Security & compliance

Trust by construction.

CapSeal is designed so you never have to take our word for anything. Every verdict rests on hardware you already trust, cryptography your bank runs, and an open standard your auditors recognise - each independently verifiable by your own engineers.

The trust model

You don't trust us. You trust the math.

We remove ourselves from the trust equation. If CapSeal vanished tomorrow, a sealed capture would still be verifiable - because the guarantees come from Apple and Google's silicon, standard cryptography, and the open C2PA standard, not from our opinion.

HARDWARE

Apple & Google chips

The "real, un-tampered device" guarantee comes from Secure Enclave and Play Integrity, signed at capture. We consume it; we don't issue it.

CRYPTOGRAPHY

Bank-grade signing

Standard asymmetric signing binds the seal to the asset. Change one pixel and it provably breaks - verifiable offline, on your own servers.

OPEN STANDARD

C2PA Content Credentials

An open industry standard, not a black box only we can read. Your auditors and any third-party tool can inspect the manifest.

Data handling

Privacy-preserving by design

Your data stays yours

CapSeal integrates alongside your claims system, not in place of it. Seals and proofs can be verified within your boundary; the verify service needs the evidence and its manifest, not your customer database.

The network shares signatures, not data

Cross-carrier verification uses salted entity hashes and private set intersection. A carrier learns "this evidence was already sealed elsewhere" without either side exposing raw customer information - engineered to de-identification standards.

Regulatory alignment

Australia-first, globally extensible

CapSeal is built around the properties regulators increasingly demand of automated decisions - explainability, auditability, and proportionate treatment of customers.

AUSTRALIA

Home-market fit

  • Privacy Act 1988 and the automated-decision transparency reform trajectory - proof objects provide native explanation
  • General Insurance Code of Practice - proportionate, evidence-based investigation friction
  • ASIC claims-handling regime and APRA CPS 230 operational-risk expectations via the audit and replay surfaces
EXPORT

Maps cleanly abroad

  • EU AI Act high-risk-system requirements - explainability and human oversight built in
  • UK FCA Consumer Duty and financial-crime obligations
  • The same proof-carrying architecture satisfies each, making compliance an export asset rather than a rebuild
The honest limit, stated plainly: the seal proves provenance - real device, real moment, unaltered. It does not prove the claimant's intent. CapSeal makes the evidence trustworthy; the intelligence layer behind it addresses whether the claim itself is honest. A vendor that names its limits is the one worth trusting with your payments.

Put it in front of your risk team.

We'll walk your security, model-risk and compliance functions through the proof model and the data architecture.

Book a security review Contact sales