SITEBORNE SIGNAL MODULE
ProofVault — secure document and deliverable portal
Provides controlled access to approved resources through short-lived authorization and retention controls.
BUSINESS OUTCOME
What this capability changes.
- Controlled delivery
- Revocable access
- Documented retention
Best for
Agencies, Professional firms, Client-service businesses
From $3,000
Module-only monitoring: from $250/monthA narrow add-on scoped to this module alone—checking its allowance, fallback, and failure state. It is separate from and smaller than a full Care plan, which covers the whole website.
PLAIN LANGUAGE, TECHNICAL PROOF
What ProofVault does.
A controlled place to deliver approved documents for a limited time instead of attaching them to a long email chain.
Access can expire or be revoked, and the business can document who was allowed to retrieve a deliverable.
Example workflow
A client receives a 48-hour link to an approved launch report; access expires automatically and can be revoked sooner.
FOR TECHNICAL READERS
How the control model works
Production delivery uses private object storage, short-lived signed authorization, D1 audit records, explicit retention, and a verified recipient channel. This public demo never accepts files.
Failure path: Manual delivery through a verified client-owned channel.
INTERACTIVE WALKTHROUGH
Use ProofVault before discussing it.
Choose a deliverable and access window to preview the controls that would wrap a real client-owned file.
The interaction uses your input and identifies whether it runs locally, checks this live site, or previews a production control. It does not disguise seeded output as intelligence.
System view
Required
Cloudflare R2, Cloudflare D1, Cloudflare Workers, Resend
Optional
None
Fallback
Manual delivery through a verified client-owned channel.
Cloudflare R2, Cloudflare D1, Cloudflare Workers, Resend
2026-08-02
Provider limits, terms, model availability, and pricing may change. Production accounts remain client-owned.
Data classification
- Approved documents
- Access audit events
- Verified email
LAUNCH ALLOWANCE
Object storage
Storage for approved media, resources, screenshots, and deliverables.
View all referenced allowances
- Object storage: 10 GB-month, 1M Class A operations, 10M Class B operations monthly; no R2 internet-egress charge; excludes Infrequent Access.
- Transactional email: 3,000 emails/month, 100/day, one custom domain, one webhook endpoint, 30-day retention.
Upgrade triggers
- storage — 75%. Archive or expand storage.
- sensitive classification — any. Require separate security review.
View implementation proof
Decision rationale
The implementation favors semantic HTML, static rendering, typed content, and isolated on-demand routes. Optional AI never controls pricing, eligibility, or emergency routing.
Controls
- WCAG 2.2 AA target
- Provider-neutral adapters
- Usage caps and kill switches
- Client-owned production accounts
- Conventional fallbacks
Verified evidence
- The browser demonstration runs from a clean clone without a paid credential.
- Kill switch and allowance states are typed configuration.
- Primary navigation and contact paths remain independent of this module.
Known limitation
External provider allowances and production behavior require owner accounts and deployment-time verification.