Security

Your data never leaves your environment.
Unless you want it to.

VII is built for organizations where video data is classified, regulated, or simply too sensitive for the public cloud. Deploy on-prem, air-gapped, or in your own VPC.

Deployment Security

Three ways to deploy. All secure.

Air-Gapped On-Prem

Complete network isolation. No external API calls. Local VLM inference. All processing happens inside your perimeter. Ideal for classified environments.

  • Zero external network calls
  • Local model inference
  • Hardware security module support

Private VPC

Deploy in your own cloud VPC. You control the network boundaries, security groups, and data routing. VII runs as containers in your infrastructure.

  • Your cloud, your rules
  • Custom security groups
  • Private endpoints only

Managed Cloud

VII-hosted with enterprise-grade security. SOC 2 compliance, encrypted storage, isolated tenant environments. Fastest path to production.

  • Tenant isolation
  • SOC 2 Type II (in progress)
  • Automatic patching
Data handling
Data Handling

Encrypted, controlled, deletable.

[ENC]

End-to-End Encryption

All data encrypted in transit (TLS 1.3) and at rest (AES-256). VLM API calls use encrypted channels. No plaintext video data touches disk unencrypted.

[RETAIN]

Data Retention Controls

Configure retention policies per-tenant. Auto-purge raw video after analysis. Keep structured intelligence as long as needed. Full audit trail of deletions.

[TRAIN]

No Training on Your Data

VII never uses customer video or analysis results to train models. Your data is your data. We process it, return structured results, and forget it.

[RESIDE]

Data Residency

Choose where your data lives. Deploy in specific regions for GDPR compliance. On-premise deployments keep everything within your physical control.

Access control
Access Control

Deny by default. Audit everything.

[RBAC]

Role-Based Access Control

Super admin, org admin, and user roles. Granular permissions per app, per data source, per action. Deny by default.

[SSO]

SSO / SAML / OIDC

Enterprise single sign-on with SAML 2.0 and OpenID Connect. Integrate with Okta, Azure AD, Google Workspace, or any compliant identity provider.

[MFA]

Multi-Factor Authentication

Enforce MFA at the org level. Support for TOTP authenticator apps and hardware security keys. No SMS-only fallback.

[AUDIT]

Audit Logging

Every API call, login, permission change, and data access is logged with timestamp, actor, and IP. Export logs to your SIEM.

Compliance
Compliance Roadmap

Meeting you where you are.

FrameworkStatusTimeline
SOC 2 Type IIIn ProgressQ3 2026
GDPRCompliantCurrent
HIPAAReadyBAA available
ISO 27001PlannedQ1 2027
FedRAMPPlannedQ4 2027
ITAREvaluatingTBD

Need to discuss your security requirements?

Our team works directly with your security and compliance stakeholders.

Contact Security Team