Keylight
KEYLIGHT.
← Back to all logs
DELIVERY

Controlled handoff with KeyVault signed links

The delivery path uses file metadata, a SHA-256 checksum, expiry-bound links, and download recording so the team can review handoff status.

Architecture path

  1. Chunked upload with size and checksum validation
  2. Role-scoped KeyVault file and project records
  3. HMAC link with expiry, optional password, and download cap
  4. A delivery board links only to an existing KeyVault project

Behavioral proof

  • There is no unrestricted public-link delivery path.
  • The recipient page appears only after link validation.
⌘K Quick Command