Every file is encrypted at rest and in transit. Your documents are protected by the same encryption standards used by banks and government agencies.
Passwords, email verification, 2FA, approved-email lists, NDA gates, and link expiry — layer as many controls as your documents need.
Every view, download, and access attempt is logged with timestamps, IP addresses, and device details. Complete visibility into who accessed what and when.
Peony's security architecture covers every layer — from API endpoints and data stores to networking and encryption at rest. Our Technical Whitepaper details the full scope and system boundary.

"Every now and then, you come across a product that has a massive positive impact on your business. Peony is one such product."
Panos Moutafis
Founder & CEO, Zenus
Peony encrypts every file with AES-256 encryption at rest and secures all data in transit with TLS 1.3. This is the same encryption standard used by banks and government agencies, and Peony's infrastructure is SOC 2 ready. All data transfers between your browser and Peony's servers are encrypted end-to-end, ensuring files cannot be intercepted during upload, download, or viewing.
Yes. Peony supports two-factor authentication on every plan, including the Free tier. Admins can require 2FA for their own team members and for external viewers accessing shared links. This adds a verification step beyond passwords and email gates, significantly reducing the risk of unauthorized access to your data room.
Peony delivers enterprise-grade security at a fraction of the cost. While Ideals and Firmex lock advanced features like screenshot protection, dynamic watermarks, and granular permissions behind expensive plans, Peony includes AES-256 encryption, 2FA, NDA gates, link expiry, watermarks, and screenshot prevention on every tier, including a free plan ($0).
Yes. Peony logs every view, download, and access attempt with timestamps, IP addresses, and device details. You get a complete, exportable audit trail for every document and data room, which is essential for due diligence, compliance reviews, and legal proceedings. Unlike DocSend, Peony includes per-page analytics so you can see exactly which pages each viewer read.
Peony is built with privacy and compliance in mind. Data is protected with AES-256 encryption at rest and TLS 1.3 in transit, hosted on SOC 2-ready infrastructure. Peony is GDPR, CCPA, and HIPAA compliant. Peony also offers controlled redaction to permanently black out PII, financial figures, or proprietary terms before sharing with counterparties. Full audit trails and granular permissions help teams meet the data-handling expectations of GDPR, CCPA, HIPAA, and SOC 2 frameworks.
Peony provides layered access controls including passwords, email verification, approved-email lists, NDA gates, two-factor authentication, link expiry, and revocable access. Admins can set different permission levels per viewer and per document. This granular approach means you control exactly who sees what, for how long, and under what conditions.
Peony combines multiple leak-prevention features: screenshot blocking, dynamic watermarks that embed the viewer's identity on every page, download restrictions, and forensic audit trails. If a leak occurs, the watermark and access logs trace it back to the exact viewer. Legacy providers like Digify and Firmex charge premium rates for comparable leak tracking.
Every security feature is included on every Peony plan with no per-viewer, per-page, or per-link limits — costs stay predictable regardless of deal size. The Free tier ($0, 2 GB) includes encryption, 2FA, watermarks, screenshot protection, and full audit trails. Pro ($20/admin/month, 200 GB) and Business ($40/admin/month, 1 TB) add team collaboration and advanced branding. There are no security add-ons or enterprise upsells.
Require email-based identity verification before anyone can view your shared documents.
Require a password before anyone can view your shared documents or data rooms.
Block screen captures and recording tools to prevent unauthorized copies of your documents.