Trelix Security Overview
Trelix — Secure file transfer for law firms · www.trelix.us · Operated by CommVergent Automation LLC · Version 1.0 · August 28, 2026
What Trelix is
Trelix replaces email attachments with private, expiring transfer links. It is a temporary conduit, not storage: every file moves through Trelix on a schedule your firm controls, and is then permanently deleted. Clients need no account, no password, and no software — they receive a private link, upload or download, and the link dies.
The deletion promise
- Every transfer has an expiration set by your firm’s policy: undownloaded transfers expire after a firm-configured window, and downloaded transfers are deleted after a short post-delivery window.
- Files are deleted from storage automatically by a process that runs every hour, and deletion is verified.
- Any firm user can delete a transfer’s files immediately with one action (“Expire now”).
- An expired transfer can never be reopened, extended, or recovered — by anyone, including us. Expired means gone.
Most vendors accumulate your data. Trelix structurally sheds it. At any given moment, we hold only the files currently in transit between you and your clients.
Data in transit
All connections use HTTPS/TLS. Transfer links and downloads are served exclusively from Trelix’s own domain; the underlying storage layer is never exposed to your clients or their browsers.
Data at rest
Files are held in private, access-controlled object storage (Cloudflare R2), encrypted at rest by the storage provider. There is no public access to the storage bucket; all file access is brokered server-side by Trelix with short-lived, signed credentials.
Who can access what
- Your firm’s users can access only your firm’s transfers. Tenant isolation is enforced on every request at the database layer.
- Roles: firm administrators manage users; all access is individually attributed — every transfer records who created it.
- The platform operator (CommVergent) can manage firm accounts but cannot access any firm’s transfers or files. This is a structural boundary in the application, not a policy promise: the operator interface has no code path to transfer contents. Assisting a firm hands-on requires the firm explicitly adding an operator as a firm user — which the firm can see and revoke.
Authentication
Access is by email-verified, single-use sign-in links — there are no passwords to phish, reuse, or breach. Sessions are validated against the database on every request, so disabling a user or suspending a firm takes effect immediately, regardless of any open browser session. Removed users lose access on their next click.
What data Trelix holds
- Firm users: email address, role, sign-in activity.
- Transfers: metadata (labels, timestamps, file names and sizes, expiry) and the files themselves — until expiry.
- Clients: no accounts, no profiles, no stored client data. Clients interact through links only.
- Usage: aggregate transfer-volume records per firm (bytes and counts), retained for billing accuracy.
Infrastructure
Trelix runs on established providers: Vercel (application hosting), Cloudflare R2 (object storage), and Supabase (managed PostgreSQL). Each maintains its own independent security certifications and compliance programs. Transactional email (sign-in links, notifications) is sent through CommVergent-operated email infrastructure with industry-standard authentication (SPF, DKIM, DMARC).
What we don’t claim
Trelix does not currently hold SOC 2 or HIPAA certification, and we won’t imply otherwise. We are a small, focused vendor; this document describes exactly what we do, and we would rather be checked than believed. Questions — including from your IT advisor or malpractice carrier — are welcome: support@email.trelix.us.
CommVergent Automation LLC · Pflugerville, TX · This document is updated as the product changes; the current version is always at www.trelix.us/security.