Security Policy
CETRAI's Security Policy details our infrastructure security, data protection measures, access controls, and commitment to keeping your data safe.
CETRAI applies security controls to protect customer conversations, transcripts, integrations, and account data.
- Encryption
- Access controls
- Monitoring
- Incident response
We take security seriously and follow industry-standard practices to protect your data
Infrastructure
- Secure Hosting — Hosted on secure cloud providers (AWS, Google Cloud Platform (GCP), Azure); Encrypted at rest (AES-256); Encrypted in transit (TLS 1.2+); Multi-region high availability.
Access Control
- Authentication & Authorization — Role-based access; Multi-factor authentication; IP allowlisting (optional); Least-privilege principle.
Data Security
- Data Protection — Transcript and call recording encryption; Automated backups; Secure API access; Strict monitoring and logging.
Operational Security
- Continuous Monitoring — Regular security audits; Continuous monitoring; Automated threat detection; Incident response procedures.
Third-Party Providers
- Vendor Security — We only partner with vendors that meet SOC 2, GDPR, or equivalent security standards.
Responsible Disclosure
- Security Reporting — If you find a vulnerability, email: security@cetdigit.com
Report a Security Issue
If you discover a security vulnerability, please report it responsibly. Email: security@cetdigit.com
Related policies
Our wider security, privacy and compliance commitments are documented across the pages below. Effective date: January 1, 2025.
Related policies
Other CETRAI legal, privacy, and security documents.