Click to watch on YouTube (with sound)
Another computer's files show up as a folder on yours. Open and edit them in your own apps, with nothing to download first.
- Open a 40 GB file and start working instantly. Your edits sync back.
- End-to-end encrypted (post-quantum). No cloud, and the relay never reads your files.
- Same network: one click. Over the internet: swap a code once, then save the contact.
- Their files become a real folder on your machine. Open, edit,
git clone, anything. - macOS, Linux, Windows. iOS and Android coming soon. Open source (MPL-2.0).
| Direct Transfer | Virtual Folder (FUSE) |
|---|---|
![]() |
![]() |
| Drag files in. Your peer saves what they need. | Peer files appear as a folder. Open in any app. |
| Finder | Terminal (git) |
|---|---|
![]() |
![]() |
brew tap keibisoft/keibidrop
brew trust keibisoft/keibidrop
brew install keibidropwget -O keibidrop.deb $(curl -s https://api.github.com/repos/KeibiSoft/KeibiDrop/releases/latest \
| grep -o 'https://[^"]*_amd64\.deb')
sudo apt install ./keibidrop.debchoco install keibidropOr download from GitHub Releases.
git clone https://github.com/KeibiSoft/KeibiDrop.git
cd KeibiDrop
make build-kd # CLI daemon
make build-cli # Interactive CLI
make build-rust # Desktop UI (needs Rust + Slint)Same network (LAN):
- Both peers launch KeibiDrop
- Devices discover each other automatically
- One click to connect
- Share files
Over the internet:
- Both peers launch KeibiDrop
- Copy your fingerprint and send it to your peer (Signal, Telegram, anything)
- Paste each other's fingerprints and connect
- Share files
Save a peer as a contact to skip the fingerprint exchange next time. On the same network, saved contacts connect with one click using pseudonyms.
It works through firewalls automatically. If direct connection fails, KeibiDrop falls back to an encrypted relay. No port forwarding, no router configuration.
| Direct Transfer | Virtual Folder (FUSE) | |
|---|---|---|
| Speed | Up to ~660 MB/s | Up to ~276 MB/s |
| How it works | Add files, peer pulls them | Peer's files appear as a local folder |
| Setup | Nothing extra | Install macFUSE, fuse3, or WinFsp |
| Best for | Sending large files | Working on shared files, git repos |
- Peers exchange fingerprints (or discover each other on LAN)
- KeibiDrop finds the fastest path: LAN, direct IPv6, or encrypted relay
- Files transfer over an encrypted channel the relay cannot read
- Keys rotate automatically for forward secrecy
The encryption is post-quantum (ML-KEM-1024 + X25519) with AES-256-GCM or ChaCha20-Poly1305. Full protocol details in Security.md.
Three interfaces
Desktop UI (Rust/Slint)
./keibidropInteractive CLI (terminal REPL)
./keibidrop-cliAgent CLI (for scripts and AI agents, all output is JSON)
./kd start # Start daemon
./kd show fingerprint # Get your fingerprint
./kd register <peer-fingerprint> # Register peer
./kd create # Create room (or: kd join)
./kd add /path/to/file.zip # Share a file
./kd list # List shared files
./kd pull file.zip ~/Downloads/ # Download a fileConfiguration
KeibiDrop reads ~/.config/keibidrop/config.toml. Environment variables override the config.
| Setting | Env var | Default |
|---|---|---|
| Relay server | KD_RELAY |
https://keibidroprelay.keibisoft.com/ |
| Bridge relay | KD_BRIDGE |
bridge.keibisoft.com:26600 |
| Save folder | KD_SAVE_PATH |
~/KeibiDrop/Received/ |
| FUSE mount | KD_MOUNT_PATH |
~/KeibiDrop/Mount/ |
| Inbound port | KD_INBOUND_PORT |
26431 |
| Disable FUSE | KD_NO_FUSE |
false |
Security
Post-quantum hybrid key exchange prevents future quantum computers from decrypting recorded traffic. Forward secrecy via periodic re-keying limits exposure if a session key is ever compromised.
By default, identity persists across sessions (so saved contacts keep working), encrypted with a per-install master key stored in the OS keychain (macOS Keychain Services, Linux Secret Service, Windows Credential Manager). Headless setups fall back to ~/.config/keibidrop/.master.key (mode 0600). Optional passphrase protection via Argon2id for users who back up config to the cloud. Incognito mode switches to ephemeral keys: a fresh keypair each session, anonymous, unlinkable, nothing written to disk.
Full protocol description: Security.md
See TROUBLESHOOTING.md.
See CONTRIBUTING.md.
Go engine, CLI, and mobile bindings: Mozilla Public License 2.0 (per-file copyleft)
Rust UI and brand assets: Proprietary - see DUAL-LICENSE.md
Desktop UI built with Slint
Built by KeibiSoft SRL.
- Website
- Technical deep dive
- Blog posts (22 posts on FUSE, crypto, performance)
- FAQ
- Comparison with alternatives




