05 — Security

No personal data. No compliance headache.

Zonify.ai collects no personal data, performs no facial recognition, and is designed from the ground up to minimize your organization's compliance obligations. Here is what your legal and procurement teams need to know.

05.1 / Anonymization & Privacy

We never collect personal data. There is nothing to expose.

Zonify.ai does not capture, store, or transmit images of individuals. Video is processed locally and immediately converted into anonymous behavioral data points — no faces, no identities, no biometrics. Because no personal data is collected at any stage, your organization's GDPR exposure is minimal by design. There is no facial recognition in the platform, and there is no configuration that enables it.

Personal data collectedNone
Facial recognitionNot present in platform
Raw footage storedNo
Demographic data typeAggregated and statistical
05.2 / GDPR & Compliance

Designed to minimize your compliance obligations.

Because Zonify.ai processes only anonymized, aggregated data, it falls outside the scope of most personal data obligations under GDPR. Your legal team will not need to establish a complex processing basis, appoint a data processor relationship for sensitive personal data, or manage data subject access requests relating to Zonify.ai data. We support regional data residency to satisfy local legal requirements, and our processing architecture is documented and available for legal review.

GDPR classificationAnonymized data only
Data subject rights exposureMinimal
Data residencyRegional options available
Processing documentationAvailable on request
05.3 / Encryption & Infrastructure

Your data is protected end to end — in transit and at rest.

All data transmitted through the Zonify.ai platform is encrypted in transit. Stored data is encrypted at rest. Our cloud infrastructure operates with a documented availability SLA and a service-credit mechanism, so your procurement team has contractual recourse for downtime. For organizations with stricter requirements, on-premises deployment is available — keeping all data and processing entirely within your own infrastructure and jurisdiction.

Data in transitEncrypted
Data at restEncrypted
Availability SLAContractual, with service credits
On-premises optionAvailable
05.4 / Access Controls & Audit

Documented controls your compliance team can rely on.

Zonify.ai provides role-based access controls, full audit logging, and configurable permissions for internal teams and external stakeholders. Every access event is logged and traceable, giving your compliance and legal teams the evidence trail required for internal governance reviews and regulatory inquiries. Access rights can be scoped tightly to specific sites, data types, and reporting functions — nothing broader than necessary.

Access modelRole-based (RBAC)
Audit trailFull, exportable logs
External stakeholder accessConfigurable and scoped
SSO supportAvailable

Conducting a procurement review?

We can provide processing documentation, security architecture summaries, and contractual terms to support your legal and procurement process.

Request documentation

Looking for the full legal detail?

Our compliance page contains the complete legal documentation including data processing terms, GDPR basis, and contractual obligations.

View compliance documentation