Duaer

Guides

Permission-aware enterprise AI search: how Duaer keeps document access intact

Permission-aware enterprise AI search filters results by what each person may open in the source system, before any answer is written. Duaer follows the source’s permissions: a document shows up only for people who can open it where it lives, and answers use only those documents.

Why does AI search leak documents?

If an AI tool reads every document with one admin account and then lets everyone ask questions, anyone can stumble onto salary sheets, contracts, or HR records. The model isn’t the problem. The retrieval step just never filtered by person.

How does Duaer filter by permission?

  • It records who may read. While indexing, Duaer stores who can read each document in the source: people, groups, departments, and domain-wide or company-wide shares.
  • It re-reads every hour. When sharing changes in the source, Duaer reflects it within an hour.
  • It filters before answering. Search and answers use only passages the asker may read. If there are none, Duaer shows “Nothing you may see matches.”
  • It narrows when unsure. If a file’s sharing can’t be read, only the account that connected the source sees it, and Duaer marks it as visible to fewer people than in the source.

How does Duaer know who I am in the source system?

  1. By email first. When your Duaer email matches your email in Feishu, WeCom, Google, or Microsoft, the accounts are matched automatically.
  2. If the emails differ, people link their own account under Knowledge base in the Duaer employee portal with Link Feishu account or Link WeCom account.
  3. An admin can also map a member to an account by hand.
  4. People who aren’t matched don’t get results from that system, and Duaer tells them so, for example that their account is not linked to Feishu yet.

What else protects company documents?

  • Sensitive content finds documents shared too widely (company-wide or public on the internet) that contain ID numbers, bank card numbers, passwords or keys, or lists of phone numbers. An owner or admin can choose Hide from search.
  • The organization’s audit log records sign-ins, connecting or disconnecting a source, hiding from search, and other changes. It keeps 365 days and has Export CSV.
  • For more, see How Duaer keeps your company’s data safe.

Questions

Can Duaer show someone a file they can’t open in the source?

No. Duaer filters search and answers by the source’s permissions and re-reads them every hour. A file whose sharing can’t be read is visible only to the connecting account.

Does Duaer honor sharing through Google groups or SharePoint site groups?

Duaer doesn’t expand Google groups or SharePoint site groups yet. A file shared only through such a group may reach fewer people in Duaer than in the source, never more.

In this section