Security & privacy

Visibility built to be trusted.

Visbi is designed to pass the toughest procurement review — because the whole product depends on trust on the floor. Here's exactly how your data is handled, and the lines we don't cross.

Private by design — not a setting you have to turn on.

Processed on-site · Shared as anonymized insight and proof · No facial recognition
How Visbi handles your floor
The posture, at a glance
Processed on-site
One edge device per location — no continuous cloud stream
Anonymized insight & proof
Scores, flags & anonymized proof — no cloud archive of people
No facial recognition
Ever. No demographics, no emotion detection
We don't rank your frontline team
Reads how the shift runs — no per-person score for hourly staff
Humans decide
Nothing escalates or disciplines automatically
Deletion, confirmed
Your footage on your terms — with confirmation
By design — not a setting to turn on.
Data handling

From the camera to confirmed deletion.

Here's the whole journey your footage takes — where it's processed, what leaves your walls, and what's kept. The short version: your raw video is never continuously uploaded off-site.

On your premises · processed locally
Your cameras
Already on your walls
Edge device
Reads video locally
Anonymized
Identity stripped
Raw, identifiable video stays here — never continuously uploaded off-site.
What leaves
Anonymized insight + proof
Scores, flags and anonymized proof only — no faces, no names, and no cloud archive of identifiable people.
And what's kept, on your terms
Step 01
Kept to your policy
Set to the window you specify — nothing kept beyond it
Step 02
Deleted on your terms
Cleared to the policy we agree on together
Step 03
Confirmed in writing
You get written confirmation when your data is deleted
Where we stop

The lines we don't cross.

Trust isn't only about what we do with your floor — it's about what we've decided never to build. These aren't optional settings. They're fixed into the product.

On the other side of this line
No facial recognition. Ever.
We never identify who a person is. No face matching, no watchlists, no identity lookups — on any plan.
No demographics or emotion.
We don't guess age, gender, ethnicity, or mood. Visbi reads what's happening, not who's doing it or how they feel.
No frontline staff ranking.
Visbi reads how the operation runs, shift by shift — never a per-person score for your hourly team. Accountability sits with the shift, not the individual.
No automatic discipline.
Nothing escalates, penalizes, or acts on its own. Visbi surfaces what happened — a human always decides what to do next.
No monitoring of private spaces.
Operational zones only — never restrooms, guest rooms, or private areas. Visbi is pointed at how the business runs, nothing else.
No searchable archive of people.
We don't build a cloud library of identifiable individuals. What syncs is anonymized insight and proof — never a live feed of your floor.
Fixed into the product

These aren't settings you toggle. They're decisions baked into the product — the same on every plan, in every location.

If a use case would need us to cross one of these lines, we'd rather not take it.

Your data, your terms

You stay in control.

Visbi processes your floor on your behalf — the data is yours, and the terms are yours to set. Here's exactly what stays in your hands.

Your footage is yours. Full stop.
You're the owner; Visbi is only the processor — we handle your data on your behalf, and only for what you've asked us to do.
Not for sale
Never sold or shared
Your data is never sold, shared with third parties, or repurposed for anything you didn't agree to.
To your policy
Retention on your terms
Retention is set to the window you specify — nothing is kept beyond the policy we agree on together.
Yours to take
Portability
Your insights are yours. If you ever move on, you leave with your data — we don't hold it hostage.
Security FAQ

The questions procurement actually asks.

Straight answers to what your security, IT, and legal teams will want to know — before the first call, not after.

No — never. No face matching, no watchlists, no demographics or emotion detection. Visbi reads how the operation runs from what happens on the floor and from shift and POS data — never from anyone's identity. It's a product principle, the same on every plan.
On-site. One edge device per location reads the video locally — your raw footage is never continuously streamed or uploaded to the cloud.
Only anonymized insight and proof — scores, flags, and anonymized proof. Never a live feed of your floor, and no cloud archive of identifiable people.
We don't rank your frontline or hourly team. Visbi reads how the operation runs, shift by shift — accountability sits with the shift, not the individual. And nothing escalates or disciplines on its own: Visbi surfaces, humans decide.
You do. Visbi is only the processor — we handle your data on your behalf. It's never sold, shared with third parties, or repurposed for anything you didn't agree to.
Retention is set to the window you specify, and nothing is kept beyond it. Ask and we clear your data on request — then confirm in writing that it's gone. Not just promised.
Visbi is private by design: on-site processing, anonymized output, no facial recognition, and retention and deletion on your terms. Visbi is built and operated by Innovatics, whose information security management system is ISO/IEC 27001 certified — so your data is handled under an independently audited security program. That posture is built to support your compliance obligations, and we work with your security and legal teams on the specifics for the regions you operate in.
Bring your toughest reviewer

Put Visbi through your security review.

The whole product depends on trust on the floor — so we built it to hold up to the questions. Start with a Readiness Audit, and bring your security, IT, and legal teams along.

Processed on-site · Anonymized insight and proof · No facial recognition