Security and Compliance
Security controls for regulated document operations.
DeskDox combines role-based access, audit evidence, authentication controls, governed external collection, lifecycle management, and permission-aware AI retrieval in one EDMS platform.
1User
2Role Check
3Folder Permission
4Document Access
5Audit Log
Security Model
Controls evaluators can inspect.
DeskDox emphasizes operational controls and evidence without claiming to replace your compliance program.
Role-Based Access Control
Access is evaluated across users, departments, folders, and documents.
- System roles and departmental scope
- Folder-level inheritance patterns
- Document-level action controls
Immutable Audit Trails
Document and workflow activity is preserved for review.
- Timestamped activity history
- Workflow transition records
- Document action evidence
Authentication and 2FA
Authentication controls support enterprise access policies.
- TOTP two-factor authentication
- Administrative enforcement options
- Session-aware access
Tokenized External File Requests
Collect files externally without opening uncontrolled inbox paths.
- Tokenized request links
- Revocable collection paths
- Document intake context
Controlled Preview and Download
Review documents in-browser while controlling download behavior.
- In-browser preview
- Download control patterns
- Watermarking support
Backup, Retention, and Lifecycle
Lifecycle controls keep document handling explicit.
- Version history
- Expiry and retention context
- Soft-delete recovery
AI Governance
Emii retrieves context inside governed access boundaries.
- Permission-aware retrieval
- Source context for reviewers
- AI usage tracking
Compliance-Ready Operations
Operational evidence is available for audits and internal review.
- Audit-ready activity records
- Controlled document access
- Workflow evidence
Access Control

Security Settings

Immutable Audit Log

Review DeskDox against your security and governance requirements.
Request a focused walkthrough covering RBAC, audit logs, file requests, AI governance, lifecycle controls, and deployment models.