OmniVision AI

Security & privacy

Your footage. Your building. Your rules.

Video of real people is sensitive. OmniVision is designed so it doesn't have to leave the site: the AI that watches, describes and answers questions runs on hardware you own.

CamerasOn their own network, no internet route
OmniVision boxAll AI processing and storage
Your teamSigned in, with a role
Your premises
Remote accessEncrypted tunnel, optional

How we protect it

Six things built in

Local AI

Object detection, scene captions, search and Ask OmniVision all run on the box at your site. No third-party AI service sees your cameras or your questions.

No open ports

Remote access goes through an encrypted tunnel (Cloudflare Tunnel or Tailscale), so nothing on your router has to be opened to the internet.

Roles

Admins, supervisors, guards and auditors each see and do only what their role allows. Passwords are stored as salted hashes.

Audit trail

Every sign-in, search, view, report and export is logged with who did it and when. The log is append-only: it can't be edited or deleted from the app.

Signed evidence

Exports carry a SHA-256 hash manifest and an HMAC-SHA256 signature, so anyone can confirm later that a clip wasn't altered.

Encrypted disks

We set up EdgeBoxes with full-disk encryption (BitLocker or LUKS), so a stolen box doesn't mean stolen footage.

Cloud, only if you choose

What leaves the site, and what doesn't

The standard setup sends nothing to the cloud. A few optional features use the internet, and you decide whether to turn each one on.

DataStandard setup
Live and recorded videoStays on site
Captions, search index, chatStays on site
Your questions to Ask OmniVisionStays on site
Maps of vehicle tripsStays on site: the street map is stored on the box, so no map service sees where vehicles went
Cloud-assisted captionsOptional, for sites without a GPU: still images of scenes only, never video
Push alertsOptional: a short alert message to your phone or browser
Cloud archive importOptional: reads from your own S3, Azure or Google Cloud bucket

Questions

Security FAQ

Can OmniVision staff see our footage?

Only if you give us access, for example during setup or support. Access goes through the same encrypted tunnel and sign-in as your own team, and it shows up in the audit trail.

Can we join through our own VPN?

Yes. If your IT team prefers, we can work over a VPN you provide instead of a tunnel. The site questionnaire asks about this.

What happens to the data if we stop using OmniVision?

It's on your hardware, so it stays with you. You can wipe the box, or keep the recordings and exports.

Do the cameras need internet access?

No. On an EdgeBox the cameras sit on their own network behind the box, with no route to the internet at all, which also protects you from compromised camera firmware.

Bring your IT team in early

The site questionnaire has a technical section on networks, VPNs and access. Invite your IT contact to answer it directly.