Until now, case access in TheHive was mostly managed through organizational boundaries and multi-tenant workspaces. But for particularly sensitive situations, like legal escalations, partner-specific cases or incidents involving HR data, teams needed a more granular way to restrict who can see what.
This is now possible with the Private Cases feature.
Follow our interactive demo to learn how to manage case-level access (click on the “Expand” button to zoom):
Big security teams can have dozens of analysts that share a common workspace in TheHive, and in such setups, it’s important to not expose all case data. Obligations like GDPR, NIS 2 or internal policies also require limiting access to sensitive investigations to maintain confidentiality and reduce risks.
Introduced in TheHive 5.5, the Private Cases feature allows case owners to define exactly who gets access to each case. Only selected users will be able to know about, see, open or interact with them. These cases remain invisible in dashboards, lists, search results and alerts for everyone else.
Whether you’re working under GDPR, NIS2 or internal confidentiality policies, this feature helps you enforce the Least Privilege principle without slowing down your operations.