xEvolve

Regulated file
transfer operations.

Secure managed file transfer across cloud, SaaS, and legacy protocols.

30 days free. Stripe asks for a card; it is not charged unless you switch billing on.

Spot Cloud B.V. · KvK 89708873 · Netherlands · DPA · Security

GDPR · DORA · NIS2

A file transfer from an SFTP server to AWS S3 completing in xEvolve

Capabilities

14 protocols, one transfer record

  • 14 protocol adapters

    One dashboard for every transfer path.

    • SFTP
    • FTP
    • FTPS
    • Azure Files
    • Amazon S3
    • Azure Blob
    • Google Cloud Storage
    • Cloudflare R2
    • SMB
    • WebDAV
    • NFS
    • OneDrive
    • SharePoint
    • Google Drive
  • Spot Suite single sign-on

    Operators sign in through Spot Suite single sign-on, with a Microsoft account or an e-mail code.

  • Tenant-scoped data

    Each Environment keeps its own schema in the shared EU Postgres database (Supabase, Paris), with files in shared Cloudflare R2 storage. Your files and audit records are scoped to your tenant.

  • Per-transfer audit log

    Logins, uploads, downloads, and permission changes are recorded with user ID, IP, and timestamp. Export the audit packet for DORA, NIS2, GDPR, or vendor-risk reviews.

  • Secure data rooms

    Share files with external parties in a controlled room. Set viewer, editor, or manager roles per user. Every download and view is logged with actor and timestamp.

  • Multi-step Tasks on a schedule

    Chain Tasks across source → process → destination and run them on demand, or on a cron schedule on Business and MSP. In-flight processing (find/replace, zip/unzip) and reusable ${var} parameters carry your MOVEit automation logic over — all on Cloudflare Workers at the edge.

  • File notifications — transfers that fire on arrival

    Workflows trigger the moment a file lands in the source — Azure Blob Storage (Event Grid), or any system that can send a webhook. No polling intervals, no batch windows, no manual re-runs after an upstream delay. MOVEit's file notifications stop at shared folders; xEvolve covers blob storage.

  • OpenPGP payload encryption

    Encrypt outbound files with a partner's PGP public key or decrypt inbound files with your own key pair. Private keys stay encrypted at rest and are only loaded at transfer time.

The journey

From trial to first result.

Real screenshots of the live product, taken on a test workspace that went through the same sign-up.

  1. The Spot Suite buy page for an xEvolve trial, filled in for a sample company

    Start the trial

    Enter your work email, company and billing country, then add a card at Stripe.

  2. The order confirmation page while the Environment is being built

    We build your Environment

    Set-up starts right after checkout and usually takes 5 to 10 minutes. You can close the page; the sign-in link comes by email.

  3. The dashboard of a new xEvolve workspace with its three Get started steps

    Sign in from the email

    Open the link, set a password and open xEvolve. The dashboard starts you on three steps.

  4. The Files page after an upload, with the upload confirmed and the sample files listed

    Upload your first file

    Upload a small test file. The upload is confirmed and the file is listed with its size.

  5. Adding an Azure Blob storage connection in xEvolve

    Connect storage

    Add Azure Blob, S3, R2 or Google Cloud Storage with the account details. SFTP, FTP, SMB and NFS servers connect through an xEvolve Agent you set up first.

  6. Creating a data room in xEvolve: a name and what the room is for

    Create a data room

    Name the room and say what it is for. Then invite reviewers and share files from it.

  7. A data room with two sample files added and no members yet

    Put files in the room

    Add files from your workspace to the room. Each one is listed with its size and when it was added, ready to download.

  8. Recent activity on the dashboard: a one-time link download and files added to a data room, each with its time

    See what happened

    The activity log on the dashboard records uploads, one-time links, downloads and data room changes, each with its time.

Start 30-day trial

Nothing is charged during the 30 days, and nothing after unless you switch billing on.

In the product

Inside xEvolve.

Real product screens — dashboard, transfers, jobs, workflows, schedules, watchers, connections, files, data rooms, agents, API keys, Console, and sign-in.

xEvolve dashboard with usage metrics and recent activity
xEvolve transfers screen
xEvolve jobs queue screen
xEvolve workflows screen
xEvolve schedules screen
xEvolve watchers screen
xEvolve connections screen
xEvolve files screen
xEvolve data rooms screen
xEvolve managed agents screen
xEvolve API keys screen
xEvolve Console screen
xEvolve sign-in screen

Dashboard — users, files, data rooms, and the audit trail

Why xEvolve

Built for regulated transfer, not retrofitted.

Legacy MFT platforms were designed for bulk file movement. xEvolve was designed from scratch for operations where every transfer is an evidence event.

Capability xEvolve Legacy MFT
Audit trail Every event logged Per-transfer, kept, exportable Manual, siloed
Tenant isolation Your data stays yours Own schema in the shared EU Postgres database; shared R2 file storage scoped to your tenant Shared admin interface over one database
Automation Scheduled, event-driven, conditional Cron + folder watchers (Business and MSP) + workflow branching Scheduled scripts, no branching
Payload encryption File contents encrypted end to end OpenPGP encrypt/decrypt with partner keys TLS in transit only
Compliance export GDPR · DORA · NIS2 One-click audit packet, control-mapped Manual assembly per audit
Protocol breadth One dashboard for every path 14 adapters — SFTP, FTP, FTPS, S3, Azure Blob, GCS, R2, SMB, WebDAV, HTTP(S), OneDrive, SharePoint, Google Drive, NFS Vendor-specific add-ons, separate licences

How it works.

  1. Select one critical flow

    No broad migration up front. Start with one named workflow — the protocol, counterparty, owner, and the evidence criteria you need before go-live.

  2. Your own Environment

    Your pilot Environment is provisioned with its own schema in the shared EU Postgres database (Supabase, Paris) and shared R2 file storage before any real transfer path is connected.

  3. Connect and transfer

    Add your first SFTP server or S3 bucket. Drop files into a data room. Schedule a cron job. Full audit trail from the first byte moved. Schedules and folder watchers are on Business and MSP.

Pricing.

Pick a plan per Environment. Every plan starts with a 30-day trial and keeps your files in the EU.

Starter

€99 / month

Founding offer: 50% off your first 2 paid months after the 30-day trial (€49.50 per month)

Per Environment, per month · 30-day trial (card checkout)

  • One Environment with chain-of-custody transfer
  • Own Postgres schema + R2 file storage
  • All 14 protocol adapters
  • Spot Suite single sign-on
  • Audit exports
Start 30-day trial

Team

€199 / month

Founding offer: 50% off your first 2 paid months after the 30-day trial (€99.50 per month)

Per Environment, per month · 30-day trial (card checkout)

  • One Environment with chain-of-custody transfer
  • Own Postgres schema + R2, SSO, and custom domain
  • API and webhook access
  • Retention controls and direct support
Start 30-day trial

MSP

from €1,499 / month

Per Environment, per month · 30-day trial (card checkout)

  • Multi-customer transfer Environments
  • Per-customer reporting
  • White-label delivery notifications
Contact sales

After 30 days access stops unless you choose "Continue after trial". From then on you pay the plan price per month, ex. VAT.

Questions.

  • Where is transfer data stored?

    Each Environment keeps its own schema in the shared EU Postgres database (Supabase, Paris), with files in shared Cloudflare R2 storage. Direct signup is EU-only on every plan — there is no region to select.

  • How does sign-in work?

    Operators sign in through Spot Suite single sign-on, with a Microsoft account or an e-mail code. Machine-to-machine access uses scoped API keys and service principals, each with their own credentials and expiry review.

  • What compliance frameworks does it map to?

    xEvolve maps evidence to CIS controls, DORA operational-resilience needs, NIS2, and GDPR. Audit trails, tenant isolation, and AES-256/TLS 1.3 encryption are included in the export packet. Formal SOC 2 certifications are not claimed — regulation mapping is shared under NDA.

  • What does the 30-day trial include?

    Every plan starts with a 30-day trial — one Environment with its own schema in the shared EU Postgres database plus R2 file storage, all 14 protocol adapters, Spot Suite single sign-on, and full audit exports. Card checkout includes a 30-day free trial on one Environment. When it ends, choose Starter (€99), Team (€199), Business (€499), MSP (from €1,499) per Environment, per month, ex. VAT.

Test one regulated transfer flow

Every plan starts with a 30-day trial — one Environment, 14 protocol adapters, Spot Suite single sign-on, and audit exports. Card checkout includes a 30-day free trial on one Environment.