Vaultun is engineered so your documents are private by default, never publicly linkable, and access is always brokered and logged.
Documents are never public. Every file lives behind authenticated access checks.
Previews and downloads use signed links that expire in minutes — no permanent public URLs.
Files are stored by opaque keys outside the web root and are never directory-listed or indexed.
Local disk today; Cloudflare R2, S3, or B2 tomorrow — same security model, zero code changes.
Every view, download, signature, and setting change is recorded in an append-only audit log.
Authenticator and email OTP, recovery codes, password policy, lockout, and SSO on the roadmap.
Vaultun never owns your data. You're always in control.
Create your secure vault