RockLyzor Logo

RockLyzor

Monitor. Analyze. Optimize.

DATA GOVERNANCE & PRIVACY

Industrial Data Privacy Policy

RockLyzor is engineered from the ground up for industrial sovereignty. Learn how we safeguard your plant floor signals, sensor telemetry, and operational intelligence.

Effective: January 1, 2026 Architecture: On-Premise & Edge-Native Standard: IEC 62443 & GDPR Aligned
Request Security Whitepaper

ARCHITECTURAL PILLARS

Sovereignty by Design

Traditional cloud SaaS tools require piping sensitive production metrics outside factory perimeters. RockLyzor is fundamentally different.

100% On-Premise Storage

Raw sensor readings, Modbus registers, and energy metrics never leave your local physical or virtual network.

Zero Telemetry Mining

We never harvest, aggregate, sell, or train external AI foundation models on your confidential operational workflows.

Role-Based Segregation

Granular operator, engineer, and supervisor access rights ensure operators only see assets under their supervision.

Air-Gap Compatible

Can operate in totally isolated OT networks without active internet connections or recurring cloud handshakes.

Section 01

1. Overview & Scope of Application

This Privacy Policy describes how RockLyzor ("we", "our", or "the Platform") handles information collected through our industrial SCADA software, edge collectors, synoptic dashboards, and corporate web properties (collectively, the "Services").

RockLyzor is purposefully designed for mission-critical manufacturing, energy generation, water utilities, and automated production environments. Unlike consumer platforms, our software architecture establishes a rigorous boundary between Operational Industrial Telemetry and Administrative Account Data.

Section 02

2. Plant Floor Telemetry vs. Personal Data

We draw an absolute distinction between the types of information processed by the RockLyzor platform:

Operational Industrial Telemetry

Includes Modbus registers, PLC memory values, energy meter kilowatt-hour readings, frequency, harmonic distortion, hydraulic pressure, RPMs, and operational machine states.

✓ Retained exclusively on your customer-managed servers or edge devices.

Administrative Account Details

Includes operator usernames, corporate work emails, role permission tiers, plant location labels, and hashed credentials used for platform authentication.

✓ Managed according to international data protection principles.

Section 03

3. On-Premise Sovereignty & Air-Gap Operations

In standard deployment models, RockLyzor operates entirely within your private local area network (LAN) or secure virtual private cloud (VPC). No operational logs or plant floor telemetry stream to RockLyzor corporate servers unless explicitly authorized for remote diagnostics by your network administrator.

Air-Gapped Operational Compatibility

RockLyzor does not mandate periodic online activation or outbound heartbeats for normal supervisory execution. Plant managers can deploy and operate the platform in fully severed, air-gapped industrial demilitarized zones (IDMZ) in compliance with ISA/IEC 62443 standards.

Section 04

4. Security Measures & Role-Based Access Control

RockLyzor implements defense-in-depth security engineering to defend critical production data against unauthorized modification or exfiltration:

  • Transport Security: All web synoptic sessions and internal API communications utilize TLS 1.3 encryption.
  • Role-Based Access Control (RBAC): Strict separation between Operators (view-only), Maintenance Engineers (thresholds & alarms), and Plant Directors (analytics & audit logs).
  • Audit Logging: Every supervisory change, alarm acknowledgement, and user authentication attempt is recorded in an immutable local audit log.
  • Identity Federation: Seamless integration with enterprise Active Directory, LDAP, and SAML 2.0 Identity Providers.

Section 05

5. Data Retention, Historian Policies & Erasure

Because RockLyzor historian databases reside in customer-owned storage:

  • You define your own retention horizons (e.g., 30 days, 1 year, 10 years, or indefinite storage).
  • Downsampling and aggregation routines are configured directly by your industrial engineering staff.
  • Purging or backing up data is carried out within your internal IT disaster recovery workflows.

Section 06

6. Connectors & Industrial Ecosystem Integrations

When you connect RockLyzor to third-party software (such as SAP ERP, Siemens MindSphere, Schneider EcoStruxure, or local CMMS systems), data flow is strictly governed by your selected connector configuration. RockLyzor does not relay communication through unapproved third-party proxies.

Section 07

7. Regulatory Compliance & Enterprise Rights

We adhere to standard regional privacy regulations regarding administrative users (such as GDPR, CCPA, and equivalent regional legislation). Authorized administrators may request access, modification, or erasure of their account records by contacting our data protection team.

Section 08

8. Privacy & Legal Contact

For inquiries regarding data governance, Data Processing Agreements (DPA), or industrial cybersecurity compliance, please contact:

RockLyzor Industrial Data Governance Office

Email: privacy@rocklyzor.com / hello@rocklyzor.com

Location: Tunisia · Global Enterprise Deployments

Submit Legal or Compliance Inquiry

Start with your operation

Ready to See Your Factory Differently?

Discover how RockLyzor can centralize your industrial data and give your team real-time operational visibility.