Data isolation
Row-level authorization checks separate customer data at the database layer.
Identity, data, and AI flows are designed together, with a clear access boundary at every layer.
Row-level authorization checks separate customer data at the database layer.
The primary application runtime and data layer run in the Frankfurt region.
Multi-factor authentication protects administrative access to production services.
For customer-specific voice profiles, participant audio may be processed in a private or local STT layer; data sent to external speech providers can be restricted.
The primary application runtime and data layer run in the Frankfurt region. AI, voice, and infrastructure providers are used only for data required for the relevant function.
EVRE can be configured across different data and infrastructure boundaries, from standard cloud to customer-controlled infrastructure.
Managed EVRE infrastructure
The primary application runtime and data layer run in the Frankfurt region.
AI, voice, and infrastructure providers are used only for data required for the relevant function.
Enterprise use with additional data boundaries
Private speech processing, regional services, customer-specific provider routing, and additional data minimisation may be applied according to deployment requirements.
Provider and data boundaries are configured for the relevant customer and service scope.
Customer-controlled infrastructure
The application and selected AI, speech, and data components can be configured to run in customer-controlled cloud, private infrastructure, or on-premises environments.
Component scope is defined in the technical design and customer agreement.
Each deployment's data location, provider boundary, and customer-controlled components are defined by its technical and contractual scope.
Access, application, data, and provider layers are protected by independent controls.
Workspace membership, role, ownership, and row-level authorization checks restrict access to customer records.
Authenticated sessions, role-based permissions, and server-side privileged credentials limit access to protected functions.
Encrypted transport, origin validation, browser security policies, and server-side request controls reduce the exposed attack surface.
Data sent to external AI and voice services is limited by purpose, data type, deployment profile, and server-side routing policies.
Encryption controls are used for data in transit and at rest across application and infrastructure layers. Application keys and provider credentials are kept outside the browser.
Regular restore points support service recovery and business continuity procedures.
Service providers are assessed according to their role, data access, processing location, security terms, and contractual obligations.
Suspected vulnerabilities can be reported through the published security contact for coordinated review and remediation.
Public disclosures, contractual documents, and technical security materials are separated according to their purpose.
Access public notices directly, or contact us to review the DPA, subprocessor information, data flows, and customer-specific technical scope.
For vulnerability disclosure, do not access personal data or disrupt production services.