Skip to content
SkyKeephelp

SkyKeep help

SkyKeep is a per-engagement document vault: what goes in is compartmented, encrypted, and audited, and what comes out is only ever what your grants admit. These pages are the user manual — and the behavior pages are rendered directly from the vault's own executable test scenarios, so the manual cannot drift from what is actually enforced.

Using the vault

Administering the vault

Operating the deployment

Looking at a demonstration vault?

If you were handed an account called user_hr, user_sales or user_both — or one of their read-only twins user_hr_ro, user_sales_ro and user_both_ro — you are looking at a demonstration installation: two compartments (hr and sales) holding 269 documents of twelve kinds in eleven file formats, split by category so that the grants decide which slice of the same vault an account sees — 184 documents for the accounts granted hr, 167 for the accounts granted sales, all 269 for the two holding both grants, and none at all for the administrator. Twenty-four of the 269, two of every kind, are held part-way through ingestion, waiting for a person to release them, so 245 are admitted and answerable. An _ro account reaches exactly what its writing twin reaches — the only difference is that it cannot upload, and the upload control is absent from its page entirely. Some things about it are deliberately weak and belong to demonstrations only: all six accounts share one email address, they share one short password, and none of them is asked to change that password at first sign-in. Such a deployment may also open the audit view to every signed-in account rather than to administrators only. Each of those weakenings is a separate, explicitly typed choice the operator made.

All six accounts also sign in on the password alone, and that one is not a waiver — it is the ordinary rule. The one-time code is a preference each account holds, and these six were simply created with it turned off, which is a state any account can choose from its own profile page. A read-only account signs in exactly as its writing twin does: the access level is a grant, not a difference in authentication. The sign-in path has no idea it is serving a demonstration. None of this changes what the vault will hand you: your compartment grants decide that, here exactly as anywhere else.

Tested behaviors