Skip to content
Camzify

Security & compliance

Security is foundational to a virtual patrolling platform. This page documents our security practices, data protection measures, and compliance posture. Where we have not yet obtained a certification, we state that plainly.

Encryption

All camera streams are transmitted over encrypted connections (TLS 1.2+). Video footage at rest is encrypted using AES-256. API communications use HTTPS with certificate pinning where supported.

Access control

The platform supports role-based access control through user management and permission groups. Every action is logged in the audit trail.

Certification status

We list certification work honestly, including where it is unfinished. Everything below is in progress and not yet held. Camzify should not be described as certified under any of these frameworks until this page says otherwise.

  • Singapore PDPAIn progress

    Personal Data Protection Act alignment for data handling, consent and breach notification, covering our Singapore operations and customers.

  • GDPRIn progress

    General Data Protection Regulation alignment for EU data subjects, covering lawful basis, data-subject rights and processor obligations.

  • SOC 2 Type IIIn progress

    Controls across security, availability and confidentiality, evidenced over an observation window rather than at a point in time.

  • ISO 27001In progress

    Information security management system covering risk assessment, controls and continuous improvement.

Target dates are not published because we will not commit to a date we cannot guarantee. If your procurement process needs current status in writing, contact us and we will tell you exactly where each item stands.

FAQ

Frequently asked questions

Not yet. Both are in progress, as are PDPA and GDPR alignment. This page states the current posture and will change when a certificate is held, not before.

Streams are carried over TLS 1.2 or higher and footage at rest is encrypted with AES-256. Access is role-based through permission groups, and every action on the account is logged.

Only logins scoped to that client's sites. A sub-user sees its own cameras, alerts and reports; the parent account sees everything under it. The audit trail records who opened what.

No. Attribute extraction describes clothing, carried objects and direction of travel; nothing on the platform recognises faces or names anyone, and we say so on every page where it could be assumed.

Ready to patrol your site 24/7?

Book a 15-minute demo and see a live patrol run on your own cameras.

This site is being updated

We are rebuilding pages as you read this, so an image, a link or a section may look unfinished for a while. The product itself is unaffected. If something important is broken, tell us at the contact page and we will fix it.