New: AI Receptionist now supports appointment booking and live call transfer. Learn more
Security

Built for secure business communication

Designed with security and privacy controls suitable for business operations. We do not claim certifications we have not obtained.

Role-based access

Every teammate gets exactly the access their role requires — no more, no less.

Encrypted connections

Data in transit is encrypted between AI Workforce and every connected channel.

Secure credential storage

Integration credentials are stored using encrypted secrets management.

Audit logs

Every AI action and human action is recorded with full context.

Organization-level data separation

Every record is scoped to a single organization — no cross-tenant access.

Consent management

Consent is tracked per contact, per channel, with a full history.

Opt-out enforcement

Opt-outs are enforced automatically across every automated message.

Data retention settings

Configure how long conversation and call data is retained.

Webhook verification

Inbound webhooks are signature-verified before being processed.

Two-factor authentication

Account-level 2FA support to protect team access.

Human approval controls

High-risk actions require a human to approve before they execute.

Restricted-action policies

Define exactly which actions the AI is and isn't allowed to take.
AI Guardrails

Every AI response passes through validation

Structured output validation, permission checks, and risk scoring run before any AI-generated action is executed.

  1. Verify the external webhook signature
  2. Identify the organization and load approved knowledge only
  3. Send controlled context to the AI model
  4. Validate the structured response against a strict schema
  5. Check permissions and risk level before executing any tool
  6. Log the action to the audit trail
  7. Escalate to a human when required

Questions about security or compliance?