Trust & security

A live audience
deserves quiet plumbing.

SeatView is built so attendees can join in seconds without giving up control of their notes, their device, or their data.

SOC 2 Type II in progress · GDPR aligned

Browser-only access

Nothing to install on attendee devices. The audience joins via a short URL and a QR code. No app store, no SDK, no permissions prompt.

Encrypted in transit and at rest

TLS 1.3 between every device and our edge. AES-256 at rest. PDF exports are encrypted per attendee with rotating keys.

Private by default

Notes are visible only to the attendee who took them. Speakers see aggregate highlights, never individual notes.

Secure sessions

Sessions expire on schedule. Optional access codes lock private rooms. Presenter actions are signed and audited.

Regional data residency

EU and US regions out of the box. Enterprise customers can pin to a single region and request a DPA.

Compliance roadmap

SOC 2 Type II in progress (target Q3 2026). GDPR-aligned today. SSO and SCIM available on Enterprise.

What we don't do

  • • We don't sell attendee data. Ever. There's no ad business attached to SeatView.
  • • We don't require an account from attendees. A QR scan is the entire onboarding.
  • • We don't track location, contacts, or device identifiers beyond what a browser exposes.
  • • We don't keep recordings of speaker audio unless captions are explicitly enabled.

Need our security pack?

DPA, sub-processor list, pen test summary, architecture diagram. Send a note and we'll share access.