Sensitive files stay in a governed working lifecycle.
Each object keeps its organisation, folder and version identity as it moves through normal work.
Platform overview →Secure content management for regulated organisations
Casewelt stores, shares and governs sensitive business files, with policy-aware access, lifecycle controls and a queryable record of each important action.
UK company Product of Sial Networks Limited
OIDC Organisation identity through the customer’s identity provider
API & signed webhooks Automation on a documented contract
Privacy-first website No advertising or analytics cookies
Product
Each object keeps its organisation, folder and version identity as it moves through normal work.
Platform overview →Named recipients, version binding, expiry and revoke.
Secure sharing →Delete decisions can then consult the same lifecycle state instead of relying on a separate administrative process.
Lifecycle controls →Actor, object, version and decision remain connected to the event.
Auditability →Product evidence
Captured 25 August 2026 from the live portal. Inbox, activity, search, favorites and inbound file requests sit with the governed workspace. Organisation branding is tenant-configured. Bytes still come from Casewelt, not a storage URL.
Lifecycle
A workspace object is created with organisation, folder and version identity. Policy can control who may create it, and the event records the actor and timestamp.
Classification lives on the object itself, so the organisation’s label remains attached to the file and can be used by later policy decisions.
Policy can require a label before share. Evidence: classification set or changed.
The recipient proves control of the intended mailbox before content is served. External access stays separate from employee identity and workspace navigation.
Policy can require verification before bytes. Evidence: recipient proof events.
Opening the file is an authorised action against a specific version. A valid session can still be denied by policy.
Evidence: opened, version, decision.
11:04 Opened Q4 Board Pack.pdf · version 3 · ALLOW
Revocation ends the share or session directly. Subsequent attempts are denied and remain visible in the event record.
Policy can require revoke on incident.
Retention rules stay attached to the object and determine how long it must remain before disposition can proceed.
Policy can block early delete. Evidence: retain / dispose decisions.
Legal hold pauses lifecycle deletion while the object remains available under normal access policy. Applying the hold and blocking deletion are both recorded.
The product record can be queried directly by actor, object, version, decision and outcome.
Opened v3ALLOW
External collaboration
A Casewelt share names the recipient, points to a known version, carries its own lifetime and can be revoked independently of staff access. External recipients use a separate trust surface and never inherit workspace navigation.
How secure sharing worksSafe failure
A useful security demo includes a denial. Casewelt records blocked and rejected actions alongside successful ones, so the control boundary can be inspected directly.
Policy does not permit this file to be shared externally.
A hold prevents lifecycle deletion.
The active user session no longer has authority.
The requested operation conflicts with regional placement controls.
Governance
Policy controls whether an action is allowed now. Retention defines how long the content must remain. Hold pauses deletion when preservation is required. Each control acts on the same file but answers a different operational question.
Lifecycle controlsWho opened this file?External recipient · v3 · ALLOW
Which policy allowed it?create-share evaluated
When was access revoked?Share ended · later open DENIED
Audit & evidence
Search the product record by actor, object, version and decision to answer the question directly.
Explore auditabilityIntegrations
The public integration contract is currently protocol-level. Casewelt supports OIDC-compatible identity providers, structured events, signed webhooks, HTTP APIs and machine identities with mTLS. Vendor-specific integrations should be named only after they are shipped and tested.
Use cases
Share board packs with auditors without exposing internal workspaces.
Holds, retention and controlled sharing while preserving evidence.
HR and supplier files remain usable under policy. Illustrative cases →
Security architecture
OIDC, tenant isolation, envelope encryption, session revocation, mTLS for machine identities, an append-oriented audit model, signed webhooks. Customer-managed keys and regional cells are deployment decisions reviewed against the customer’s environment and requirements.
Next step
We can walk through how Casewelt would handle access, sharing, lifecycle governance and audit for a real workflow.