Legal

Privacy Policy

Last updated: April 29, 2026

1. Information We Collect

We collect information you provide directly to us, including name, email address, organisation name, and role when you create an account. For guards using the mobile app, we collect location data during active shifts only, with your explicit permission. We also collect usage data such as login times, shift interactions, and attendance records as part of the core platform functionality.

2. How We Use Your Information

We use collected information to provide, maintain, and improve the Security Management platform; to send operational notifications such as shift reminders and missed check-in alerts; to enforce role-based access controls; to generate attendance and compliance reports; and to respond to support requests. We do not sell your personal data to third parties.

3. Data Sharing

We share data only with sub-processors necessary to operate the service (e.g., cloud infrastructure, email delivery). All sub-processors are bound by data processing agreements. Within your organisation, data is shared according to your role hierarchy: admins see all data, managers see their team's data, guards see only their own records.

4. Data Retention

Account data is retained for the duration of your subscription and for 90 days after account closure to allow data export. Attendance and shift records are retained for 3 years to support compliance and audit requirements. Location data collected during shifts is retained for 12 months.

5. Security

We use industry-standard encryption (TLS 1.3 in transit, AES-256 at rest), bcrypt password hashing, JWT-based authentication with short-lived tokens, and strict role-based access control. Our infrastructure is hosted on SOC 2 certified cloud providers. Regular security audits are performed by third-party specialists.

6. Your Rights

Depending on your jurisdiction, you may have rights to access, correct, delete, or export your personal data; to object to or restrict processing; and to withdraw consent. To exercise these rights, contact us at privacy@security.local. We respond to all requests within 30 days.

7. Cookies

We use only essential session cookies required for authentication. We do not use tracking cookies, advertising cookies, or any third-party analytics cookies. You can disable cookies in your browser, though this may prevent login functionality.

8. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes via email or an in-app notice at least 14 days before the changes take effect. Continued use of the platform after changes constitutes acceptance of the updated policy.

9. Contact

For privacy-related questions, contact our Data Protection Officer at privacy@security.local or via the Contact page.

Questions about this policy? Contact us