Dossira
Docs / Security / Current Security Scope

Current Security Scope

Current Security Scope

Dossira currently provides organisation-bound file workspaces, optional passkey sign-in for registered members on supported devices, controlled external shares, and optional end-to-end encryption for file payloads in the supported store-first path. Email-password and magic-link member sign-in are also available.

External recipients use confirmed-email PIN verification or an explicitly created share link. Guest passkeys are not implemented.

Filenames and folder metadata are outside the optional file-payload encryption boundary. Guest sharing and mirror-style paths do not have the same E2EE coverage.

Dossira does not currently expose a customer-facing room audit ledger, comments and decisions, a complete version-history interface, or a sealed read-only lifecycle. Public copy must not imply that all actions are cryptographically signed or that workspaces create immutable or legally conclusive records.

Last updated: 2026-08-11