SharedStorage
Zero-knowledge encrypted cloud storage for secure enterprise collaboration.
Engineering Telemetry & Metrics
Bottlenecks & Scale Constraints
Enterprise clients needed safe sharing for 10GB+ files without using public clouds. Traditional solutions were limited by server-side proxying and unstable connections.
Target Architecture & Execution
Architected a direct-to-S3 multipart upload strategy using pre-signed URLs. Implemented client-side AES-256 encryption, ensuring that even the server never sees the plaintext data.
Key Architectural Pillars
Client-Side Encryption
Resumable Multipart Uploads
Granular Access Control
PB-Scale S3 Management
Data Pipeline & Node Flow
Decoupled control logic. Frontend receives pre-signed URLs from the backend. File data streams directly to S3 (no server proxy), while metadata/permissions live in PostgreSQL.
Web UI (Next.js)
Implementation Snippet
Orchestrates parallel chunk uploads directly to object storage. Managing state initialization, parallel stream completion, and final assembly signature.
const uploadLargeFile = async (file: File) => {
const CHUNK_SIZE = 5 * 1024 * 1024;
const { uploadId } = await initUpload(file.name);
const promises = [];
for (let i = 0; i < Math.ceil(file.size / CHUNK_SIZE); i++) {
const chunk = file.slice(i * CHUNK_SIZE, (i + 1) * CHUNK_SIZE);
promises.push(uploadChunk(uploadId, i, chunk));
}
await Promise.all(promises);
await finalizeUpload(uploadId);
};Dossier Specifications
Building a mission-critical web system?
Whether you need low-latency transaction queues, HIPAA-compliant healthcare portals, or full-stack performance tuning, let's architect it right.