| Before upload, in the browser | After receipt, on the server | |
|---|---|---|
| Advantages | The file leaves already smaller. With end-to-end encryption, this is the only useful moment: the server never sees the file afterwards. | The upload starts at once. The sender’s computer does less work. |
| Drawbacks | The browser works before the upload. A large file takes time and memory on the sender’s computer. | The full file travels. The server sees it in the clear while compressing it. After end-to-end encryption, compression barely shrinks anything. |
| Per file, to save space | ZIP archive | |
|---|---|---|
| Advantages | Saves space. The recipient gets the original file: compression is undone when it is opened. | The recipient receives a ZIP archive, which a usual tool can open. |
| Drawbacks | The recipient does not get an archive. A file that is already compressed shrinks little. | The recipient receives a ZIP archive, not the file alone. |
| Advantages | Drawbacks |
|---|---|
| The recipient needs no extra passphrase. The server can show the file. The disk does not keep the file in the clear. | The server can read it. Whoever administers the server can see the content. |
| AES-128 | AES-256 | |
|---|---|---|
| Advantages | Faster. Security stays very high for a file transfer. | A longer key. This is often what security rules ask for. |
| Drawbacks | The key is shorter. Some internal rules require 256 bits. | A little more computation, with no visible difference on an ordinary file. |
| Advantages | Drawbacks |
|---|---|
| The server only receives a file that is already unreadable. The content stays inaccessible without the passphrase. | The passphrase must be sent separately. If it is lost, the file cannot be read. The server cannot show it or inspect it. |
| AES-128 | AES-256 | |
|---|---|---|
| Advantages | Faster. Security stays very high for a file transfer. | A longer key. This is often what security rules ask for. |
| Drawbacks | The key is shorter. Some internal rules require 256 bits. | A little more computation, with no visible difference on an ordinary file. |
| Advantages | Drawbacks |
|---|---|
| The whole file is encrypted by the application, in addition to HTTPS. A party that only terminates HTTPS does not see the content. The server can open it. | The server can read the file. There is no passphrase to give the recipient. |
| AES-128 | AES-256 | |
|---|---|---|
| Advantages | Faster. Security stays very high for a file transfer. | A longer key. This is often what security rules ask for. |
| Drawbacks | The key is shorter. Some internal rules require 256 bits. | A little more computation, with no visible difference on an ordinary file. |