AUSTRAC Tranche 2 is live from 1 July 2026. Accountants, lawyers and real estate agents must comply. Get compliant now
ISO 27001 Certified - Data in Australia

Security and Privacy

How we protect your firm's data and your clients' personal information.

🔒

Encryption at Rest and in Transit

All data encrypted using AES-256 at rest. All transmissions protected by TLS 1.3. Document images never pass through application servers unencrypted.

🏭

ISO 27001 Certified

Our underlying identity verification infrastructure holds ISO 27001 certification for information security management.

🇦🇺

Australian Data Centres Only

All client data stored exclusively in Australian data centres. No data ever transferred offshore. Meets Australian data sovereignty requirements.

👤

Role-Based Access Control

Firm owners see all clients. Staff see only their assigned clients. Superadmin access is IP-locked and MFA-protected.

📋

7-Year Record Keeping

All CDD records, document images and audit trails retained for 7 years as required under the AML/CTF Act.

👁

Complete Audit Trail

Every action logged with timestamp. Who accessed what, when. Full chain of custody for every verification record.

🛡

Privacy Act 1988 Compliant

Full compliance with the Australian Privacy Act 1988 and Australian Privacy Principles. Privacy policy available on request.

🏴

ISO 30107-3 Biometrics

Biometric liveness detection certified to ISO 30107-3 standards. Prevents presentation attacks including deepfakes and spoofed images.

🔄

Minimal Data Retention

We store only what is required for compliance. Raw document data goes directly to encrypted storage and never passes through our application layer in plaintext.

Your Clients' Data is Safe With Us

Bank-grade security. Australian data. Full compliance.