-Processor"

means any third party engaged by SwiftSend to process Personal Data on behalf of the Customer.

"Terms of Service"

means the agreement between SwiftSend and the Customer governing use of the Service.

2. Subject Matter, Duration, and Nature of Processing

2.1. Subject Matter

SwiftSend provides secure file transfer and storage services. In the course of providing the Service, SwiftSend may process Personal Data contained in files uploaded by the Customer or its authorised users.

2.2. Duration

This DPA is effective for the duration of the Terms of Service and terminates automatically upon termination or expiry of the Terms of Service, subject to the survival provisions in Section 11.

2.3. Nature of Processing

The processing activities covered by this DPA include: uploading, storing, transmitting, scanning (antivirus), and deleting files that may contain Personal Data, solely as instructed by the Customer.

2.4. Purpose

Personal Data is processed solely for the purpose of providing the Service to the Customer as described in the Terms of Service. SwiftSend does not process Personal Data for its own commercial purposes.

2.5. Types of Personal Data

The types of Personal Data processed depend entirely on the files uploaded by the Customer. SwiftSend does not know in advance what categories of Personal Data the Customer's files contain. The Customer is responsible for ensuring that only appropriate categories of Personal Data are transferred through the Service.

2.6. Categories of Data Subjects

The categories of Data Subjects may include: the Customer's employees, clients, contractors, partners, or any other individuals whose Personal Data is contained in files uploaded by the Customer.

3. Customer's Obligations as Controller

The Customer, as Controller, represents and warrants that:

  • It has a lawful basis under Applicable Privacy Law for all Personal Data transferred through the Service and for instructing SwiftSend to process it;
  • It has provided all required notices to and, where necessary, obtained all required consents from Data Subjects in accordance with Applicable Privacy Law;
  • It will use the Service in compliance with Applicable Privacy Law, these Terms, and this DPA;
  • It will promptly notify SwiftSend of any Data Subject requests or regulatory inquiries that may affect SwiftSend's processing obligations;
  • It is responsible for the accuracy, quality, and legality of the Personal Data it uploads to the Service.

4. SwiftSend's Obligations as Processor

SwiftSend, as Processor, agrees to:

  • Process only on documented instructions: Process Personal Data only on the Customer's documented instructions, including as set out in this DPA and the Terms of Service, unless required to do so by applicable law. If SwiftSend is required by law to process Personal Data in a manner inconsistent with the Customer's instructions, SwiftSend will notify the Customer in advance, unless such notification is prohibited by law;
  • Confidentiality: Ensure that personnel authorised to process Personal Data are committed to confidentiality or are under an appropriate statutory obligation of confidentiality;
  • Security: Implement and maintain appropriate technical and organisational measures to protect Personal Data as described in Section 6;
  • Sub-Processors: Not engage Sub-Processors without prior authorisation from the Customer in accordance with Section 7;
  • Data Subject rights: Assist the Customer in responding to requests from Data Subjects to exercise their rights under Applicable Privacy Law, to the extent technically feasible and as described in Section 8;
  • Assistance: Assist the Customer in fulfilling its obligations under Articles 32 to 36 of the GDPR, including data protection impact assessments and prior consultation, to the extent required and technically feasible;
  • Deletion: Upon termination of the Terms of Service or upon written request, delete or return Personal Data to the Customer and delete existing copies, unless retention is required by applicable law;
  • Audit: Provide the Customer with all information necessary to demonstrate compliance with this DPA and allow for and contribute to audits as described in Section 9;
  • No AI training: Not use Personal Data or file Content to train, develop, or improve any artificial intelligence, machine learning, or automated decision-making systems.

5. No Sale of Personal Data

SwiftSend does not sell Personal Data. SwiftSend does not share Personal Data with third parties for their own marketing or commercial purposes.

6. Security Measures

SwiftSend implements the following technical and organisational measures to protect Personal Data:

MeasureDescription
Encryption in transitAll data transmitted to and from the Service is encrypted using TLS 1.2 or higher
Encryption at restFiles stored on Hetzner servers are encrypted using AES-256
Access controlsStrict role-based access controls limit internal access to systems containing Personal Data
Antivirus scanningAll uploaded files are scanned locally using ClamAV on our servers in Finland; file content is not transmitted externally
No staff content accessSwiftSend employees do not access the content of files except when required by valid legal process
Physical securityPhysical access to Hetzner data centres in Finland is controlled and monitored by Hetzner in accordance with their security standards
Incident responseWe maintain a Security Incident response procedure as described in Section 10

SwiftSend will review and update these security measures periodically and will notify the Customer of material changes.

7. Sub-Processors

7.1. Current Sub-Processors

The Customer authorises SwiftSend to engage the following Sub-Processors:

Sub-ProcessorCountryRoleSafeguard
Hetzner Online GmbHGermany 🇩🇪 (servers in Finland 🇫🇮)Server hosting and primary file storageWithin EU/EEA — no transfer mechanism required
Cloudflare, Inc.USA 🇺🇸 (Eastern Europe storage region)CDN and temporary file storageStandard Contractual Clauses (SCCs)
Stripe, Inc.USA 🇺🇸Payment processingSCCs + EU-US Data Privacy Framework

7.2. Changes to Sub-Processors

SwiftSend will notify the Customer of any intended changes to Sub-Processors (additions or replacements) at least 15 days before the change takes effect by email to the address registered with the Customer's account, or by notice on Data Processing Agreement. The Customer may object to any such change within 10 business days by contacting legal@swiftsend.io. If the Customer objects and SwiftSend and the Customer cannot resolve the objection in good faith, either party may terminate the Terms of Service without penalty upon written notice.

7.3. Sub-Processor Obligations

SwiftSend will ensure that each Sub-Processor is bound by data protection obligations at least equivalent to those in this DPA.

8. Data Subject Rights

Where a Data Subject exercises their rights under Applicable Privacy Law (such as access, rectification, erasure, or portability), the Customer is primarily responsible for responding. SwiftSend will:

  • Provide reasonable assistance to the Customer to facilitate responses to Data Subject requests, to the extent technically possible
  • Notify the Customer within 3 business days if SwiftSend directly receives a Data Subject request relating to Personal Data processed under this DPA
  • Not respond directly to a Data Subject request without the Customer's prior written authorisation, unless required to do so by applicable law

9. Audits

9.1. Documentation

SwiftSend will provide the Customer with all information reasonably necessary to demonstrate compliance with this DPA upon written request to legal@swiftsend.io.

9.2. Audits

SwiftSend will allow for and contribute to audits, including inspections, conducted by the Customer or its designated auditor, subject to: (a) at least 30 days' advance written notice; (b) a mutually agreed scope and schedule to minimise disruption to SwiftSend's operations; (c) the auditor being bound by confidentiality obligations at least as protective as those in this DPA; and (d) the Customer bearing all costs of the audit unless the audit reveals a material breach of this DPA by SwiftSend.

10. Security Incidents

10.1. Notification

SwiftSend will notify the Customer without undue delay, and in any event within 72 hours of becoming aware of a Security Incident affecting Personal Data processed under this DPA.

10.2. Content of Notification

The notification will include, to the extent then known:

  • a description of the nature of the Security Incident;
  • the categories and approximate number of Data Subjects affected;
  • the categories and approximate amount of Personal Data records affected;
  • the likely consequences of the Security Incident;
  • the measures taken or proposed to address the Security Incident and mitigate its effects.

10.3. Assistance

SwiftSend will cooperate with the Customer and take reasonable measures to assist in the investigation, mitigation, and remediation of the Security Incident.

10.4. Customer Obligations

The Customer is responsible for notifying the relevant supervisory authority and/or affected Data Subjects in accordance with Applicable Privacy Law, using the information provided by SwiftSend under this Section.

11. International Data Transfers

Where Personal Data is transferred outside the European Economic Area, such transfers are made on the basis of:

  • Standard Contractual Clauses (SCCs) as adopted by the European Commission (Decision 2021/914), which are hereby incorporated by reference and form part of this DPA; or
  • Any other valid transfer mechanism under Applicable Privacy Law

The SCCs apply to transfers to Cloudflare, Inc. and Stripe, Inc. as Sub-Processors. Copies of the applicable SCCs are available upon request at legal@swiftsend.io.

12. Termination and Data Deletion

12.1. Deletion on Termination

Upon termination or expiry of the Terms of Service, SwiftSend will, at the Customer's choice, delete or return all Personal Data processed under this DPA within 30 days, and will certify such deletion in writing upon request, unless applicable law requires further retention.

12.2. Survival

Sections 4, 5, 6, 9, 10, and 11 of this DPA survive termination of the Terms of Service for as long as SwiftSend retains any Personal Data of the Customer.

13. Liability

The liability of each party under this DPA is subject to the limitations of liability set out in the Terms of Service. Each party shall be liable to Data Subjects and to each other for any damages caused by their respective breach of this DPA or Applicable Privacy Law.

14. Governing Law

This DPA is governed by the laws of Portugal, consistent with the Terms of Service. Disputes arising under this DPA shall be resolved in accordance with the dispute resolution provisions of the Terms of Service.

15. Contact and Execution

This DPA is incorporated into and forms part of the Terms of Service. No separate signature is required — by accepting the Terms of Service, the Customer agrees to this DPA.

For bespoke DPA arrangements, signed copies, or questions about this DPA:

📧 legal@swiftsend.io

EQUINOX DYNAMICS, UNIPESSOAL LDA
Rua Nossa Senhora do Álamo n° 29, R/C Dto
3800-206 Aveiro, Portugal
NIF/VAT: PT518937313
Representative: Sytnyk Mykhailos

Data Processing Agreement | SwiftSend