Controlled handoff with KeyVault signed links
The delivery path uses file metadata, a SHA-256 checksum, expiry-bound links, and download recording so the team can review handoff status.
Architecture path
- Chunked upload with size and checksum validation
- Role-scoped KeyVault file and project records
- HMAC link with expiry, optional password, and download cap
- A delivery board links only to an existing KeyVault project
Behavioral proof
- There is no unrestricted public-link delivery path.
- The recipient page appears only after link validation.