Paste your camera list. See the privacy laws at every camera.
CCTV Privacy Law Mapper reads your camera list line by line and maps the CCTV privacy laws that apply at each site. Paste your camera list, one line per camera: site, what it covers, the analytics switched on, audio, where the footage is kept and for how long. Every camera comes back with the privacy and surveillance laws that apply at its site, each clause cited: which need an assessment, signage, a shorter retention period, a written release or processor terms, and which analytics a workplace may not run at all.
- Paste a list, never a connection. One line per camera, or per group of identical cameras, from the spreadsheet your security team keeps. Nothing connects to your cameras or your recorder, and nothing leaves your browser until you save.
- No floor plans, no footage, no camera positions. Site names can be your own codes; the country or state is what the laws key on.
- Every line shows the clause behind it and the date we last read that law. Laws we do not hold in full are named, not quoted, and the page says so.
- It never rules on a camera. Every finding is a question for your privacy lead or your lawyer, with the clause to open.
36 cameras across 7 sites, 5 running face matching or behaviour alerts, 11 with no assessment recorded.
14 of 14 findings raised, 36 of 36 cameras placed in a jurisdiction, 35 of 36 coverage types read.

Paste the list as your team keeps it
One camera, or one group of identical cameras, per row: camera | site | country or state | covers at least, or a header row with any of count, analytics, audio, stored at, storage country, retention days, signage, assessment done, who can view, owner, lawful basis, processor terms, disclosures logged and notes. The column names recorder and VMS exports use are read too.
Read the schedule site by site
Each site is a sheet: its jurisdiction, the laws placed there and why, the laws named but not quoted, and the date we last read them. Under it every camera sits on one line with what it covers, what it runs, how long it keeps footage and the numbered findings it raises.
Take the questions to the right person
Fourteen findings in a fixed order, from face matching to disclosures to the police, each naming its cameras, the clause from GDPR, UK GDPR, the EU AI Act, BIPA, the CCPA, the APPs or ISO/IEC 27001, and the question to put to your privacy lead or your lawyer. The review sheet is where you record what you decided.
Why a list, and not a connection to the cameras
The question a regulator, a claimant's lawyer or a works council asks first is not about pixels. It is: which cameras do you run, where, over whom, with what analytics switched on, kept for how long, and which law says what about each. The answer sits in the camera list your security or facilities team already keeps. That is what this reads, in your browser, site by site, against the law of the place each camera stands in.