Security & Trust

Operational data deserves serious protection.

Iron Watch is designed around controlled access, tenant isolation, least privilege and visible human oversight.

See Iron Watch in Action
Operational view
MFAprivileged users
RLStenant boundaries
RBACrole-based access
Auditprivileged actions

Human-controlled decision support

01 · Isolate

Tenant-isolated data

Each customer environment is designed to keep users, guards, clients, sites, shifts, credentials, documents, incidents, reports, financial data and AI context isolated.

  • Row-level and server-side authorisation
  • No cross-tenant AI context
  • Private operational documents
Status → Context → ActionTenant scope confirmed

The request is authorised for this customer environment.

02 · Restrict

Role-based access

Least privilege helps ensure that a scheduler, compliance user, guard, client viewer and platform Founder do not see the same information.

  • MFA for privileged users
  • AAL2 for Founder and privileged actions
  • Sensitive incidents and financial data restricted
Status → Context → ActionAccess checked

This action requires an authorised role.

03 · Record

Audit trails and controlled support

Privileged actions and Founder Support Mode should be explicit, visibly labelled and logged — never a casual bypass of tenant boundaries.

Status → Context → ActionFounder Support Mode

Authorised access is time-limited and auditable.

04 · Control

Human-controlled AI

AI credentials remain server-side. AI is tenant scoped, schema validated and designed to fall back safely while deterministic operations remain available.

Status → Context → ActionCore rostering remains available

AI assistance is temporarily unavailable.

Important

No internet-connected system can be guaranteed completely secure. Iron Watch uses layered controls and expects users to protect their credentials and report suspected unauthorised access.

Ready before it becomes urgent

Put the operation in one controlled environment.

See how Iron Watch connects guards, shifts, credentials, sites and operational decisions.

See Iron Watch in Action Sign In