Security
Your account sees your lines
This page describes how the product is built. It is not a certification, and it is not a SOC 2 report.
Who can see a call
An account admin sees the lines on that account. A teammate sees a line only after they are assigned to it. Another customer’s account is a different account. Signing up does not show you anyone else’s calls, messages, or voicemails.
Sign-in
The website uses a session cookie. The phone app uses a bearer token tied to that same login. Changing the password invalidates the phone token. Passwords are stored as a digest, not as the password you typed.
Calls and payment
Voice runs through Twilio. Card payment runs through Stripe. Android ringing uses a push credential on that line’s own phone account. You do not get a form for those credentials. They are not yours to paste in.
If billing stops
Outbound calling pauses. Recordings and history are not wiped because a payment failed. Closing a browser tab drops that tab’s registration so the line is not left looking busy.
To report a security problem, use the contact form and say it is a security report.