CETRAI

Security Policy

CETRAI's Security Policy details our infrastructure security, data protection measures, access controls, and commitment to keeping your data safe.

CETRAI applies security controls to protect customer conversations, transcripts, integrations, and account data.

  • Encryption
  • Access controls
  • Monitoring
  • Incident response

We take security seriously and follow industry-standard practices to protect your data

Infrastructure

  • Secure Hosting — Hosted on secure cloud providers (AWS, Google Cloud Platform (GCP), Azure); Encrypted at rest (AES-256); Encrypted in transit (TLS 1.2+); Multi-region high availability.

Access Control

  • Authentication & Authorization — Role-based access; Multi-factor authentication; IP allowlisting (optional); Least-privilege principle.

Data Security

  • Data Protection — Transcript and call recording encryption; Automated backups; Secure API access; Strict monitoring and logging.

Operational Security

  • Continuous Monitoring — Regular security audits; Continuous monitoring; Automated threat detection; Incident response procedures.

Third-Party Providers

  • Vendor Security — We only partner with vendors that meet SOC 2, GDPR, or equivalent security standards.

Responsible Disclosure

  • Security Reporting — If you find a vulnerability, email: security@cetdigit.com

Report a Security Issue

If you discover a security vulnerability, please report it responsibly. Email: security@cetdigit.com

Related policies

Our wider security, privacy and compliance commitments are documented across the pages below. Effective date: January 1, 2025.

Related policies

Other CETRAI legal, privacy, and security documents.