Data & CAD File Security
Last updated: [DATE — set at publication]
How uploads work
When you upload a drawing or CAD file through our RFQ form, your browser uploads it directly to a private object storage bucket using a short-lived, single-use signed URL. The file never passes through or is stored on our general web application server.
Storage protections
- The storage bucket has no public read access — files are not reachable by a guessable or shared URL.
- Files are encrypted in transit (TLS) and at rest (server-side encryption).
- Only authorized Wrex staff with a business need can access uploaded files.
- Access to uploaded files is logged.
- File type is restricted to common engineering formats (PDF, STEP, STP, IGES, IGS, STL, DXF, DWG, ZIP) and size-limited; both are enforced server-side, not just in the browser.
What we send by email
Internal notification emails about your submission reference the file's private storage location only — they never include the file's contents or a public link.
Retention and deletion
[Set and confirm a specific retention period here — e.g., "files are retained for N days after quote completion or program closure, then deleted," or per an agreed NDA term — and implement matching automated deletion. Do not publish a retention promise the infrastructure doesn't actually enforce.]
NDA requests
You can request a mutual NDA directly on the RFQ form before providing further project detail. We'll send one for signature before discussing specifics beyond what's needed for an initial quote.
Questions
Contact us through the Contact page with any question about how a specific submission was handled.