Confluence Security

Trust

Privacy, Data Ownership and Security of Security

You are the data controller and we are not. You own the video, you set the retention, you decide who has access, and any sharing is an explicit act you can revoke. Our job is to design a system that can prove all of that with documents rather than assurances.

This page is a positioning statement about how we build systems. It is not legal advice, and it is not a substitute for your own privacy policy or your counsel's review.

The reason it exists is simple. In this category, the questions that decide a project late are almost never about camera specifications. They are about who can see the footage, how long it lives, and who can prove it.

Data controller

You

The customer owns the video and the policy that governs it.

Default sharing

None

Sharing is explicit and revocable.

Platform certifications

ISO, SOC 2, UL

ISO/IEC 27001 and 27017, SOC 2 Type 2, UL 2900-2-3 Level 3.

Masking

Certified

The manufacturer's masking technology holds a European privacy certification.

You are the data controller

The customer owns the recordings and owns the policy. We design, install, document and support the system. We do not hold your video, we do not broker access to it, and we do not need standing access to your cameras to support you.

Where remote support access is useful, it should be time-bound, logged and revocable, and it should appear in the same audit trail as any other privileged action.

Retention is a policy decision, not a default

Retention should be chosen deliberately and written down. Both directions carry a real cost, and an honest vendor tells you both.

Short retention reduces privacy exposure and reduces storage cost. It also destroys evidence before some complaints surface, and complaints about harassment, discrimination or workplace injury frequently surface weeks after the event.

Long retention preserves that evidence and increases both cost and exposure. There is no universally correct number. There is a number that matches your risk, your obligations and your budget, and the point is to choose it on purpose.

Role-based access and audit logging

Role-based access limits what each user can see and do. Audit logging records what they did. Together they are the mechanism that lets you prove after the fact that a record was protected, which is the only form of privacy assurance that survives a dispute.

Design for the smallest workable privilege. A school resource officer, a facilities manager and a district administrator should not share one login, and export should be a privileged, logged action rather than a button everyone has.

Privacy masking

The platform can pixelate individuals by default, so operators monitor movement and behavior without identifying people, and unmasking requires a privileged action that is logged. The manufacturer's masking technology holds a European privacy certification.

This is genuinely useful in schools, healthcare and multi-tenant property, where continuous monitoring is justified but continuous identification is not.

Sharing is explicit and revocable

No default pooling. No standing external access. When you share, you choose the recipient, the scope and the duration, and you can revoke it without calling us or the manufacturer.

Security of security

The physical security system is itself a networked system, and the industry calls hardening it security of security. It is the part most integrators skip and most auditors now ask about.

  • Signed firmware, verified at install and at every update.
  • TLS in transit and encryption at rest.
  • Certificate management with a documented renewal owner.
  • No port forwarding on cloud deployments, which removes the largest attack surface in traditional recorder designs.
  • Network segmentation so cameras never share a VLAN with users.
  • Firmware lifecycle management, with end-of-support tracked per device.

GDPR and CCPA posture

The platform supports the mechanisms these frameworks require of a controller: defined retention, access control, audit trails, masking, export controls and the ability to respond to a subject request. The obligations sit with you as the controller, and we configure the system so you can meet them.

If you operate under a framework with specific documentation requirements, tell us during design. Retrofitting evidentiary controls after commissioning is more expensive than designing for them.

Facial recognition and analytics restraint

We configure to the jurisdiction and to the customer's policy rather than shipping vendor defaults. Analytics that are legal in one setting can be prohibited in another, and defaults do not read statutes.

In Colorado school deployments that is a statutory requirement rather than a preference, and we design to that constraint from the start.

Common questions

Who owns our video?

You do. You are the data controller, you set retention, you control access and you decide about sharing. We do not hold your recordings.

Do you have access to our cameras?

Only if you grant it. Where remote support access is useful it should be time-bound, logged and revocable, and it appears in your audit trail like any other privileged action.

Can you turn off facial recognition?

Yes, and in some jurisdictions we must. We configure analytics to your policy and your jurisdiction rather than to vendor defaults, and in Colorado school deployments statutory restrictions apply.

How do you secure the cameras themselves?

Signed firmware, TLS in transit, encryption at rest, managed certificates, no port forwarding on cloud deployments, network segmentation off the user VLAN, and tracked firmware lifecycle per device.

Is the system GDPR compliant?

The platform provides the controls a controller needs, including retention, role-based access, audit logging, masking and export control. Compliance is a property of your program rather than of a product, and we configure the system to support it.

Talk through the practical next step.

Bring your privacy officer or counsel to the design conversation. We would rather answer these questions before the cameras go up.

Contact Confluence Security

We'll get back to you ASAP

Kindly provide your contact info and a team member will get in touch shortly.

Address
6105 S. Main St. Suite #200
Aurora, CO 80016

Contact form