Trust

Security, compliance and transparency

Your floor plans, IT inventories and energy data deserve impeccable handling. Here is how the platform protects your information, the standards our products and deployments apply, and how the platform evolves.

Trust Center

Platform security and confidentiality

The client portal hosts sensitive documents (floor plans, IT inventories, energy data). It is built to the following requirements.

Identity and access

Standard OIDC/OAuth 2.1 authentication, mandatory MFA for sensitive roles, role- and object-level access control (organisation, case file, document).

Encryption

Data encrypted in transit and at rest, centralised key and secret management, test environments separated from production.

API protection

OWASP API Security Top 10 alignment: quotas, validation, limits, anti-abuse testing and centralised security logging.

Files

Antivirus scanning, classification, temporary download links, versioning and retention rules per document class.

Privacy

Step-by-step minimisation, granular and revocable consents, operable rights of access, export and erasure (GDPR / Swiss FADP).

Incidents

Incident procedure, published security contact and penetration testing before every major production release.

Security contact: security@immersion-infinite.example

Normative references

Standards and frameworks applied

Frameworks applied by the Immersion Infinite platform, products and deployments.
ReferenceScopeApplication
WCAG 2.2 level AAWeb accessibilityEvery journey, form and content on the site
OWASP API Security Top 10API securityEngineering of the portal and services
ISO/IEC 30134 / EN 50600-4Data center indicators (PUE, WUE…)Measurement methods for published metrics
Directive (EU) 2023/1791 + delegated regulation 2024/1364Data center energy reportingMSS metrology feeds these declarations directly
NIS2 (EU) 2022/2555Infrastructure cybersecurityPosture of deployments and of MSS supervision
CE marking, REACH, RoHSProduct complianceDocumented per product, dossier supplied with every project
Core Web VitalsWeb performanceBudgets: LCP ≤ 2.5 s, INP ≤ 200 ms, CLS ≤ 0.1 (p75)
Sovereignty and location. Engineering and production in Geneva, under Swiss jurisdiction (GDPR adequacy decision confirmed). The MSS module is isolated from the IT load and designed with no remote attack surface: thermal control remains decoupled from your business data.
Platform evolutions

What exists, what is coming

  • Today

    Public site and project journey

    Worldwide FR/EN site, education, catalogue, pre-qualification journey with exportable summary (worldwide geographic coverage through manual entry).

  • Next

    Full client area

    Client account, synchronised drafts, secure document upload, case tracking, integrated messaging and appointments.

  • Then

    Territorial intelligence

    Official data connectors (parcels, zoning, hazards) jurisdiction by jurisdiction, with provenance and date displayed.

  • Later

    Advanced configuration

    Full rules engine, reproducible calculations, scenario comparator, generation of technical dossiers and tender documents.

  • At scale

    Ecosystem and APIs

    Qualified partners, documented APIs, additional languages and AI assistance grounded in official content.

A question, a comment? Write to us — every page shows its last-updated date.