Sources: staff at Verkada, a facial recognition and security camera startup, abused the company's own surveillance cameras to monitor and harass women coworkers
Context & Ripple Effects
This VICE report is the earliest thread in what became a year-long unraveling of Verkada's governance story. It documented insiders abusing the company's own cameras against women coworkers, months before hackers claimed access to feeds from 150,000 cameras inside clinics, jails, and police precincts, and before former employees described super admin accounts that let 100+ staff view customer camera feeds.
The pattern has a precedent in the space: Clearview AI's facial recognition app was "tested" for over a year by investors, clients, and friends before public scrutiny — insider misuse of surveillance tooling as a cultural default, not an anomaly. Verkada's later "bro culture" and data-protection reporting tied the workplace allegations and the security lapses into a single narrative, all while the company raised $205M at a $3.2B valuation.
First-order effects
- Verkada's women employees are the direct victims, and the company faces immediate reputational damage to its core sales pitch — that its cloud camera platform is trustworthy — while raising capital at a $3.2B valuation from Linse Capital.
- Verkada's enterprise customers, spanning sensitive sites like schools and police facilities per the later breach coverage, now have documented evidence that insider access to their feeds was a live risk, not a hypothetical.
Second-order effects
- Buyers of cloud surveillance are pushed to demand audit trails, access logging, and least-privilege controls as contract terms, shifting procurement weight toward vendors who can prove internal governance.
- Rivals in enterprise video security gain a differentiation wedge: the super admin access disclosures mean 'who inside the vendor can see my footage' becomes a competitive question, not just 'is the platform hackable.'
Third-order effects
- If insider misuse keeps surfacing — Verkada's super admin accounts, Clearview's internal "testing" — surveillance vendors face the same accountability pressure externally hacked companies do, with customers and regulators treating internal access abuse as a governance failure rather than an HR matter.
- The pattern points toward structural separation in the industry between companies that build surveillance tooling and companies trusted to operate it, as institutional buyers demand third-party oversight of who can view feeds.
The trend: Cloud surveillance vendors are discovering that their fastest-growing risk is not external hacking but uncontrolled internal access, turning employee-visibility practices into a due-diligence issue for enterprise buyers.