Self-hosted · Zero-knowledge · White-label
Fetcher is the document-collection platform that runs entirely on your infrastructure — on-premises or air-gapped — and encrypts every file so even your own servers can't read it. For organizations that legally, contractually, or constitutionally cannot put citizen and client documents on someone else's cloud.
Encryption
In-browser, end-to-end
Where data lives
Your infrastructure only
Operator access to files
None — ciphertext only
The problem with the cloud
Case files, citizen records, financial disclosures, sealed filings, privileged material. For the organizations that hold them, "trust us, it's encrypted on our cloud" is not an answer a regulator, a court, or a constituent will accept.
How zero-knowledge works
Your clients and constituents upload through a simple link — no account, no app. The encryption happens on their device, sealed to a key only your team holds.
Each file is encrypted in the uploader's browser using your organization's public key — before a single byte is transmitted.
Your server (and any storage you choose) only ever holds encrypted blobs. There is no key on the server that can open them.
Authorized members decrypt in their own browser with a passphrase that is never sent to any server — yours or ours.
The platform
End-to-end, browser-side encryption keyed to your team. The server stores only ciphertext.
Your name, your domain, your branding end to end. Fetcher is invisible to your clients and staff.
Unlimited requests, documents, users, and workspaces. It's your server — there are no SaaS meters.
Every request, upload, view, approval, and decline is timestamped and retained for defensible records.
Smart per-matter checklists, automated reminders, and an approve/decline review queue — bilingual.
Connects to your DMS, CRM, e-sign, and identity provider. Scoped to your environment during onboarding.
Deployment
Fetcher installs into a WordPress environment you control — so it inherits your hosting, your network boundary, and your access policy.
Deploy in your own AWS, Azure, GCP, or sovereign-cloud tenancy, in the region your residency rules require.
Run it in your own data center, behind your firewall, under your existing controls and monitoring.
Fully offline operation with signed, file-based licensing — no phone-home, for the most restricted networks.
Built for
Editions
Every edition is self-hosted, white-label, and uncapped. They differ by deployment reach, security posture, and the level of hands-on support. Pricing below is a starting point — every engagement is scoped and quoted.
+ one-time implementation
A single firm that needs full ownership and white-label, on its own infrastructure.
+ scoped implementation
Multi-office and multi-department operations needing integrations and white-glove rollout.
typically $75,000+/yr
Government, regulated, and security-first bodies with the strictest deployment and data rules.
No public checkout. Every deployment begins with a demo and a scoping conversation.
Security & compliance posture
Because Fetcher runs on your systems, your existing controls and certifications extend to it — it is built to support your HIPAA, CJIS, StateRAMP, or SOC 2 program, not to substitute a certification of ours. We provide the architecture, encryption design, and documentation your security team and auditors need to evaluate and approve it within your own framework.
How we engage
A private walkthrough against your actual use case and constraints.
We map deployment, integrations, security review, and residency requirements.
Installed into your environment, branded, integrated, and validated with your team.
SLA-backed support, updates, and a named contact for the life of the contract.
Request a demo
Tell us a little about your organization and what you need to collect. We'll arrange a private demo and a scoping conversation — no sales floor, no obligation.