Pull-only — nothing arrives uninvitedOpen-source, stateless relay

Your files. Your network.
Your rules.

Privatta sends a file straight from your computer or phone to someone else's. Share files and documents with coworkers, friends and family - easily, securely and on any device.

NO SERVER HEREYOUSENDERTHEMRECIPIENT
Every route · Local + Remote

Any device any device.

Mobile to desktop. Desktop to mobile. Mobile to mobile. Desktop to desktop. PC, Mac or Linux on one side, the phone in your pocket on the other — same room or across the world, the file goes straight there and nothing stands in between.

SHARESDESKTOPPC · MAC · LINUXMOBILEANDROID · IOS SOONPULLSDESKTOPPC · MAC · LINUXMOBILEANDROID · IOS SOONPULL-ONLY · THE RECEIVER ASKS FIRST
SAME NETWORK · INTERNET NEVER INVOLVED
To Mobile
To Desktop
From Mobile
MobileMobile
LocalRemote
MobileDesktop
LocalRemote
From Desktop
DesktopMobile
LocalRemote
DesktopDesktop
LocalRemote
8/8

Two device families, two directions, two distances — every combination works. There is no unsupported route.

If both ends run Privatta, the route exists — and nothing sits in the middle.

Privatta - Share files securely, machine to machine, locally | Product Hunt
01The difference

Most tools put a stranger in the middle.

When you share a file the usual way, it is first uploaded to a company's servers, then downloaded by the other person. For that whole time, a copy of your file lives on a computer you do not own. Privatta removes that step entirely — over the internet, the only supporting piece is a small, open-source relay that briefly introduces the two machines and forgets they ever existed the instant they connect. It never sees your file.

Everyone elseVia a server
You
You
Their cloud
Them
Them

Your file is copied to a server you do not control, and waits there.

PrivattaDirect
You
You
Them
Them

Your file goes straight across, locked the whole way. No copy is left behind.

00Headline feature

You pull. Nobody pushes.

Person A cannot send Person B a file. B can only pull from A. That single rule means a malicious or unwanted file cannot be delivered unsolicited — the recipient has to actively choose to retrieve anything, every time, on the LAN or over the internet.

Push
What Privatta blocks

The sender decides what lands on your machine, and when. This is how malicious or unwanted files get delivered — the recipient never gets a say.

Pull
What Privatta does

Only you can start a download. The other side can offer a file list — they cannot put a single byte on your machine without you requesting it first.

Our public signaling serverhttps://signal-server-df8l.onrender.com/

Privatta uses this address only to introduce two machines for internet P2P — your files never pass through it. It runs our open-source WebRTC Relay Server, and you can point Privatta at a self-hosted instance in Settings.

Editions

Start free. Grow to your whole organisation.

Every edition transfers files the same way: directly, and locked end to end. Paid tiers add private access control, internet transfers, and organisation-scale management.

Free

Quick personal shares
  • Share on your local network
  • Pull-only, locked transfers
  • Up to 10 transfers a day
  • No account needed

Pro

Most popular
Professionals & small teams
  • Private per-person sharing
  • Approve trusted devices
  • Internet transfers
  • Unlimited volume, QR pairing

Enterprise

Whole organisations
  • Groups modeled on your org — legal, finance, compliance
  • Folders with shared policy
  • Immutable audit trail
  • Trusted-network ranges
04Full feature comparison

Every feature, every edition.

Pull-only transfer and QR pairing are baseline, on every tier. Pro unlocks internet P2P, offline license activation, and private access control. Enterprise adds an immutable audit log and user groups pre-modeled on real org structures — no features are removed, only added.

Feature
FreeQuick LAN shares
ProPrivate & internet
EnterpriseOrganisations
Core Transfer
Pull-only transfer — recipient always initiates, sender can never push
Any file type, any size — no upload quota
LAN (local network) direct transfer
WebRTC end-to-end encryption (DTLS, negotiated peer-to-peer)
Real-time transfer progress
Internet P2P transfer (WebRTC + one-time connection key)
Daily transfer limit10 per dayUnlimitedUnlimited
LAN-only mode (zero outbound calls, air-gap capable)
Access Control
Public (globally shared) files — no account required
Per-user private file access control
Single-use connection key over P2P; MAC address whitelist on LAN
Three-factor auth: credentials + connection key/MAC + file permission
Per-file optional description
Virtual folders (shared permission set across grouped files)
Trusted CIDR ranges (Tailscale, ZeroTier, company VPN)
User groups with group-level file permissions
Group membership file-access inheritance
Security & Audit
DTLS-encrypted handshake on every connection (WebRTC)
P2P login rate-limiting (5 failures / 10-min window → session locked)
LAN login rate-limiting (20 failures / 15-min window → block)
Path enumeration prevention (requests never reveal whether a path exists)
Immutable access log (IP, machine, user, file, outcome — no delete capability exists in the code)
Offline / air-gap license activation (signed, machine-bound license file — zero network calls)
AES-256-CBC encrypted transfer counter (tamper-evident free-tier limit)N/AN/A
Connectivity & Platform
Windows 10+ / macOS 12+ desktop app
QR code device pairing (scan-and-pin, no typing)
Android companion app (browse + download)
iOS companion appIn dev.In dev.In dev.
Automatic mDNS LAN discovery (zero config)
Saved devices for quick reconnect
Open-source, stateless relay introduces peers (default or self-hosted)
STUN-assisted NAT traversal for direct WebRTC connections
Enterprise Organisation
On-premise, zero cloud dependency
User groups pre-modeled on real org structures (legal, finance/compliance, etc.)
Group-scoped virtual folders
Group-level access check across full membership hierarchy
Included~PartialNot included

Talk to the team that actually builds the software.

Pilot deployments, volume licensing, product demos, security questionnaires — all handled by engineers and product leads, not a routing layer. We respond within one business day.

Schedule a discovery call
Half-hour walkthrough with someone who built the product — no sales script.
Run a pilot deployment
Full-feature evaluation with guided install, configured for your environment.
Email us directly
sales@royalsoftworks.com — we respond within one business day.

Send us a message

Leave your details and we'll follow up within one business day.