Secure file sharing for government

Government file transfer your team can answer for.

My MX Data gives departments, public bodies, suppliers and authorised partners a controlled, traceable way to exchange sensitive files. Named recipients, detailed audit records and MX's quantum secure patented methodology keep accountability attached to every handoff.

7-day trial · up to 5 users · no credit card required

150K+files exchanged weekly
10K+active users
UKdata-location options
Nopublic file links
Why controlled exchange matters

The questions public bodies need to answer after a file has moved.

Audits, reviews, investigations and partner assurance all test information handling. Secure file sharing should make those questions easier to answer, not leave teams reconstructing events from inboxes and public links.

Who was authorised to receive the file?

Information governance review

Named recipients create clear accountability. MX exchanges files with identified users rather than public links that can be forwarded or remain active beyond their original purpose.

Can we show when it was accessed?

Internal audit

Detailed activity records support reconstruction. Uploads, views, downloads and restoration events can be recorded with timestamps and relevant access details.

Why was access still available?

Departmental risk committee

Expiry and permission controls make access deliberate. Teams can define how long a file remains available and what an authorised recipient can do with it.

Was this service suitable for the information?

Security and procurement review

Suitability must be assessed, not assumed. MX provides technical controls and evidence; each public body remains responsible for classification, lawful use, configuration, accreditation and risk acceptance.

Quantum secure patented methodology

Anonymise. Shard. Restore.

Alongside AES-256 protection, MX separates file data, divides it into encrypted shards and restores it for an authorised recipient. This adds another control layer without claiming absolute protection.

STEP 01 · ANONYMISE

Separate identity and business context

Information that identifies the file, sender or purpose is separated from the payload, so an individual fragment carries less useful context.

STEP 02 · SHARD

Divide the file into encrypted shards

The anonymised payload is split into shards and handled according to configured data-location options. No individual shard is a complete usable file.

STEP 03 · RESTORE

Restore for the verified recipient

The file is restored after recipient verification, with relevant activity recorded to support accountability and later review.

ASR is not a claim of invulnerability. It is a patented methodology designed to reduce exposure, strengthen long-term data protection and make the handling process easier to explain.

Built-in governance controls

Controls that support accountable public sector file exchange.

MX focuses on the point where sensitive information moves between known parties. It supports controlled handoffs without attempting to replace every storage, records-management or collaboration system.

Named recipients

Exchange files with identified users rather than public links, reducing uncontrolled forwarding and clarifying ownership.

Detailed event logging

Record uploads, access, downloads and restorations to support chain-of-custody evidence and governance review.

Expiry and permissions

Define how long a file remains available and apply download controls that reflect the purpose of the exchange.

Data-location options

Select appropriate regions for encrypted shards as part of wider departmental, contractual and legal requirements.

Multi-factor authentication

Add verification to protect user accounts and support a stronger identity and access-management process.

Large file transfer

Move datasets, media and technical records without forcing staff to split files or use unapproved services.

Secure branded portals

Collect files from citizens, suppliers and partner bodies through one consistent, approved upload route.

Exchange-linked discussion

Keep routing notes and operational conversation connected to relevant file activity rather than dispersed across inboxes.

Where MX fits

Keep everyday platforms. Add a controlled exchange layer for sensitive handoffs.

SharePoint, OneDrive and established platforms can remain appropriate for productivity and records management. MX is designed for exchanges that need named access, stronger traceability and a defensible process.

Everyday platforms

Broad productivity and content management

  • Longer-term storage, synchronisation and co-authoring
  • Wide internal use across routine business activity
  • Sharing models that may need additional configuration
  • Appropriate for many ordinary collaboration workflows
My MX Data

Focused, auditable file handoffs

  • Named-user exchanges without public links
  • Expiry, permission and data-location controls
  • Detailed activity records around the transfer
  • Designed for files that need a more defensible process

The practical question is not which platform replaces everything. It is which exchanges need greater control and evidence. Explore MX's enterprise file-sharing approach.

Compliance and assurance support

Controls and evidence that can strengthen public sector governance.

MX can help facilitate compliance efforts through encryption, named-user access, audit records, expiry controls and data-location options. The public body remains responsible for classification, lawful basis, policy, retention, people and configuration.

UK GDPRData Protection Act 2018ISO 27001 objectivesCyber Essentials Plus controlsNCSC cloud principlesGovernment Security Classifications
Careful compliance position: no platform guarantees compliance or determines whether a government information-sharing decision is lawful. MX contributes technical and evidential controls to a proportionate, documented process.

Evidence for audits and assurance

Structured transfer records can reduce manual reconstruction and support internal, supplier and partner reviews.

Demonstrable access management

Named users, authentication and permissions help show how access was limited to authorised participants.

Configurable data location

Region options can support hosting and contractual requirements when assessed with the wider architecture.

A process that can be explained

From upload to recipient access, the exchange can be described to a DPO, auditor, procurement team or partner body.

Government classification matters: assess service suitability against the current Government Security Classifications Policy, departmental requirements and the specific information involved. MX should not be assumed suitable for SECRET or TOP SECRET information without the necessary assurance and approval.
Public sector workflows

One controlled route for exchanges that cross organisational boundaries.

Use MX where a file needs to move beyond the team that created it and the recipient, access conditions and evidence all need to remain clear.

Interdepartmental exchange

Share case material, reports and operational documents with named users in another department or public body, while retaining a clearer activity record.

Explore controlled B2B exchange

Citizen and supplier submissions

Provide a branded upload route for sensitive evidence, procurement documents or supporting records instead of accepting files through fragmented channels.

Review secure upload portals

Large operational files

Transfer datasets, media, planning archives and technical packages without encouraging staff to use personal accounts or consumer services.

See secure large file transfer
Essential reads

Practical guidance for stronger information handling.

Use these guides to support classification, assurance and longer-term security decisions around sensitive file exchange.

01
Data classification · MX guide

What Makes a File ‘Sensitive’? A Practical Guide

A harmless-looking spreadsheet can become sensitive once names, pricing or project details appear. Learn how to classify risk before a file leaves your organisation.

Read the guide
02
Compliance controls

What Makes a File-Sharing Solution ‘Compliant’ in 2026?

Look beyond encryption to access, auditability, retention and configuration.

Read the guide
03
Long-term security

Quantum-Proof Data Security

Understand how separating and anonymising data changes the attacker's problem.

Read the guide
Frequently asked questions

Questions for security, governance and operational teams.

Where MX fits, what its controls can support and where departmental assessment remains essential.

My MX Data gives public sector teams a controlled route for moving sensitive files between departments, agencies, suppliers and other known recipients. Each exchange is associated with named users and recorded through a detailed audit trail.

The platform combines AES-256 protection with Anonymise, Shard, Restore. Administrators can also apply expiry dates, download restrictions and data-location options.

No service should make a blanket claim that it suits every government classification. The decision depends on the information, departmental risk assessment, recipients, hosting, configuration, contractual controls and required accreditation.

Use the current Government Security Classifications Policy as the starting point. Do not assume suitability for SECRET or TOP SECRET without formal assurance and approval.

Responsible sharing starts with purpose, necessity, lawful basis and accountability. Technology supports those decisions but cannot make them for a public body. Named access, expiry, download permissions and activity records provide stronger control and evidence around the transfer itself.

The ICO data sharing code explains how legal, technical and organisational measures work together.

No. Those platforms can remain appropriate for productivity, collaboration and longer-term content management. MX serves a focused purpose: controlled, auditable handoffs of sensitive files between known users.

Organisations can keep content where it belongs and add a stronger exchange process where access and evidence matter most.

MX can provide a branded secure upload portal or named-user exchange route. External senders get one clear, approved destination, while the receiving team gains a more controlled record of the submission.

This helps reduce attachment-based workflows, public links and manual chasing across multiple channels.

Depending on the configured workflow, records can include the sender, named recipient, upload time, access events, downloads, restoration activity, timestamps and relevant technical details.

That evidence can support internal audit, supplier assurance, incident investigation and partner questions, while departmental ownership and retention policies remain essential.

A more accountable way to share

Test a more controlled file exchange process with your own workflow.

Use the seven-day trial to assess named-user access, audit records, large file transfer and secure handoffs with up to five users.

No credit card requiredUp to 5 trial users7-day trial
View in