Privacy by design

Visibility into work devices — without becoming what your employees fear.

Custelis gives consulting, accounting, and audit firms activity monitoring, endpoint security, and data loss prevention on company-managed devices — transparent to every employee, gated behind a real compliance review, never covert.

No credit card to start. Intrusive features stay off until your own DPIA is recorded.

Custelis is not covert spyware, and we've built it so it can't be run that way. No keylogging, no password or credential capture, no webcam or microphone access, no personal-device monitoring, no hiding the agent from the people it monitors. Every employee sees a tray icon, a monitoring notice, and a self-service portal showing exactly what's collected about them.

The platform

Everything a professional services firm needs to protect client data

Built around one job: keep client identities, financial records, and payroll information inside the firm — without turning management into surveillance.

Activity & attendance

Login/logout, idle vs. active time, application and website sessions — rolled into one timeline per employee, scoped by role.

Data loss prevention

USB, file transfer, email, and cloud-storage rules engine (who / what / where / when), warn-or-block enforcement, full audit trail on every decision.

Screenshots, policy-gated

Off by default. When enabled: active-only, capped frequency, exclusion zones, encrypted storage, and every access to a screenshot is itself logged.

Client-data protection

A client registry with per-employee access assignments, access-history logging, and an approval workflow before any bulk export.

Explainable risk & alerts

Behavioral baselines surface "unusual activity" — never automated accusations — with a human always in the loop before any action is taken.

Fair productivity reporting

Role-aware, active-vs-idle aware reporting designed against being read as a leaderboard — with a documented misclassification-override path.

Endpoint & browser

A monitored device that tells you it's monitored

The Windows agent and managed browser companion run on company-owned, company-managed devices only — installed by IT, never hidden, always visible to the person using the machine.

  • Tray app + monitoring notice + acknowledgement flow before anything intrusive activates
  • Self-service transparency portal — every employee can see what's collected about them
  • Staged rollout: IT test devices → pilot group → department → organization, never a silent big-bang
  • Signed, staged agent updates with automatic rollback on failure

Never implemented, by design

  • Keylogging or full keyboard capture
  • Password, credential, cookie, or auth-token capture
  • Webcam or microphone recording
  • Personal or BYOD device monitoring
  • Stealth installation designed to hide monitoring
  • Recording outside a configured monitoring window
Compliance-first

Nothing intrusive turns on without your own review

Every workspace records its own lawful basis and jurisdiction before screenshots, website tracking, or DLP enforcement can be enabled. Custelis doesn't hard-code legal conclusions — your compliance team does.

India DPDP GDPR / UK GDPR UAE US state laws Works councils

Set up your workspace in minutes

Branding, admin MFA, and a compliance attestation — then invite your team.

Create a workspace →