Private file storage
Client uploads and deliverables are stored in non-public Supabase buckets with project-aware database and storage policies.
Security
A precise view of the safeguards built into the current Everest Nova application.
Client uploads and deliverables are stored in non-public Supabase buckets with project-aware database and storage policies.
A client account can access projects it owns. Users with the Everest Nova administrator role can access projects to operate the dossier service.
Download requests are authorized by the application and return a signed storage link that expires after 10 minutes.
Stripe processes payment-card data. Everest Nova stores order status and Stripe references, not raw card numbers.
Selected account, project, file, message, checkout, order, and administrative actions are written to application logs when the production integration is configured.
The private upload bucket restricts files to configured document and image formats and applies a 100 MB per-file limit.