Platform OverviewOne secure visitor-record service.
One secure visitor-record service.
Multiple inclusion channels.
Buffr Checkpoint's architecture is built around a single principle: every visitor can check in. The channel changes. The data-protection standard doesn't.
Architecture
From visitor channels to encrypted object storage, every layer is designed for privacy, resilience, and regulatory readiness.
DigiNam / NPKI: Not availableNational e-ID NFC: Targeted
Role-Based Access Control
Access control is applied at the data and API layer, not only in the user interface. Every sensitive action creates an immutable audit event.
| Role | View rights | Change rights | Export rights |
|---|---|---|---|
| Visitor | Own confirmation only | Complete own check-in | None |
| Host / Staff | Their own visitors | Approve, reject, update | None by default |
| Front Desk Operator | Current-day roster (assigned site) | Assisted check-in, sign-out, badge | Current-day operational list |
| Site Manager | Full history (assigned site) | Site fields, hosts, config | Site reports |
| Regional Manager | Aggregated sites (assigned region) | Limited regional config | Regional reports |
| Compliance / Audit Officer | Organisation-wide records & audit trail | Legal holds, retention, DSAR | Evidence packs |
| System Administrator | Configuration & operational metadata | Roles, sites, policy, integrations | Configuration/audit exports |
| Platform Support | None by default | Time-bound break-glass only | No routine export |
| DigiNam Verification Adapter | Only required verification fields | No human access | None |