How we protect your firm's data and your clients' personal information.
All data encrypted using AES-256 at rest. All transmissions protected by TLS 1.3. Document images never pass through application servers unencrypted.
Our underlying identity verification infrastructure holds ISO 27001 certification for information security management.
All client data stored exclusively in Australian data centres. No data ever transferred offshore. Meets Australian data sovereignty requirements.
Firm owners see all clients. Staff see only their assigned clients. Superadmin access is IP-locked and MFA-protected.
All CDD records, document images and audit trails retained for 7 years as required under the AML/CTF Act.
Every action logged with timestamp. Who accessed what, when. Full chain of custody for every verification record.
Full compliance with the Australian Privacy Act 1988 and Australian Privacy Principles. Privacy policy available on request.
Biometric liveness detection certified to ISO 30107-3 standards. Prevents presentation attacks including deepfakes and spoofed images.
We store only what is required for compliance. Raw document data goes directly to encrypted storage and never passes through our application layer in plaintext.
Bank-grade security. Australian data. Full compliance.