Security
Built for secure business communication
Designed with security and privacy controls suitable for business operations. We do not claim certifications we have not obtained.
Role-based access
Every teammate gets exactly the access their role requires — no more, no less.
Encrypted connections
Data in transit is encrypted between AI Workforce and every connected channel.
Secure credential storage
Integration credentials are stored using encrypted secrets management.
Audit logs
Every AI action and human action is recorded with full context.
Organization-level data separation
Every record is scoped to a single organization — no cross-tenant access.
Consent management
Consent is tracked per contact, per channel, with a full history.
Opt-out enforcement
Opt-outs are enforced automatically across every automated message.
Data retention settings
Configure how long conversation and call data is retained.
Webhook verification
Inbound webhooks are signature-verified before being processed.
Two-factor authentication
Account-level 2FA support to protect team access.
Human approval controls
High-risk actions require a human to approve before they execute.
Restricted-action policies
Define exactly which actions the AI is and isn't allowed to take.
AI Guardrails
Every AI response passes through validation
Structured output validation, permission checks, and risk scoring run before any AI-generated action is executed.
- Verify the external webhook signature
- Identify the organization and load approved knowledge only
- Send controlled context to the AI model
- Validate the structured response against a strict schema
- Check permissions and risk level before executing any tool
- Log the action to the audit trail
- Escalate to a human when required