Security & compliance
The certifications
your security review will ask for.
ISO/IEC 27001:2022, ISO/IEC 42001 and SOC 2 Type 2, each audited by an independent third party. Here is what each one covers, and what it lets your team conclude before the first follow-up question.
Certified, patented, enterprise-grade
Years building enterprise software
Engineers, scientists and researchers
Languages, with mid-call switching
Platforms on one private core
US patent on natural voice
Certifications
Our security and AI governance controls
ISO/IEC 27001:2022
The international standard for an information security management system. It requires a formal process for identifying risk, controlling who can access what, and handling an incident, and an independent auditor checks that the process is actually followed, not just documented. For your security team, the questions in a first-round vendor review are already answered before you ask them.
ISO/IEC 42001
The international standard for an AI management system. It governs how we build, monitor and control the AI models running inside the platform, separate from the infrastructure around them. For a buyer putting AI directly into a regulated workflow, this is the certification that covers the model itself.
SOC 2 Type 2
SOC 2 Type 2 tests our controls over an extended period, not on a single day. An independent auditor observes how our security, availability and confidentiality controls actually operate across that window. For procurement, a Type 2 report answers what a point-in-time audit cannot: whether the controls held up in practice.
Security review
Have a security questionnaire to complete?
Send it to our team directly and we will work through it with you.
