Security you can trust
We take the security of your business data seriously. Here's how we protect it.
Our data pledge
- Your business data, call transcripts, and customer interactions are never used to train or fine-tune any AI models.
- You can export or delete your data at any time by contacting [email protected].
How we protect your data
Encryption in transit
All data transmitted between your browser and our servers is encrypted using TLS 1.2+. Your calls and data are never exposed over plain HTTP.
Encrypted at rest
Your data is stored in Railway-managed databases with encryption at rest enabled. We never store sensitive credentials or raw payment card data.
Access controls
Role-based access controls limit what each user can see and do. Admin accounts are protected by multi-factor authentication (MFA) via TOTP.
Audit logging
All admin actions are logged via Django's built-in audit system. Account events — including logins and changes — are logged with timestamps and IP addresses.
Infrastructure observability
Logs, metrics, and deployment history are managed on Railway. Automated alerting via Sentry catches and reports application errors in real time.
Vendor management
We maintain a list of all subprocessors that handle your data. Each vendor is evaluated for security practices before onboarding.
Subprocessors
We work with third-party service providers in the following categories to operate ReadyToTalk:
- Voice AI provider
- Communications provider
- Payment processor
- Cloud infrastructure provider
- Analytics provider
- Search and mapping services
Certifications
We are working toward the following certifications. These are in progress and not yet complete.
Policies
- Privacy Policy — how we collect, use, and protect your personal data
- Terms of Service — the rules governing use of ReadyToTalk
Contact
Security questions or concerns? Email us at [email protected].