Private Vault Preview
Documents
Private records need provenance, scanning, retention and scoped access.
Production documents will never be stored in the public repository. Upload instructions will be short-lived, malware scanning is mandatory, and downloads require an active access grant.
Vault
No private documents in this preview.
Eligible types include report cards, certificates, consultation documents, approved assessment attachments and other explicitly approved records.
Document lifecycle
01AuthorisePurpose + file limits
→02Private uploadShort-lived instruction
→03ScanMalware status
→04ActiveMetadata + retention
→05Access grantREAD / DOWNLOAD / REVIEW
→06Expire / deleteRetention event
Security boundary
A filename is not an access policy.
Document access is granted to a user for a specific permission and reason, optionally with an expiry. A parent, teacher or adviser does not inherit access to every document merely because they have a role.