Current Security Scope
Current Security Scope
Dossira currently provides organisation-bound file workspaces, optional passkey sign-in for registered members on supported devices, controlled external shares, and optional end-to-end encryption for file payloads in the supported store-first path. Email-password and magic-link member sign-in are also available.
External recipients use confirmed-email PIN verification or an explicitly created share link. Guest passkeys are not implemented.
Filenames and folder metadata are outside the optional file-payload encryption boundary. Guest sharing and mirror-style paths do not have the same E2EE coverage.
Dossira does not currently expose a customer-facing room audit ledger, comments and decisions, a complete version-history interface, or a sealed read-only lifecycle. Public copy must not imply that all actions are cryptographically signed or that workspaces create immutable or legally conclusive records.