Matter grants
Every request is checked against the signed-in user and active matter grant. Changing an identifier must not expose another matter.
Security and trust
EvidenceCanvas does not ask you to trust a vague “secure” claim. Procurement evidence must be tied to the deployed release and final public UAT.
Every request is checked against the signed-in user and active matter grant. Changing an identifier must not expose another matter.
Each matter and each portal user/matter execution context has a separate workspace inside the practitioner partition.
Internal drafts are invisible to litigants and McKenzie users until the assigned release owner releases an item to a named user.
A support user acting for an assigned person records both identities. Support access is granted and revocable; it is not impersonation.
Production design includes file limits, hashing, allowlisting, rate limits and fail-closed malware scanning before material enters the evidence store.
The production design creates client-side encrypted backup objects. Independent recovery-key custody and release-specific restore evidence are still go-live gates.
Suitable practitioner prospects may request the release-specific architecture summary, role matrix, processor/transfer summary, retention information, incident route and current UAT evidence. Documents are shared only after claims are checked against the deployed configuration.