For files that need policy, not just storage.
Legal hold, classification, restricted downloads, audit trails, retention controls, and role separation are built into the vault experience.
EidoVault delivers sovereign enterprise document storage for organisations with strict data residency and governance requirements — KSA, UAE, and beyond. SFTP, REST API, controlled sharing, legal hold, audit visibility, AI/OCR, and browser-based document collaboration in one private deployment.
Built for enterprise
EidoVault ships with the controls, audit trails, and access policies that regulated industries demand — without a year of custom integration.
Files can be protected with application-level envelope encryption and your cloud KMS, so storage, keys, and access policy stay under your control.
Drop-in SFTP access for legacy systems and automated pipelines. Standard port 22 — no client changes required.
OIDC single sign-on, SCIM user provisioning, and TOTP MFA help align access with your existing identity and security operations.
Track authentication, file activity, public links, SFTP transfers, approvals, role changes, and administration in one compliance-ready log.
Separate system administration, storage governance, uploader, viewer, auditor, and temporary support responsibilities with least-privilege access.
Version history, restore, duplicate detection, same-file-type version control, and actor traceability help recover from mistakes and investigate changes.
Uploads are routed through malware scanning, with infected or blocked content quarantined or flagged with the uploader and event context.
Share files and folders with users, groups, upload-only recipients, password-protected links, public links, expiry rules, and download restrictions.
Open supported Word documents, spreadsheets, and presentations in the browser, collaborate in real time through the integrated editor, and preserve changes as auditable versions.
Ask questions, get summaries, extract text with OCR, and suggest tags using your approved AI provider, including regional OCI Generative AI deployments.
Scoped API keys, documented REST endpoints, SCIM provisioning, SFTP automation, and signed webhooks connect EidoVault to enterprise systems.
Place files, folders, or users on legal hold, inherit hold rules into new uploads, and manage retention without relying on filename searches alone.
Send documents for signature through an approved provider, capture request status, callback evidence, and audit events from the file record.
Deploy into your own OCI Riyadh, GCP, or private cloud environment with regional storage, database, compute, keys, and AI provider controls.
Custom org name, logo, and brand colour across the entire interface. Deploy under your own domain with your own identity.
Legal hold, classification, restricted downloads, audit trails, retention controls, and role separation are built into the vault experience.
Deploy into OCI Riyadh, GCP, or private cloud with storage, database, compute, keys, and AI provider choices scoped to the agreed region.
SFTP, REST API, scoped API keys, signed webhooks, OIDC SSO, SCIM provisioning, and provider-backed e-signature workflows keep integrations practical.
Capability coverage
EidoVault combines secure storage, governed sharing, regional deployment, AI/OCR, auditability, and browser-based editing for supported Word documents, spreadsheets, and presentations in one tenant-controlled vault.
Tenant repository, folders, upload, quotas, versions, restore, duplicate detection, trash, and indexed search. EidoVault also supports same-file-type version control and OCR-assisted text extraction for supported files.
Browser editing and real-time collaboration for supported Word documents, spreadsheets, and presentations. Editing remains governed by EidoVault permissions, read-only viewer sessions, version timelines, audit records, and legal hold restrictions.
User, group, folder, public-link, password-protected link, and file-request sharing. Controls include expiry, max views, download permission, upload-only access, upload-without-delete, version-upload permission, and public-share activity capture.
Legal hold for files, folders, and users with inherited hold rules for new uploads. EidoVault restricts edit, delete, and version changes for held files, supports retention, classification labels, restricted file controls, watermarked downloads, and approval-based original downloads.
System Admin, Storage Admin, Uploader, Viewer, Auditor, and temporary Support Engineer roles. Identity and security controls include OIDC SSO, SCIM provisioning, local users, invite links, TOTP MFA, IP allowlisting, envelope encryption with cloud KMS, malware scanning, blocked extensions, session controls, and API policy.
Audit trails cover authentication, MFA, upload, download, preview, copy, share, delete, rename, version activity, role changes, public-share actions, SFTP activity, restricted download approvals, legal hold changes, and e-signature provider callbacks.
Deploy into OCI Riyadh, GCP, or private cloud environments. Terraform and Helm patterns cover Kubernetes, object storage, database, KMS, ingress, app services, Google Cloud Storage, OCI Object Storage, and OCI Generative AI residency configuration where supported.
REST API, scoped API keys, SFTP gateway, signed webhooks, SCIM provisioning, OIDC identity federation, AI/OCR provider configuration, and provider-backed e-signature workflows support enterprise automation and compliance processes.
Document Q&A, summaries, full-vault search, OCR, content extraction, auto-tag suggestions, and classification suggestions. Provider choices include OpenAI, Claude, Gemini, OCI Generative AI, bring-your-own-key options, and policy limits for confidential, restricted, or legal-hold content.
Web file browser, folder tree, recent files, starred files, trash, previews, right-click actions, role-based onboarding, Arabic and RTL support, responsive web access, white-label branding, custom organisation name, logo, colour, and custom domain.
Tenant quotas, user storage allocations, default user quota settings, per-tenant upload limits, public sharing policy, file request policy, API key policy, webhook approval policy, and temporary support windows. Production sizing covers editing concurrency, scan throughput, backup, restore, and search performance.
EidoVault is strongest where the requirement is a governed, private, auditable document vault with regional data residency. Browser editing and collaboration are included for supported files, while high-concurrency editing, disaster recovery, and large-repository performance are validated during deployment sizing.
Interactive Preview
A live, clickable slice of the actual product — open folders, preview a file, review version history, and tour the security controls. No sign-up, right here in your browser.
Open a folder, click a file to preview its details and integrity hash, then use the breadcrumb to step back. Home, Shared, Recent, Starred, Trash — full folder tree, grid or list view, drag-and-drop upload, and a live storage quota.
Open supported Word documents, spreadsheets, and presentations in the browser, collaborate through the integrated editor, and keep edits tied back to EidoVault permissions, audit, and version history.
Toggle public sharing, set link-expiry defaults, restrict upload file types, and review live user metrics and storage usage — all from one dashboard.
Every file version retained with timestamp, actor identity, file size, and SHA-256 hash. One click to restore any previous version.
Existing scripts and teams can push files over standard SFTP while EidoVault handles folder placement, encryption, versioning, and audit capture behind the scenes.
Additional interface states across browsing, previews, sharing, transfer access, and authentication.









Data Sovereignty
EidoVault deploys inside the cloud account and region you approve. Storage, database, compute, encryption keys, and AI provider configuration can be scoped to the residency boundary agreed at provisioning time.
Built for enterprises in jurisdictions with strict data localisation laws, including KSA NDMO, UAE data protection regulations, and GDPR-constrained environments.
SFTP Gateway & REST API
EidoVault exposes a standards-compliant SFTP endpoint and a full REST API — so existing workflows integrate without modification, while benefiting from encryption, versioning, and audit controls underneath.
Bearer token auth with read/write scope control. IP allowlist enforced on API traffic. Webhooks for file events and audit streaming.
Built-in Intelligence
Every file in EidoVault can be indexed for AI-assisted search and OCR. Your admin selects the approved provider — OpenAI, Claude, Gemini, or OCI Generative AI for regional deployments — and applies tenant policy before document content is sent for analysis.
This 47-page report covers Q3 FY2024 results across MENA operations. Revenue grew 18% YoY. Operating margin improved to 24.3%. Key risk: currency exposure in UAE projects through Q4.
Operating margin reached 24.3%, up from 21.1% in Q3 FY2023. The improvement was driven by reduced logistics costs and higher-margin government contracts in KSA. (p.14, §3.2)
Deployment
EidoVault deploys to your own cloud account via Terraform and Helm, including OCI Riyadh, GCP, and private cloud patterns — you own the infrastructure from day one.
Choose your cloud account and region, such as OCI Riyadh or GCP. Infrastructure is provisioned inside the agreed residency boundary.
We run the Terraform and Helm deployment against your account, covering Kubernetes, database, object storage, KMS, ingress, application services, and security configuration.
Upload your logo, set your org name and brand colour, configure your OIDC provider or local admin credentials.
Create users, assign roles, configure SFTP and API access, and set storage quotas. Invite users — they're storing in minutes.
Access Control
Six purpose-built roles separate administration, storage governance, upload, view-only, audit, and temporary support access. Assign the minimum access each person needs.
Get started
EidoVault is deployed to your infrastructure, in your region, under your control. Get in touch and we'll scope out a deployment for your organisation.
Built by
AgentFaKtoryEnterprise AI and data engineering — agentic systems, cloud infrastructure, and intelligent workflows for regulated industries.