Zero-trust by design. Absolute control that stays with the document. Engineered for institutional confidence.
Every layer of VAG VDR is built on zero-trust principles, least privilege, and complete auditability.
Every request is authenticated and authorised. No implicit trust. Least privilege enforced server-side.
Identity, timestamp, IP and custom text applied at view and download time. Traceable and deterrent.
Revoke access to documents even after they have been downloaded. Control does not end at the download.
Append-only event store. Every significant action is recorded and retained. No silent changes.
Automatic expiry on users and permissions. Access ends when it should — without manual cleanup.
Architecture supports regional deployment. Priority on GCC-friendly options for regulated and regional deals.
AES-256 at rest. TLS 1.3 in transit. Strong isolation between tenants and rooms.
AI only ever sees content the requesting user is allowed to access. No training on customer data by default.
Intelligence without compromising confidentiality.
Designed to support serious security reviews and institutional requirements.
From single-bidder processes to multi-party staged disclosure, the permission model is designed for real-world complexity while remaining practical for administrators.
Standard roles combined with folder and document-level permissions. Inheritance with the ability to break it where needed.
Independent permission groups per external party. Staged disclosure without compromising the integrity of the room.
Dedicated auditor and observer roles with full audit access and controlled content visibility.
We are happy to walk through the architecture, controls, and AI governance model in detail.