Learn how SV3 Enterprise protects visitor data and which settings help you meet privacy rules.
What SV3 Enterprise protects
Every visitor gives personal details at check-in: a name, often an email address or phone number, and sometimes a photo. SV3 Enterprise encrypts this data everywhere it goes. That covers the Dashboard, the Kiosk, and badge printing.
- Data in motion is encrypted with TLS 1.2.
- Data at rest is encrypted with AES-256.
Why it matters to you
Privacy regulations, such as the EU General Data Protection Regulation (GDPR), limit how long you keep personal data and give people the right to ask you to erase it. SV3 Enterprise gives you two settings that support these efforts.
Data retention period
You choose how long SV3 Enterprise keeps visitor data, from a minimum of 90 days to a maximum of one year (365 days). Set the period that matches your organization's policy.
Delete identifiable data on request
When a visitor asks you to erase their information, you can delete their identifiable data from the visit. SV3 Enterprise removes personal details such as name, email address, phone number, and photo.
The visit itself stays on record, along with details that don't identify the person, such as the Visit Type and Citizenship. Reports and visitor traffic counts stay accurate, but no one can tell who the visitor was.
How this relates to your other settings
The data retention period applies to every visitor automatically. Deleting identifiable data is a one-off action you take for a single visitor. Use the retention period as your standing policy, and use deletion for individual requests that can't wait.
Comments
0 comments
Article is closed for comments.