Sharing secret information with Unique — Unique AI Documentation

Sharing secret information with Unique

These recommendations reflect current knowledge and best practices. Unique makes no warranties regarding their effectiveness and accepts no liability for secrets that are lost, intercepted, or unsuccessfully shared.

By using these recommendations, you acknowledge that secret sharing inherently carries risk, and that responsibility for the secure handling of sensitive information ultimately lies with the sharing party. Client-specific policies and applicable legal obligations always take precedence over these recommendations.

Scope

The procedures on this page apply to small amounts of text or files. For large or numerous file transfers consult your Unique Point of Contact or Support.

The page is on purpose called secret information and not sensitive information as these files or documents are out of scope for these recommendations.

Disclaimer

Unique does not provide a password sharing solution to clients where they can upload secrets, the following approaches are the preferred way.

Naturally, client-applicative policies take precedence over these recommendations.

Sharing secrets

You = The Client

Via your companies preferred tool

Your companies secret/password toolchain or often the central team or company policies have pre-described ways of sharing secret information with externals (Unique).

➡️ Please follow first and foremost your companies guideline, policies and tooling!

Via PasswordPusher

http://eu.pwpush.com/ allows you to push a password to someone else (Unique).

Unique is neither affiliated nor liable for this third party solution. Use it at your or your companies discretion.

Via PGP Key Encryption

This approach is for tech-savvy staff only

Point of Contact

Ask your Unique Point of Contact for their PGP key or refer to the CISO section below if they can’t provide one.

CISO

Savvy users can encrypt the sensitive information with Uniques CISO PGP key.

{
  "Recipient": "michael@unique.ch"
}

Unique CISO PGP Key
none

-----BEGIN PGP PUBLIC KEY BLOCK-----

...
-----END PGP PUBLIC KEY BLOCK-----

Send the encrypted information to said email address stating the final recipients of the decrypted information (which will internally be shared via 1Password to the targeted recipients only).

Further tutorials are on purpose not provided as this path is only recommended for users familiar with the PGP protocol.