3Dresyns policy about videoconferencing
Cloud-based videoconferencing services such as Microsoft Teams, Zoom and Google Meet are widely used for professional collaboration. However, their use may introduce additional confidentiality, access-control, data-processing and information-sharing risks depending on platform configuration, user practices, integrations and the nature of the information exchanged.
For this reason, 3Dresyns does not use cloud-based videoconferencing platforms for customer communications involving technical, commercial, confidential or potentially proprietary information. Written correspondence is preferred because it provides a clearer and more controlled record of the information exchanged and helps reduce unnecessary disclosure of sensitive information.
Relevant considerations associated with cloud-based videoconferencing and collaboration platforms may include:
Data Leakage & Unauthorized Sharing
- Information may be accidentally shared with unintended participants, external parties or unauthorized users.
- Guest access and external collaboration settings may increase the risk of unintended disclosure if they are not properly configured.
- Files, recordings, transcripts and other meeting-related information may be stored or processed through connected cloud services.
Phishing & Social Engineering
- Chat messages, meeting invitations, links and shared files may be used as vectors for phishing or other social-engineering attacks.
- Attackers may attempt to impersonate legitimate participants or organizations.
Account & Access Security
- Compromised credentials or insufficient access controls may allow unauthorized access to accounts, meetings or shared information.
- Session compromise and other account-security incidents may expose information accessible through the affected account.
Malicious Content
- Links and files exchanged through collaboration platforms may contain malicious content.
- A compromised user account may be used to distribute malicious links or files to other participants.
Data Processing, Retention & Compliance
- Meeting metadata, recordings, transcripts, chat messages and shared files may be stored or processed by cloud infrastructure and associated service providers.
- Retention, deletion, access and data-location settings must be appropriately managed where confidential, personal or regulated information is involved.
- Applicable data-protection and confidentiality requirements must be considered when selecting and configuring communication tools.
Third-Party Integrations
- Connected applications and integrations may introduce additional access permissions and data-processing relationships.
- Excessive permissions or poorly controlled integrations may increase the exposure of confidential information.
Meeting Access & Participant Control
- Improperly configured meeting permissions may allow unauthorized participants to access a meeting.
- Screen sharing, recording, transcription and participant permissions may create additional disclosure risks if they are not appropriately controlled.
Human & Insider Risk
- Authorized users may intentionally or accidentally disclose confidential information.
- Screen sharing, recordings, screenshots, copied messages and downloaded files may facilitate unintended distribution of information beyond the original communication.
3Dresyns Communication Policy
3Dresyns therefore prioritizes written communication for technical, commercial and confidential exchanges with customers and third parties. This approach supports traceability, controlled disclosure and a documented record of the information exchanged.
Where confidential, proprietary, formulation-related, intellectual-property-related or trade-secret information is involved, the applicable confidentiality and non-disclosure requirements of 3Dresyns remain applicable regardless of the communication channel used.