Trust Center

Security, privacy and compliance

What we commit to in writing, what you can ask us for during a security review, and where to watch the service in real time. We would rather this page be narrow and accurate than broad and unverifiable — if something you need is not here, ask, and you will get a straight answer either way.

What we sign

HIPAA Business Associate Agreement

Included at no charge on Pro, AI Suite and Enterprise. If your calls, voicemails, transcripts or messages can contain protected health information, the BAA is signed before the account carries live traffic — it is not an upsell and not a separate SKU.

See what each plan includes ⟶

Compliance evidence packet

A written description of how the service is operated, what data it holds, and where it runs — prepared for your security review rather than as a marketing document. Available to Enterprise accounts and on request during an evaluation.

Request the packet ⟶

Data residency options

Where your call recordings, transcripts and message history are stored can be scoped for Enterprise accounts. Tell us the requirement you are working to and we will tell you plainly whether we can meet it.

Talk to us about residency ⟶

Service status and uptime history

Current status and the incident history behind it are published on our status page, including past incidents and maintenance. It is the same page our own team watches.

What you can ask us for

These are shared during an evaluation or security review rather than published, so that what you receive is current and scoped to what you are actually buying.

Subprocessors

The list of providers involved in delivering the service — carriers, infrastructure and AI processing — is shared under NDA during a security review. Ask for it before you sign, not after.

Request the list ⟶

Architecture and data-flow overview

What is collected, where it travels and who can reach it, described for a reviewer rather than a buyer. Shared alongside the evidence packet.

Request an overview ⟶

Reporting a security issue

If you believe you have found a vulnerability in anything we operate, tell us directly and we will acknowledge it. Please do not test against live customer traffic.

Contact us ⟶

Compliance tooling, free with your account

Our Compliance Evidence Workspace helps you run your own SOC 2, ISO 27001 or HIPAA programme — scoring, an evidence vault and an audit pack you can hand to an assessor. It is free, and it is the same workspace our team uses with customers.