Cyber Security
How we protect our connected products — and how to reach us with a security concern.
Please report any cyber security concerns to: cyber@safeportsecurity.com.au or call: 0402545178 Cyber security & Data Protection is critical. The security of your physical premises and digital data is our highest priority. Our smart locking hardware, mobile applications, and management platforms are engineered to meet stringent Australian cybersecurity mandates, maintaining local regulatory compliance, data privacy, and operational integrity. Our access control ecosystem is fully compliant with current Australian statutory frameworks, including: Cyber Security (Security Standards for Smart Devices) Rules 2025: Our connected hardware strictly adheres to Australian mandatory IoT baseline security requirements: No Universal Default Passwords: Every device is provisioned with unique credentials or requires immediate user-defined configuration upon activation. Vulnerability Disclosure & Reporting: We maintain a dedicated, public security reporting channel to receive and triage potential security findings from researchers and users. Guaranteed Security Support Periods: We explicitly commit to a minimum period of regular firmware and software security maintenance updates for every supported lock model. Privacy Act 1988 & Australian Privacy Principles (APPs): All personal information, access logs, and account data are collected, processed, and stored strictly in accordance with Australian privacy legislation. Hardware & Device-Level Security Secure Hardware Architecture: Locks utilize dedicated secure element hardware to store cryptographic keys, preventing physical tampering or side-channel key extraction. Encrypted Wireless Communication: Data exchanged between mobile devices, Bluetooth/Zigbee/Wi-Fi modules, and gateway hubs utilizes end-to-end encryption (AES-128 / AES-256) to eliminate eavesdropping or replay attacks. Tamper & Brute-Force defences: Hardware firmware includes local lockouts after repeated failed credential attempts (PIN, RFID, or biometric) and immediate local/remote notification triggers upon detection of physical lock tampering. Data Storage & Cloud Architecture Australian Sovereign Data Residency: All account records, access logs, and software metadata are hosted within secure Australian cloud data centres (AWS / Azure Sydney regions), ensuring data remains governed by Australian law. Minimal Data Retention: We collect only the data required to perform access operations. Unlock logs and audit trails are encrypted at rest and held strictly within defined retention windows before safe deletion. API & Integration Protection: Communications between property management systems (PMS), custom software integrations, and our locking infrastructure rely on authenticated HTTPS REST APIs secured via OAuth 2.0 / TLS 1.3 encryption. Vulnerability Management & Software Updates Over-The-Air (OTA) Updates: Firmware and application updates are cryptographically signed to ensure authenticity prior to installation, shielding hardware against corrupted or unauthorized code execution. Continuous Security Assessments: Our platforms undergo regular vulnerability scans and third-party penetration testing to identify and remediate emerging security risks. Responsible Disclosure Program: If you discover a potential vulnerability within our hardware, mobile apps, or cloud services, please report it directly to our security team at cyber@safeportsecurity.com.au. We acknowledge receipt within [e.g., 48 hours] and provide progress updates throughout the resolution process. User & Administrator responsibilities: While we maintain enterprise-grade security at the hardware and platform layer, system security relies on shared operational best practices: Utilise strong, unique account passwords and enable Multi-Factor Authentication (MFA) on administrative portals. Promptly revoke app access, PIN codes, or digital keys when employees or tenants leave. Keep mobile applications updated to the latest release to ensure active security patches are applied. For inquiries regarding our security controls or to request a copy of our mandatory Statement of Compliance, please contact:
Report a security concern
Use any of the channels below and we'll respond promptly.
Location
Gold Coast, Australia
Sydney, Australia
