LEGAL
Security & Sub-processors
Last updated: 6 July 2026
Infrastructure
Encryption & access
- Traffic between your browser and SvaraCall AI is encrypted in transit (TLS 1.2+).
- Authentication sessions are signed and HTTP-only; passwords are hashed with modern algorithms.
- Payment card data is handled by Razorpay; SvaraCall AI does not store full card numbers.
- Internal admin actions on customer data are logged and reviewed.
Sub-processors
We use carefully vetted providers to deliver voice, language, and payment capabilities. The table below summarises categories — vendor names may change as we upgrade providers.
| Category | What they process |
|---|---|
| Authentication | Account sign-in, session tokens |
| Payments | Billing, invoices, card processing |
| Telephony | SIP trunks, call routing, CDR |
| Speech-to-text / text-to-speech | Call audio transcription and synthesis |
| Language models | Real-time conversation reasoning |
| Storage | Recordings, exports, backups |
Questions about sub-processors: SvaraCall AIsys@gmail.com
Reliability & failover
Call recordings
When enabled, recordings are stored encrypted at rest with access restricted to authorised account roles. Retention follows your account settings and our Privacy Policy.
Incident response
We maintain an incident-response runbook. If we confirm unauthorised access to personal data, we will notify affected account holders within 72 hours of confirmation where required by law, and coordinate with you regarding end-caller notification.
Reporting a vulnerability
If you discover a security issue, please report it responsibly to SvaraCall AIsys@gmail.com. Include steps to reproduce and avoid public disclosure until we acknowledge receipt.