Safenix never receives the names of your protected folders. You choose those folders in the browser, and their names are written directly into the installation command. The command saves them on your server; the control plane never receives them.
Values sent after a completed backup
After each completed backup, the agent sends two calculated values. They are not readable descriptions of your files or folders.
Fingerprint of the configured paths
This is one fingerprint calculated over the set of configured paths. It is not calculated separately for each folder name. Its purpose is to show whether the set of protected paths is unchanged or has changed between backups.
The fingerprint is not reversible. It cannot be used to determine which folders are included in the protected set.
Fingerprint of file content
The agent also calculates a fingerprint of the file content. This fingerprint uses a key derived from your encryption password. That password-derived key is never transmitted to Safenix.
The key prevents someone who can read the fingerprint from checking whether you have a particular file. Without your encryption password, that comparison is not possible.
Why these values are sent
Both fingerprints are included in the compliance record. The record is cryptographically chained and cannot be modified.
Together, the values can later demonstrate that a particular set of files corresponds to a particular backup, without Safenix having to know the names or content of those files.
These values cannot be disabled. They are part of the compliance-record format and are calculated for every backup.
Other information Safenix receives
Safenix also receives information needed to identify the machine and monitor backup operation:
- the machine name, which the agent reports so it can be shown in the dashboard;
- when the last backup occurred;
- how much data is protected; and
- how many restore points exist.
File data sent to Safenix
File content is encrypted on your server before it is sent. Safenix receives only encrypted data and does not possess the key needed to open it.
In summary, Safenix does not receive your protected folder names or the encryption key. It receives encrypted file data, two non-readable fingerprints for the compliance record, and the machine and operational information needed for the dashboard and monitoring.