Security

Control over who sees what

Role- and attribute-based access, a complete audit trail, and confidential files kept outside the web, so sensitive research information stays protected.

A research record holds sensitive material: unpublished work, personal data, and documents meant for a few eyes only. Who can see and change each part matters as much as what the record contains.

Stellacris controls access at the level of roles and individual grants, records every change, and keeps confidential files away from the public web, so your office can open up what should be public while protecting the rest.

Why it matters

Protection without friction

Granular access control

Roles set the baseline, and per-person grants fine-tune it, so each user sees and edits exactly what their work requires.

A complete audit trail

Every change is recorded with who, what, and when, so the history behind any record is always available.

Confidential attachments

Sensitive documents are stored outside the public web and released only to the people entitled to them, with each access logged.

European data residency

Data is hosted and stored within the European Union, with a full on-premises option where your policy requires it.

In practice

Governance you can demonstrate

The controls an institution needs to protect its record and account for every change.

  • Role-based access with per-person grants for fine-grained control.
  • Attribute-based rules that scope access by unit, ownership, or visibility.
  • A full audit trail behind every create, edit, and approval.
  • Confidential attachments stored outside the web root, with logged, permission-checked downloads.
  • GDPR support, including data export and anonymisation on request.
  • EU data residency, with an on-premises option behind your own firewall.
Common questions

Questions, answered

How fine-grained is access control?

Roles provide the baseline, and individual grants adjust it per person, optionally scoped by unit, ownership, or visibility. Each user sees and edits exactly what their work requires.

Where are confidential files kept?

Outside the public web root, so they are never served directly. Downloads are permission-checked and logged, so access to sensitive documents is always accountable.

How do you handle personal data?

In line with the GDPR: data minimisation throughout, export on request, and anonymisation when required, while the scholarly record of who did what remains intact.

Get started

See your institution’s research, mapped.

A 30-minute walkthrough with your own entity types — concrete, friendly, and on your schedule.