Data Security Enhancement Program
Complete protection against privacy requirements:
- Encrypted Storage Configuration: Add the storage volume encryption parameter ENCRYPT_VOLUME=true in docker-compose.yml
- access control: Set API_ACCESS_TOKEN + IP whitelisting (configuration path security/access_control)
- Regular cleaning: Enable AUTO_PURGE function to automatically delete temporary files 7 days ago
- network isolation: Modify the default port 3030 to a non-usable port, it is recommended to add an SSL certificate with Nginx.
Special Note: Be sure to change the default password after the first login, and set the "visual only, not downloadable" permission in the document properties after uploading sensitive documents. It is recommended to use local firewall rules to restrict access to external networks.
This answer comes from the articleMAESTRO: In-depth research assistant with local knowledge base and multi-agent collaborationThe































