Encrypted Vault
Every document is encrypted at rest with a key that belongs to that single data subject — never a shared one. When you revoke access or delete on request, we destroy the key. The file on disk stays (so FIC Act s 23 retention is intact) but nobody — not us, not a rogue admin, not a court order — can read it again.
AWS KMS envelope encryption · per-subject data key · crypto-erasure