Private by default
Files live in private storage and are only served after server-side authorization.
Manuscripts are valuable intellectual property. Ottowrite is designed so they are private by default, delivered deliberately, and never exposed as public files.
Files live in private storage and are only served after server-side authorization.
Invite links are single-purpose and require recipient email verification.
Choose view-only or downloadable access, then expire or revoke it later.
Optional preview watermarks identify the verified reader and access session.
Opens, previews, downloads, responses, and revocations are recorded.
Malware quarantine, rate limits, signed webhooks, RLS, and least-privilege services.
Report a potential vulnerability to security@ottowrite.com. Do not access or retain user content while testing.