Personal data under control, not in spreadsheets

Every field has a protection class, passports are masked everywhere, and a reveal takes a reason and leaves a log entry. The exchange with the security service runs in batches, not in email threads.

The security service exchange: export batches, verdict import, the re-export queue
01

Every field has a protection class

P1 — working data visible to the team. P2 — contacts, masked in lists. P3 — documents, masked everywhere. P4 — files in private storage with short-lived links.

  • Passport and date of birth are P3: not visible even on the card
  • A reveal takes a reason; the entry goes to the log
  • A photo is served by a signed link for a few minutes
The application card: documents are masked, a reveal is a “Show” button that leaves a log entry
02

The exchange with the security service — in batches

You build a batch in the service’s template and hand over the file. Verdicts come back as a file — the import shows a preview before anything changes.

  • A person’s data changed — they are in the re-export queue
  • Security status is a separate axis from the application status
  • Without a green verdict a badge can’t be issued at the desk
Export batches, verdict import, the re-export queue
03

The photo archive and columns — as the service asks

The export columns and the photo file names are composed from form fields. The photo archive is built separately and served under the same access rules.

  • The export template is an event setting
  • The photo archive is built as a separate file, next to the list
  • Every file download is logged
Settings of the security service exchange
04

The audit log: who, what and when

Who viewed a passport and for what reason. Who changed a status. Who exported a list. Not “we’ll recall” but a log that can be exported.

  • The log is append-only — entries are not edited
  • Filter by person, action, event
  • Log export for an internal review
The audit log with user actions
05

Roles, two-factor sign-in, isolated organizations

Every organizer is a separate workspace with separate media storage. Roles exist at platform and organization level; a desk operator sees their desk, not the whole database.

  • Two-factor authentication and trusted devices
  • A separate role for the security service
  • Team invitations — only from an organization administrator
The organization team with roles

We’ll show data protection on your event

Your security service’s requirements, your roles, your fields — we’ll set the demo up for a real scenario.

Request a demo
Request a demo

Tell us about your event — we’ll show it on yours

Not slides — your scenario: categories, approvals, zones, desks. We’ll set the demo up for your event.

Or write directly [email protected]
By submitting you agree to the privacy policy. We reply within one business day.