Към съдържанието
Security

Your clients' photos stay your clients'.

beform handles pictures of the rooms people live in. This page says where they run, who can reach them, how long they are kept and what beform will never do with them.

How it is built

The answers, in the order your IT asks for them.

Four questions decide whether a platform can hold a client's home: where it runs, who can reach it, what happens to the data, and how the thing is operated.

  • Where it runs

    European infrastructure
    beform runs on managed European infrastructure. Frankfurt, Germany is the primary region for the application, the database and the file storage. The content delivery network serves static files from wherever a visitor is; the data behind them stays in the region.
    Encrypted in transit
    Every connection to beform, from a visitor's browser, from a consultant's tablet and from your own systems, runs over TLS. Nothing about a project travels in clear text.
    Encrypted at rest
    Files, database records and backups are encrypted at rest by the managed services that hold them, with keys managed by those services and rotated by them.
    Operated by a Swiss company
    beform is built and operated by crue GmbH in Zurich, under the Swiss Federal Act on Data Protection and, where it applies, the GDPR. A data processing agreement is part of every contract.
  • Separation and access

    One project per client
    Each customer gets a project of its own: its own database, its own storage and its own keys. There is no shared table of photos or requests, so one company's clients cannot appear in another company's account.
    Least privilege, by role
    Access is granted per role and kept to the minimum the work needs. Within crue, only the people working on your account can reach it, under a duty of confidentiality. Administrative access is separate from everyday access.
    Your directory decides
    On System, single sign-on over SAML or OIDC hands the decision to your own identity provider: who may render, who may hand a visual over, who sees costs. Removing someone in your directory removes them from beform.
    Audit log
    Renders, handovers, exports, invitations and setting changes are recorded with who did what and when. The log is readable in the Console and can be exported.
  • Your clients' data

    Private storage, signed links
    Client photos and visuals sit in private storage with no public address. A file is opened with a link that is signed for one recipient and expires, which is also how a visual reaches a client's inbox.
    Retention you choose
    Your contract sets how long uploads and visuals are kept: 30, 90 or 365 days, or deleted as soon as the visual has been handed over. Requests and their metadata follow your own retention rule.
    Deletion on request
    A written request to delete a client's data, or everything in an account, is carried out within 30 days across the project, and takes effect in the backups as they roll over. You get written confirmation.
    No training on your photos
    Client photos, visuals and notes are never used to train a public model. The image and language models beform routes to are used under the business terms of paid accounts, which exclude training on the data sent to them.
  • How beform is operated

    Secrets in managed stores
    Keys and tokens live in the managed secret store of the hosting platform and are injected at runtime. No credential is committed to the repository, built into an artefact or written to a log.
    Signed server to server
    Every event beform sends your systems is signed so you can verify it came from us, and the REST API is authenticated per account with keys you can rotate or revoke.
    Backups
    The database is backed up daily and can be restored to a point in time. File storage is versioned, so a deleted or overwritten visual can be recovered inside the retention window.
    Dependencies and patches
    beform runs on current, supported runtimes. Dependencies are reviewed on a schedule, security advisories are patched ahead of feature work, and the build fails on a vulnerable dependency.
Deliberately not

What beform does not do.

Some of the most useful things a platform can say are about what it leaves out.

  • No biometric processing. beform reads spaces, not faces, and does not identify or categorise people.
  • No automated decisions about people. Nothing in beform scores, ranks or decides anything about a person.
  • No third-party trackers without consent. No advertising cookies, no data sold, no pixel that fires before you agree.
  • No client photos in our marketing. Examples on this website are our own, and a customer's work appears only with written permission.

What beform does not claim

beform holds no security certification today. There is no ISO 27001 certificate, no SOC 2 report and no published penetration test. What this page describes is how the platform is built and operated, and it is what crue answers for in a contract. If your procurement needs a certification, say so early and we will tell you honestly where we stand.

Subprocessors

Everyone who touches a project, named.

beform runs on a short list of managed services, each under data processing terms. The authoritative list, with the countries and the legal detail, is kept in the privacy notice.

Service

What it does

Vercel
Hosting, content delivery and server functions in Frankfurt, Germany.
Google
Workspace for our own email, and the Gemini models that read photos and form visuals.
OpenAI
Models that read photos, suggest directions and form visuals.
Resend
Confirmations, alerts and the newsletter, sent from its EU region in Ireland.
Upstash
Short-lived counters for rate limits and demo limits.
Disclosure

Reporting a vulnerability

If you believe you have found a weakness in beform, write to us with the subject Security. Tell us what you found, where, and how to reproduce it. We confirm receipt within two working days, keep you informed while we fix it, and we will not pursue anyone who reports in good faith and does not access or change data that is not theirs.

hi@beform.ai

Вижте beform върху снимка от Ваш клиент.

Качете една снимка в демото и вижте как пространството придобива форма. Или си уговорете тридесет минути и ще покажем beform върху три Ваши реални проекта.