Trust Center
Everything your security, privacy, and procurement teams need to say yes: the controls, how we handle data, and every policy in one place.
Built-in controls
Security baked into every workspace
Not an enterprise add-on. These ship with Evoriqa from day one.
Audit trail
Every security and account event is logged: who did what, when, with CSV export.
GDPR export & erasure
Per-workspace data export and right-to-be-forgotten delete, built in.
Data retention
Set a per-workspace window; a daily job auto-purges old conversations and messages.
Secrets encrypted at rest
Channel credentials are AES-GCM encrypted at rest and are not exposed to the model or to client-side code.
Enforced 2FA
TOTP two-factor enrollment and an enforced login challenge. Google sign-in accounts re-authenticate through Google before sensitive actions.
Outbound safety (allow-list)
Outbound agent actions are restricted to destinations you've explicitly allow-listed, with server-side protections on every outbound request.
Tenant isolation
Strict per-workspace tenant isolation across the platform.
Per-answer reasoning traces
Every AI reply keeps an audit trail — the knowledge it drew on, the prompt it ran, the actions it took — dashboard-only and auto-deleted after 90 days.
Signed webhooks
Inbound provider webhooks are signature-verified; outbound webhooks are HMAC-signed.
Public trust center & DPA requests
A crawlable per-brand trust page — certifications with honest status, controls, sub-processors, and the no-training statement — plus a rate-limited Request-a-DPA form routed to the owning agency or to us.
AI-disclosure attestation
Every chat opened with the AI disclosure on, and every voice call, is stamped as disclosed; the compliance CSV counts attested conversations per chatbot.
Your data stays yours
We don't train foundation models on your content. Channel credentials are encrypted at rest and never exposed to the model. Export or delete your data anytime.
- Data export and erasure tooling that supports GDPR requests
- Per-workspace retention windows with daily auto-purge
- Strict per-tenant isolation between customer workspaces
- DPA & subprocessor list available on request
- Regional deployment available by written agreement
Every policy, one click away
Need a DPA, subprocessor list, or security questionnaire completed? Email help@evoriqa.com.