Silent duress
A code reception can enter under coercion locks the site down and alerts security, while the screen carries on as if nothing happened.
Security & compliance
BeckonDesk treats the gate as a control point, not a guestbook. Names are checked before entry, people are accounted for during an evacuation, and every tenant’s records stay walled off from every other’s.
Denied-party screening
Every sign-in is matched against your own watchlist and the public OFAC, UN, and EU consolidated sanctions lists, 53,067 records, refreshed and fuzzy-matched so a near-spelling still trips. A hit holds the visitor and alerts your team.
Evacuation & mustering
Start an evacuation and everyone on site lands on one live board, each with the last zone their badge was seen in. Staff mark people safe from any phone; the count syncs instantly and exports as an incident report.
Active security
A code reception can enter under coercion locks the site down and alerts security, while the screen carries on as if nothing happened.
Broadcast a lockdown to your door controller in one action, and release it just as quickly when the all-clear comes.
Overstays, visitors who never checked out, odd-hours arrivals, and repeated denied attempts surface to security on their own.
Data & tenancy
BeckonDesk is multi-tenant by design. Each organization’s records are isolated at the database, so one customer can never read another’s, even when the same visitor is invited by both. And with no facial recognition, there’s no biometric data to leak in the first place.
Ask about our data modelA tenant filter is enforced on every query, cross-tenant reads are impossible, not just discouraged.
BeckonDesk doesn’t use facial recognition or store biometric identifiers, nothing to breach, and you stay clear of US state biometric-privacy laws.
Set how long visit records live; old data is purged on your schedule, not ours.
Integration secrets are encrypted at rest; the audit log is append-only.
Platform & infrastructure
BeckonDesk runs entirely on Microsoft Azure. Azure holds ISO 27001, SOC 2, and other independent audit reports for the platform layer. Our own product-level security controls are documented below.
Data is encrypted in transit with TLS and at rest with AES-256. Your information is never transmitted or stored in the clear.
Administrator access is protected by Microsoft Entra identity with multi-factor authentication, and role-based permissions keep staff to only what they need.
Our database is not reachable from the public internet, and every credential lives in Azure Key Vault, never in code, with access limited to our services over encrypted connections.
Your data is backed up automatically and can be restored if ever needed. The platform is monitored around the clock, so issues are caught and handled fast.
AI-assisted screening runs inside our own Azure environment. Your data is never shared with third parties or used to train AI models.
We collect only what’s needed to manage access, don’t scan or store government-ID documents, and never send visitor passes by email or text. Aligned with UK GDPR and the Data Protection Act.
Identity
SAML or OpenID Connect against your own identity provider, per tenant.
Provision and deprovision staff automatically from Entra and other IdPs.
Joining a tenant is by invite only, no self-service back door into another company’s site.
We’ll screen a real sanctioned name and walk a full muster on a call.