My understanding of FileKit is that you do trust the Tanker server, but only for delivering JS and handling identities.
It only contains public keys and encrypted DEKs (data encryption keys); see this image: https://docs.tanker.io/filekit/latest/going-further/file-enc...
The file content should therefore only be accessible by holders of private keys for which the file was encrypted.