InOutShare gives your team a private, self-hostable file vault — with per-action permissions, OTP & approval-gated downloads, time-limited shares and an audit trail of every open, preview and click.
Not just "can view" or "can't". InOutShare controls preview, print, copy, download, share and more, per user, role or department.
Grant view, preview, print, edit, move, copy, download, share and manage-permissions independently. Folder rules cascade; file rules override.
| Action | Finance | Interns | Guest |
|---|---|---|---|
| Preview | ALLOW | ALLOW | ALLOW |
| Download | ALLOW | OTP | DENY |
| ALLOW | DENY | DENY | |
| Share | ALLOW | DENY | DENY |
Choose a download policy per file or folder: direct, blocked, approval-required, OTP-required — or both. Requests are logged, reviewed and time-boxed.
Approval granted by Admin · OTP sent to a•••@coderxpoint.com
Share a file or whole folder for a fixed window, with access and download caps, password-protected links, IP limits and watermarking. Revoke anytime.
60+ activity types capture who did what, when and from where. See who's online right now, with risk scoring on every login.
| File previewed | meera@coderxpoint | 10:41 |
| Share created | admin@coderxpoint | 10:22 |
| Print blocked | intern@coderxpoint | 09:58 |
| Login · risk LOW | aarav@coderxpoint | 09:40 |
Sign-in is defence in depth: password plus a second factor, hardened with context rules and risk scoring — all admin-configurable.
Authenticator-app TOTP or email OTP, with single-use recovery codes.
Passwordless email links that still run the full second-factor flow.
Unusual sign-ins step up the factor — and block outright at critical risk.
Remember a browser to skip the second factor until it expires.
Allow/block lists, CIDR ranges and sign-in windows per role or user.
Dynamic watermarks, plus copy- and print-blocking on documents.
Storage & email credentials encrypted with AES-256-GCM, never returned.
Session caps, timeouts and fresh re-verification for sensitive actions.
From versioning to storage back-ends — the whole toolkit your team and admins need.
Three steps to hand out a file without handing over control.
Drop files into folders on your storage of choice — local disk, S3 or Cloudinary.
Pick who can preview, download or edit — and whether downloads need OTP or approval.
Send a time-limited link, then track every access live and revoke in one click.
Fully managed in our private cloud — we host, secure and update it. Every security feature included, no add-ons.
What teams ask before trusting InOutShare with their files.
Yes. Run it fully on-premise with your own storage — local disk, S3 or MinIO — so files never leave your infrastructure. We also offer a fully managed private-cloud option.
Each file or folder has a download policy: direct, blocked, approval-required, OTP-required, or both. You can also disable copy and print, and apply dynamic watermarks on previews.
Over 60 event types — logins (with risk level), folder and file opens, previews, edits, downloads, share access and permission changes — each with user, IP, device and timestamp. You can also see who is online right now.
After the password, users verify with an authenticator app (TOTP) or an emailed OTP, with single-use recovery codes and optional trusted devices. Admins set the policy per role, department or user, and risk-based auth can step it up automatically.
Yes. Set a start and expiry time, plus access and download limits — the share auto-locks when any limit is reached. Links can be password-protected and IP-restricted, and you can revoke any share instantly.
Local disk, Amazon S3, MinIO, DigitalOcean Spaces and Cloudinary. Credentials are encrypted at rest and never exposed by the API, and you can set a default provider per deployment.
Tell us how your team shares files today and we'll show you InOutShare — on WhatsApp or email within a few hours. Or reach us directly:
See granular permissions, OTP downloads and time-limited shares in a live walkthrough.