Security & Trust Center

Your content stays under your control.

Buyer-owned source storage, dedicated processing, agreed data residency, auditable access, no model training, and contractual deletion form the baseline for Vidcomply enterprise deployments.

01BUYER-OWNEDSource and reports remain yours
02ISOLATEDDedicated processing resources
03REGION-AGREEDResidency decided before onboarding
04NO TRAININGContent serves only your workflow
Customer security promises

The questions that matter, answered first.

These commitments describe the standard enterprise deployment model. The precise architecture, region, services, access, and retention settings are agreed with each customer.

01

Your source stays under your control

Media can remain in buyer-owned Amazon S3 or other agreed isolated storage. Vidcomply receives only the minimum permissions required to process the asset and return results.

02

Customer workloads are isolated

Each customer receives dedicated processing resources and separate queues, protected through least-privilege IAM and network controls. Dedicated AWS account deployment is available where stricter isolation is required.

03

You choose the region

Deployment region is agreed before onboarding based on data-residency, security, and latency requirements—not automatically assigned as the “nearest” region.

04

Your content is never used for AI training

Customer content is processed solely for the contracted service. It is not used to train, retrain, or improve Vidcomply models, and approved AI subprocessors are subject to equivalent no-training controls.

05

Everything is auditable

Processing activity, infrastructure actions, and access are logged. Customers can receive outputs, processing records, and relevant audit logs under the agreed access model.

06

You control retention

Processing files are temporary and lifecycle-controlled. Retention periods, return, and deletion procedures are contractually agreed, with deletion available on request and at contract termination.

Reference architecture

Customer-controlled media. Isolated processing.

The AWS Marketplace deployment pattern can read from buyer-controlled Amazon S3, process inside an isolated seller environment, and write results back to the customer workflow.

Reference AWS Marketplace deployment architecture showing buyer-controlled S3, event-driven processing in a dedicated Amazon VPC, controlled optional enterprise AI services, and reports returned to buyer storage
Reference AWS Marketplace deployment. Region, enabled services, storage arrangement, and integration boundaries vary by customer and are agreed during onboarding.
Customer control

Buyer-owned source storage · Dedicated processing · Agreed data residency · Auditable access · No model training · Contractual deletion

1Customer storage

Source media remains in an agreed customer-controlled location.

2Controlled trigger

An event starts a job through encrypted, policy-scoped access.

3Isolated compute

Processing runs inside a dedicated Amazon VPC boundary.

4Results returned

Reports are written back to the customer's approved destination.

CUSTOMER VISIBILITY & AUDIT

Control without broad administrative access.

Customers retain control of source storage and receive their outputs. Processing records and relevant audit logs can be provided, with read-only infrastructure visibility or dedicated-account deployment available where required and agreed.

AWS assurance

Available through AWS Marketplace.

Vidcomply AI is listed as a seller-operated SaaS product on AWS Marketplace and is marked “Deployed on AWS.” Customers can procure the platform through their established AWS purchasing workflow.

Open the official AWS Marketplace listing
AWS WELL-ARCHITECTED TOOL

Review completed

4assessed pillars
0high-risk items recorded

The June 2026 review covered Operational Excellence, Security, Reliability, and Performance Efficiency. Medium-risk improvement opportunities were recorded and tracked. Cost Optimization and Sustainability were not assessed.

This architecture review is not an AWS certification. The complete 75-page report is available to qualified customer security teams under appropriate confidentiality terms.
Public documents

Start the review here.

Customer-specific architecture, contractual schedules, questionnaires, and the complete AWS review are supplied separately during technical due diligence.

PDF · SAMPLE

Sample Data Processing Agreement

A non-binding customer-neutral template with deployment details assigned to the Order Form or Security Schedule.

Download PDF
LIVE OVERVIEW

Subprocessors & Data Residency

Service categories, purposes, deployment choices, and customer-specific transfer controls.

View overview
POLICY

Privacy Policy

How Vidcomply collects, uses, shares, protects, retains, and deletes personal information.

View policy
AVAILABLE ON REQUEST

Detailed AWS Review

The full AWS Well-Architected Tool report is shared with qualified security teams during due diligence.

Request access
LEGAL

GDPR Compliance Statement

Public commitments covering processing boundaries, security measures, subprocessors, and incident notification.

View statement
Customer due diligence

Need the deeper technical material?

Qualified customer security teams can request the full AWS review, detailed network diagrams, customer-specific architecture, security questionnaires, and contractual security schedules.

Start a security review