Security & privacy

Built so every company's data stays its own.

Designed from the start for many companies and many buildings on one platform, with isolation enforced in the application and in the database itself.

Isolation at two layers

Every query is scoped to its company, and the database enforces the same rule with row-level security as a second guard.

Two-factor sign-in

Authenticator-app codes (TOTP) for any user, and required for the accounts you choose.

Least-privilege roles

Fine-grained permissions per building. Staff see only their sites; patrol sees plates, not people.

Complete audit log

Every booking, approval, edit, export and sign-in is recorded with who, what and when.

Encrypted archive

Archived photos and logs are encrypted before they leave the server, so the storage provider only ever holds unreadable data.

Privacy by design

Signed, expiring links for photos and passes; guest forms never reveal who lives where; retention periods you control.

Controls you get

Your data, your rules.

Administrators decide who sees what, how long records are kept, and where archives are stored.

Roles per buildingGive staff access only to the sites they work at, with ready-made roles for managers, concierge, security, patrol and residents.
Two-factor sign-inRequire authenticator-app codes for administrators and staff, and reset them when a phone is lost.
Audit log you can exportSearch every action by person, building and date, and export it for reviews.
Retention and archivingSet how long reservations, violations and logs are kept; archive older files to your own encrypted storage.
Your own email serverSend notices and passes from your organization's own mail server, under your name.
Export everythingDownload residents, vehicles, units, spots, reservations and violations to Excel or CSV at any time.

Questions from your IT or privacy team?

We're happy to walk them through how ParkCommand protects your residents' data.