Limitations and security guidance
This page describes important product boundaries. See Supported Configurations for platforms and storage types.
For Windows-specific file attributes, NTFS permissions, and SMB/CIFS behavior, see Windows file attribute and permission limitations.
Product boundaries
- File-level backup does not automatically provide application-consistent copies of databases, virtual machines, or business applications.
- A NAS connection without a Proxy is supported only for Linux backup hosts where the product explicitly offers that option.
- The current release cannot import an existing backup repository as a new target storage resource.
- A snapshot can be restored only if it succeeded or partially succeeded and contains backed-up files.
- A Private Data Gateway reads only the snapshot data selected by a user. It does not automatically access live files on a protected host.
- Insights answers are generated by an AI model. Verify important conclusions against source files and citations.
Credentials and secrets
- Use dedicated credentials for object storage and external model services, granting only the permissions required for the task.
- Do not include passwords, access tokens, or storage keys in screenshots, chats, or public issues.
- After rotating credentials, validate the storage connection and run a backup or insight session.
Network and TLS
The certificate included with HyperFileLens Community is intended for initial installation and access. For regular operation, configure a TLS certificate that matches the configured domain and is trusted by browsers and components.
Allow only the connections listed in Network and Ports, and restrict their source networks. Keep TLS verification enabled where possible instead of disabling it permanently to work around certificate problems.
Data and deletion
Backup repositories, snapshots, restored files, insight sessions, and Data Gateway workspaces are separate copies of data. Deleting one does not automatically delete the others.
Before deleting a resource, review the impact shown by the product. Use product-provided maintenance commands to uninstall components, and remove only the product directories explicitly identified by the installer.
Restore validation
A successful backup job does not replace a restore test. Regularly restore test files to a separate folder, verify their content, and retain the result of the test.

