Terms of Service
Acceptance of Terms
By accessing or using Ultra ("the Service"), you agree to be bound by these Terms of Service. If you do not agree to these terms, please do not use the Service.
These terms apply to all visitors, users, and anyone who accesses or uses the Service, including use of the API, CLI tools, or any integrations.
Description of Service
Ultra provides a file transfer and sharing platform with the following capabilities:
- Encrypted file uploads with time-limited share links
- Live pipe transfers — streaming files from sender to receiver in real time before upload completes
- Encrypted folders with configurable access modes (Delivery, Shared, Submission)
- Browser end-to-end encryption using AES-256-GCM on explicitly identified E2EE paths
- Pre-release REST API, SDK, CLI, and MCP interfaces whose support status may change before stable launch
Ultra is designed to be a zero-knowledge relay on browser-E2EE paths. Transport-only paths are not zero-knowledge and must not be treated as browser E2EE.
Acceptable Use
You agree not to use the Service to:
- Upload, transfer, or share any content that is illegal under applicable law
- Distribute malware, viruses, or any malicious code
- Infringe on intellectual property rights of any third party
- Harass, threaten, or abuse other users or third parties
- Attempt to circumvent rate limits, authentication, or security measures
- Use the Service for large-scale automated abuse or spam
- Resell or commercialise the Service without prior written agreement
Violations of this section may result in immediate termination of access and, where required by law, reporting to relevant authorities.
Privacy & Data
Ultra processes transfer payloads and metadata, account and authentication data, operational telemetry, security/audit records, and webhook delivery state only for operating, securing, supporting, and improving the Service.
The source-backed Privacy Notice identifies current categories, purposes, processors, encryption boundaries, retention limits, and request controls. Provider retention, processing regions, and jurisdiction-specific handling remain pre-launch review items and are not represented as verified here.
End-to-End Encryption
For browser paths explicitly labeled E2EE, including encrypted Live Pipe and Hybrid transfers, Ultra implements browser end-to-end encryption:
- Files are encrypted in your browser using AES-256-GCM before transmission
- Encryption keys exist only in your browser memory and the URL fragment — they are never sent to our servers
- We operate as a transport relay only — we cannot decrypt or access your file content
- If you lose the share link (including the key fragment after
#), the file cannot be recovered
Turbo and other transport-only plans use TLS in transit and provider-managed encryption at rest, but they are not browser E2EE. Direct R2 describes the network/storage route, not an encryption guarantee. Active API, SDK, CLI, and MCP operations do not receive a blanket E2EE promise; retired TUS and legacy upload endpoints are unavailable.
Browser E2EE protects ciphertext after correct client-side encryption. It does not eliminate risks from a compromised browser, device, extension, or client code delivered before encryption.
File Retention & Deletion
All uploaded files and shared content are subject to automatic deletion:
- Selectable transfer windows currently include 30 minutes, 1, 2, 4, 6, 24, and 72 hours, and one week
- Live Pipe memory and recovery state is bounded and retained for recovery until expiry or abandonment, then asynchronously cleaned; recovery chunks can outlive the live connection
- Folder contents expire at the folder's configured TTL
- Expiry makes content unavailable for ordinary use; asynchronous cleanup and provider lifecycle controls may remove underlying state later
Ultra does not promise immediate physical erasure at the expiry timestamp. Cleanup grace, provider lifecycle verification, and deletion timing are documented in the Privacy Notice.
You retain full ownership of all content you upload. By uploading content, you grant us a temporary, limited licence to store and transmit that content solely for the purpose of operating the Service.
Limitation of Liability
The Service is provided "as is" without warranties of any kind, express or implied. We make no guarantees regarding:
- Uptime, availability, or continuity of the Service
- Data integrity or prevention of data loss
- Fitness for any particular purpose
To the maximum extent permitted by applicable law, Ultra and its operators shall not be liable for any indirect, incidental, special, consequential, or punitive damages arising from your use of the Service.
Do not use Ultra as your only method of transferring or storing critical data. Always keep independent copies of important files.
Termination
We reserve the right to suspend or terminate access to the Service at any time, with or without notice, for:
- Violations of these Terms of Service
- Behaviour that is harmful to other users or the integrity of the Service
- Legal or regulatory requirements
- Discontinuation of the Service
You may stop using the Service at any time. Upon termination, any files you have uploaded will continue to expire on their normal schedule.
Changes to Terms
We may update these Terms of Service from time to time. When we make material changes, we will update the "Last updated" date at the top of this page.
Continued use of the Service after changes are posted constitutes your acceptance of the revised terms. We encourage you to review these terms periodically.
Contact
Questions belong with Support. Harmful content or conduct should follow the abuse report process. Security vulnerabilities should use security.txt.
Questions about our terms?
We're happy to clarify anything in plain English. Reach out and we'll get back to you.
Contact us