beflex enterprise ECM — Enterprise Content Management Software

Your organization doesn't lack documents.
It lacks control.

Where are your critical documents? Who has viewed them? — If that takes more than a minute to answer, your organization carries that risk every day. beflex enterprise ECM is enterprise content management software that brings documents from your people and core systems into one governed hub, so you always know where everything is, who is entitled, and who did what — enterprise security with a modern, simple experience.

Know where it is — one trusted hub Know who's entitled — per-user permissions Know who did what — full audit trail
Why beflex

Critical files scatter across email, personal machines and unmanaged drives. Finding one document takes hours, approvals still travel on paper, sensitive data is viewed without a trace — and when auditors or regulators ask for records, teams spend weeks hunting. The real cost isn't storage; it's time, legal risk and lost trust. beflex ECM combines beflex Digital Workspace + Alfresco Repository + Extension Services to bring every file into one governed hub — built on the principle that enterprise security must come with a simple, modern experience.

0
Every access checked per user
0
Value pillars (Organize/Find/Flow/Protect/Operate)
0
Alfresco versions supported (V23/V25/V26)
Full-service, SLA up to 24×7
Five Value Pillars

From scattered files to a governed asset.

ORGANIZE — structured from day one

Every document — from staff or from core systems via API — lands in one repository with a type, metadata, owner, version and lifespan from the first second.

FIND — instantly

Search inside the content, not just file names — what once took half a day is found in seconds, always filtered to what you may see.

FLOW — work goes digital

Approvals, contracts and collaboration move off paper and email onto a system that tracks and audits every step.

PROTECT — down to behavior

Beyond see/can't-see: view-without-download, preview with an identifying watermark, permanent redaction, and PDPA-aligned protection of sensitive data.

OPERATE — easy to run, ready to grow

Modern container architecture with Kubernetes, deployable on-premise or cloud, scales with growth, with system health on one screen.

Three parts, one platform

beflex Digital Workspace (experience) + beflex Extension Services (business functions) + Alfresco Content Repository (single source of truth).

Industry Fit

Built for organizations where documents are both asset and risk.

The higher the value of a document, the greater the damage when it leaks, is lost, or can't be found.

Sector The business challenge Why beflex ECM The outcome
Regulated Financial ServicesBanking • Insurance • Securities • Lending The challengeMassive customer documents full of personal and financial data, under regulators who can request records at any time. Why beflex ECMMulti-level permissions + audit trail on every view + Data Marking / DB Field Encryption (Optional) + auto-numbered contract register. OutcomeRetrieve for auditors in minutes — lower PDPA risk.
Healthcare ServicesHospitals • Clinics • Laboratories The challengeMedical records are the most sensitive data — fast to access during care, yet always knowing who opened whose record. Why beflex ECMPer-person access + automatic logging of every view + watermarked viewing + redaction before sharing with third parties. OutcomeFast when it matters, auditable every time — files never leave the system.
Industrial & ManufacturingEngineering drawings • Formulas • Technical docs The challengeTrade secrets that decide competitive edge — yet must be shared with teams, partners and suppliers every day. Why beflex ECMPreview-only + identifying watermark + external share with password/expiry + strict version control. Outcome“View without holding the file” — work flows on, secrets don’t.
Education & ResearchUniversities • Institutes The challengeCurriculum, research and personnel documents scattered across faculties and systems. Why beflex ECMLibraries per unit + storage quota + Thai/EN full-text search + cross-unit approval workflow. OutcomeOne shared repository — each unit sees only its own.
Government & Public SectorAgencies • Public organizations The challengeDocuments carry classification levels and retention periods, and must stand up to audits under regulations. Why beflex ECMPermissions by classification + document expiry with alerts and disposition + audit reports. OutcomeSupports records-management practice and PDPA — provably.
PROTECT — Security & Data Protection

Control down to behavior, not just visibility.

Every file access and search is checked against each user's permissions at the repository. Beyond see/can't-see, beflex governs what people can do with a document — aligned with PDPA.

Secure by default, provable by design.
01

Permission-aware to file level

Rights at library / folder / file, by group, role or person.
02

Preview-only & watermark

View in the browser without downloading, watermarked with user/date.
03

Permanent redaction

Remove sensitive areas for good before sharing further.
04

Data marking & encryption

Data Marking on the UI, DB field & content-store encryption (AES-256).
05

Audit, session & transport

Per-document audit trail, session timeout, and HTTPS end to end.
Enterprise authentication — enforce login/password policy through your identity provider
The Platform

Everything a content organization needs.

Responsive Thai/English + deep link on every menu
Multi-format viewer + password PDF
Per-user PDF annotation with permissions
Redaction on PDF (permanent)
View Office via Microsoft 365 Online
Tablet 8-inch and up
CAD viewer & annotation (Optional)
Upload file/folder, drag & drop
Personal files (private space)
Smart upload (template-driven)
Version control + check-out/check-in
Trash & recovery, take owner, file limits
Download ZIP + password, tag, comment
Cloud OCR (Azure) / scan & OCR (Optional)
Batch import CSV (Optional)
Edit Office via Microsoft 365 Online
Libraries + rights + join request + quota
Comments & versions on files
In-app notifications + email
Share standard (view-only link)
Share to external (password/expiry)
Document expiry + auto delete
Full-text (content + metadata)
Highlight, boolean/wildcard, Thai/English
Advanced search (by type/date range)
Saved search, reusable across devices
Filter & sort + preview in results
Search content in Word/Excel/PPT/PDF (text layer)
Permission-aware + library/folder/file rights
Multi-level (view/watermark/preview/edit/delete)
Download with watermark
Auth: AD/LDAP/SSO/local/2FA + policy
Session timeout + HTTPS
Per-document audit trail + system audit
Content store encryption AES-256 (Optional)
Data marking / DB field encryption (Optional)
Manage users/groups + CSV import
Import groups from AD/LDAP
Model Manager (types/aspects/metadata)
Settings: workflow/search/upload/share/watermark
System health monitoring
Open API (REST) + deep link
beflex API Services to core systems (Optional)
AI integration via enterprise AI platform (Optional)
FLOW — Contracts & Approval

Move approvals and contracts off paper.

Contract Management

A full contract register: draft, approve, renew and expire.

Draft → approved → expired, with status rules
Auto contract & deposit numbers, collision-free
Custom format (code/dept/year/month/running)
Department-based visibility
Improve/renew, keeping every revision
Contract preview + approval stamp on PDF
Pre-expiry alerts + CSV/Excel export

Document Approval Workflow

Sequential approval from a file, fully auditable.

Start from file, sequential
Template + ad-hoc, set groups/approver order
Rich text (tables/images/links, paste from Word, export PDF)
Approval signature (e-signature on PDF)
Process diagram + reject & resubmit
Workflow history & audit trail
My/completed requests & tasks views
Architecture

A service-oriented, enterprise-grade foundation.

Unifies documents from people and core systems — with Alfresco as the single source of truth.

01

Web Experience

Responsive UI, Thai/English, deep links and custom pages.

02

beflex Digital Workspace (Frontend)

The user interface and document business functions.

Next.js · React · TS
03

beflex Secure API Layer (Backend)

Checks the real user's permission on every request before reaching documents.

Java · Spring Boot
04

beflex Extension Services (Backend)

Business services — contracts, expiry, notifications, external share — plus custom services.

Java · Spring Boot
05

beflex API Services (Optional)

Configurable API templates to bring documents in from ERP/CRM/HRM/BPM.

Connect core systems
06

Alfresco Content Repository

Files, metadata, ACL, versions and search index.

Single Source of Truth
Integration

Bring documents in from everything you run.

beflex API Services (Optional)

Configurable API templates with metadata validation, auto path/naming, CRUD + search and JWT auth — to feed core systems into the repository.

Microsoft 365 Online

View and edit Office files via Microsoft 365 Online, checking in as a new version with conflict guard (requires your M365 license).

Open API (REST) + Deep Link

Integrate with external systems over REST, and open any screen from another system via URL.

Authentication

AD, LDAP, SSO (OAuth 2.0 / OIDC), local user and 2FA, enforcing your login/password policy.

Email (SMTP / Inbound)

Send notifications via SMTP and import documents via inbound email.

OCR & Scan (Optional)

Cloud OCR via Azure Document Intelligence, plus scan clients (Easy Capture, Kodak Capture Pro / IIS).

AI Integration (Optional)

Through an enterprise AI platform or an organization-approved model, under permission and data-protection policy.

Sharing (Standard & External)

Share view-only links, or share to external parties with password, expiry, permissions and recipient activity log.

Insight

See what's in your repository — and who did what.

Analytic Report

Repository statistics — volume, storage and trends.

Library Report

Files and storage per library, with drill-down.

Audit Report

System-wide activity for after-the-fact review.

Document Expiry Report

Near-expiry / expired / deleted, exportable to Excel/CSV.

OPERATE — Deployment

Runs where your policy requires.

On-Premise

Full control inside your data center.

Private / Public Cloud

AWS, Azure, Google Cloud.

Docker & Kubernetes

Container-ready for CI/CD and long-term ops.

Multi-Environment

Dev/Test, UAT, PRD — no source code changes.

Supported databases
PostgreSQL MySQL MariaDB MSSQL ACS Enterprise Oracle ACS Enterprise
Works with Alfresco Content Services and Alfresco Community Edition repositories
V23 V25 V26

The business case.

Find in seconds, not hours Retrieve for auditors in minutes PDPA-aligned protection Fully auditable Scales on containers
FAQ

Frequently asked questions.

What is beflex ECM made of?
beflex enterprise ECM combines three parts: beflex Digital Workspace (the user interface and business functions), Alfresco Content Repository (files/metadata/permissions/versions/search index as the single source of truth), and beflex Extension Services (specialized business services such as contract, document expiry, notification and external share).
Which Alfresco versions are supported?
It works with Alfresco Content Services (ACS) and Alfresco Community Edition repositories, versions V23, V25 and V26. Supported OS/database/versions follow the product compatibility matrix of the chosen edition/version, and ACS Enterprise requires a separate license from Hyland.
How are permissions enforced?
Every request goes through the beflex Secure API Layer, which checks the real user's permission before reaching documents, and ACLs are enforced directly at Alfresco — down to library/folder/file, by group, role or person. Search results and reports are always filtered by permission.
How do preview-only, watermark and redaction differ?
Preview-only lets users view in the browser without downloading the original (watermarked with user/date). Watermark embeds a mark in a PDF copy at preview/download. Redaction permanently removes content in a chosen area so it can no longer be searched or copied, keeping the original per permissions and policy.
How does it protect sensitive data for PDPA?
It supports Data Marking (masking on the UI, e.g. xxx-xx9012), DB field encryption (AES-256 for sensitive metadata such as ID/account numbers) and content-store encryption (AES-256) as options, plus per-document audit trail and retrieval for auditors within minutes.
How does it integrate with core systems (ERP/CRM/HRM/BPM)?
Via Open API (REST) and beflex API Services (Optional) — a connection layer using configurable API templates with metadata validation, auto path/naming, CRUD + search and JWT authentication — to feed documents from core systems into the central repository.
Where can it be deployed, and which databases?
On-premise, private/public cloud (AWS, Azure, GCP) via Docker and Kubernetes, across multiple environments (Dev/Test, UAT, PRD) with no source-code changes. Databases: PostgreSQL, MySQL, MariaDB, and Microsoft SQL Server / Oracle (for Alfresco Content Services Enterprise only).
How does licensing and service work?
Perpetual license across production, UAT, SIT/DEV and DR, on-premises and cloud, with named users per contract and version updates under a maintenance agreement. Full services: consulting & advisory, implementation, customization & integration, training, and maintenance & support (8×5 or 24×7 by package).

Ready to take control of your documents?

Get a personalized demo, a data sheet, or a quotation.