EVERVAULT, NEW YORK & DUBLIN. The mark of a company that wants to hold the world's most sensitive data - without ever reading a byte of it. Company logo.
The developer-first encryption platform building what it calls the internet's clearing house for sensitive data - so companies can move card numbers and secrets around without ever touching them in plaintext.
Every company that handles payments or personal data faces the same quiet dread: somewhere in the stack sits a plaintext card number, waiting to become a breach headline. Evervault's founding idea inverts the problem. Instead of guarding your plaintext, the platform makes sure you rarely have any. Sensitive data is encrypted the moment it arrives, stored as ciphertext in your own infrastructure, and decrypted only inside verifiable, isolated environments at the exact moment it is needed.
Founded in 2019 by Irish entrepreneur Shane Curran, Evervault is a developer-first platform that lets companies collect, store, process and forward highly sensitive information - especially payment card data - without ever handling it in the clear. It runs a dual-custody model: the customer holds the encrypted data, Evervault manages the keys, and neither side alone can expose the underlying secret.
You store ciphertext. Evervault holds the keys. Data is decrypted only at runtime inside secure enclaves - so a leaked database is a leak of nothing readable.
Evervault positions itself as the neutral layer sensitive data flows through - the way payments flow through a clearing house - without any party seeing it in plaintext.
Figures self-reported by Evervault around its March 2026 Series B. Revenue and volume are approximate.
Evervault started as a broad privacy toolkit and sharpened, over time, into a focused encryption stack for payments. Its products share one promise: fit into an existing codebase with minimal effort, and keep the scariest data out of your systems.
Bundles encryption with 3D Secure authentication, network tokens, BIN lookup, card account updater and card-data enrichment into a single integration - replacing several vendors at once.
A configurable network proxy that encrypts or decrypts specific fields of data in transit, between your app and your own or any third-party API.
Deploy any existing Docker container into a Secure Enclave built on AWS Nitro Enclaves, with cryptographic attestation that the running code is the code you signed. Formerly named Cages before its January 2024 rename.
Secure, serverless environments that decrypt encrypted data at runtime so it can be processed without ever being exposed in your infrastructure.
Client-side components plus PCI DSS compliance tooling and ASV scans that shrink how much of your system falls inside audit scope.
We chose Evervault because it offers smooth developer experience, allowing our engineers to ship products and debug independently.
Evervault serves hundreds of companies, concentrated in fintech and payments, where the cost of mishandling data is highest. The pitch is simple: outsource the scariest data you hold to infrastructure built to never read it - and cut your compliance scope in the process.
It removes plaintext card data from your systems, shrinks PCI DSS audit scope, and collapses the encryption, tokenization, 3D Secure and enrichment stack into one integration - so small teams can ship payment products that once needed a security department.
~$46M raised in total. Series B led by Ribbit Capital, March 2026.
The Series B, announced in March 2026, was led by Ribbit Capital with participation from Index Ventures, Sequoia Capital, Kleiner Perkins and Operator Partners. Sequoia has backed the company since its 2019 seed round.
Evervault said the capital would go toward expanding its encryption infrastructure, investing in product, and growing its engineering and product teams. The round arrived on the back of four-times year-over-year revenue growth.
Instead of a bespoke vault and key-management project, teams get encryption, tokenization and enclaves as managed products.
Where rivals stop at storage, Evervault folds in 3D Secure, network tokens and card enrichment - the parts payments teams actually need.
Cryptographic attestation proves the code processing your data is the code you signed - a guarantee most vaults can't offer.
Its closest alternatives are tokenization and data-security platforms such as Basis Theory, VGS and Skyflow - along with the ever-present option of building it all in-house.
At 16, Shane Curran wins Ireland's BT Young Scientist & Technology Exhibition with qCrypt, a quantum-secure encrypted storage project.
Curran leaves a business-and-law degree at UCD and raises a $3.2M seed round led by Sequoia Capital.
The company raises $16M to build out its encryption platform.
Launches its enclave product on AWS Nitro Enclaves for hardware-isolated confidential computing.
Renames Cages to Enclaves and sharpens the company around card-payments encryption.
Ribbit Capital leads a round that brings total funding to about $46M.
Born in 2000, Curran was named to the Forbes 30 Under 30 list in January 2018 - before Evervault had raised institutional money. He has been building secure-storage technology since his teens, and remains founder and CEO.
Evervault's Enclaves product was originally called Cages. Curran briefly studied law before dropping out to build the company - and the seed round that funded it came from the same firm that once backed Google and Stripe.
Links open YouTube search results for the latest available interviews and demos.
It provides infrastructure that lets developers encrypt, store, process and forward sensitive data - especially payment card data - without ever handling it in plaintext.
It was founded in 2019 by Irish entrepreneur Shane Curran, who serves as CEO.
About $46 million in total, including a $25M Series B in March 2026 led by Ribbit Capital, with earlier backing from Sequoia Capital, Index Ventures and Kleiner Perkins.
Hundreds of companies, concentrated in fintech and payments - customers include Ramp, Rippling, CarTrawler and Overwolf.
Customers store the encrypted data in their own infrastructure while Evervault manages the encryption keys, so neither party alone can expose the plaintext.