Security at Ottowrite

A secure path to the right reader.

Manuscripts are valuable intellectual property. Ottowrite is designed so they are private by default, delivered deliberately, and never exposed as public files.

Private by default

Files live in private storage and are only served after server-side authorization.

Verified readers

Invite links are single-purpose and require recipient email verification.

Author-controlled access

Choose view-only or downloadable access, then expire or revoke it later.

Personalized watermarks

Optional preview watermarks identify the verified reader and access session.

Immutable audit trail

Opens, previews, downloads, responses, and revocations are recorded.

Layered safeguards

Malware quarantine, rate limits, signed webhooks, RLS, and least-privilege services.

Responsible disclosure

Found something we should know?

Report a potential vulnerability to security@ottowrite.com. Do not access or retain user content while testing.