The complete platform for secure data exchange
MnemoShare goes far beyond encryption. Automate workflows, detect sensitive data in motion, scan content, monitor behavior, and integrate with the tools your organization already uses.
Workflow Automation
Business+ and higherOrchestrate multi-step file processing pipelines with a visual builder or custom code — from ingestion through transformation to delivery.
No-Code Workflows
- Visual drag-and-drop workflow builder
- 13 built-in step types: detect file type, unarchive, upload to MnemoShare, upload to remote (SFTP/FTPS/Rsync), generate download links, set retention, send email, call webhook/API, conditional branching
- Cron-based scheduling and manual triggers
- Orchestrate: download → scan → decrypt → decompress → distribute → notify
- Template system (Go templates) for dynamic field values
- Error handling per step — stop, continue, or goto
- Real-time transfer dashboard with live progress
Custom Code Execution
- Sandboxed Kubernetes namespace for script execution — full isolation, resource limits, RBAC
- Write scripts, push to GitHub/source repo, MnemoShare pulls and runs them against workflow-populated files
- Build ETL pipelines: ingest → validate → transform → load to database
- Integrate with CI/CD — scripts version-controlled alongside your application code
- Permission-controlled: admins govern what scripts run, who can trigger them, and resource limits
- Same audit trail and compliance controls as no-code workflows
DLP & Content Intelligence
Automatically detect, classify, and act on sensitive data before it leaves your organization.
- 40+ built-in regex patterns across 6 categories: PHI, PII, PCI, secrets, infrastructure, regulatory
- AI-powered classification (optional Anthropic/OpenAI integration)
- Confidence scoring with post-match validation (e.g., Luhn for credit cards)
- Filename scanning for embedded sensitive data
- Policy actions: log, warn, or block
- Automatic masking of findings in logs and alerts
Email Security Gateway
Inbound and outbound email protection with DLP scanning, policy enforcement, and attachment extraction.
- Inbound gateway (Postfix socketmap + content filter)
- Outbound relay with policy enforcement
- Multi-format scanning: plain text, Office docs, PDFs
- Policy actions: pass, reject, or rewrite (redact body / extract attachments to secure links / hybrid)
- Per-domain configuration
- Size limits configurable (default 25 MB message, 50 MB attachments)
Anomaly Detection
Behavioral analytics that learn what normal looks like — and flag what doesn't.
- User behavioral baselines learned over time
- Peer group comparison for insider threat detection
- Time-weighted risk scoring (off-hours, weekends)
- Velocity, volume, and time anomalies
- Automated security alerts with admin notification
Content Scanning & Quarantine
Real-time malware and content scanning with quarantine workflows.
- ClamAV/ICAP real-time malware scanning
- YARA rules support
- Multi-format extraction (Office, PDF, archives)
- Auto-quarantine with admin review
Identity & Access Control
SSO, MFA, hardware-backed identity, and fine-grained permissions — no standing access.
- SSO (OIDC + SAML 2.0) — Azure AD, Okta, Ping, Google, Keycloak
- MFA enforcement (TOTP) with backup codes
- Hardware mTLS — YubiKey PIV, Secure Enclave, TPM 2.0 (Enterprise+)
- Role-based permissions with per-collection scoping
- Domain whitelisting for trusted partners
Audit & Compliance
Immutable, evidence-grade audit trails designed for investigations and regulatory frameworks.
- Immutable structured event logs (30+ event types)
- SIEM export (Splunk, Datadog, etc.)
- WORM storage support (S3 Object Lock)
- HITRUST e1 certified, supports SOC 2, HIPAA, ISO 27001, NIST
- Configurable retention (90 days to 7+ years)
Migration & Integration
Drop-in tooling to move off legacy MFT systems and connect MnemoShare to your stack.
- Migration tooling for GlobalScape, GoAnywhere, Kiteworks, MOVEit
- REST API with granular permissions (upload, download, manage_folders, read_audit, manage_users)
- CLI (mnemocli) — cross-platform, Homebrew/APT/Chocolatey
- MCP server (22 admin tools for AI assistant integration)
- MnemoZilla desktop client (Tauri/Rust, cross-platform)
Ready to see MnemoShare in action?
Start a free trial, schedule a walkthrough, or dive into the docs.