Frequently asked questions
Call recordings and AI data, such as call transcripts are stored in Germany, EU. Other data maybe processed and stored in secure Amazon AWS data centres, located in four AWS regions: Frankfurt (eu-central-1), Northern Virginia (us-east-1), Singapore (ap-southeast-1), and Sydney (ap-southeast-2). Leveraging multiple AWS regions enhances our disaster recovery capabilities, also ensuring high availability and low call latency.
Yes, some data is transferred to partners outside the EU, but always under GDPR-compliant safeguards (see below). You can view the list of our sub-processors and their location here.
Yes. GDPR allows international data transfers if appropriate safeguards are in place. CloudTalk ensures all such safeguards are met. We have entered into Data Processing Agreements (DPAs) that incorporate Standard Contractual Clauses (SCCs) with each sub-processor. Additionally, we have conducted a Transfer Impact Assessment (TIA) for all non-EEA data transfers, as per GDPR requirements. Every sub-processors is assessed to ensure their technical and organisational measures are compliant with GDPR and international standards such as SOC 2 and ISO 27001. The TIA and other relevant documentation is available at trust.cloudtalk.io.
We describe the categories, purpose and legal basis for processing your data at cloudtalk.io/privacy-notice.
Yes, our DPA is available at cloudtalk.io/dpa and forms an inseparable part of our standard service agreement.
Yes. We work with carefully selected sub-processors who meet GDPR standards. You can find the full list at cloudtalk.io/sub-processors.
We have entered into Data Processing Agreements (DPAs) that incorporate Standard Contractual Clauses (SCCs) with each sub-processor. Additionally, we have conducted a Transfer Impact Assessment (TIA) for all non-EEA data transfers, as per GDPR requirements. Every sub-processors is assessed to ensure their technical and organisational measures are compliant with GDPR and international standards such as SOC 2 and ISO 27001. You can find all supporting documentation at trust.cloudtalk.io.
We implement strict security measures including encryption, access controls, and regular audits, in line with our ISO 27001 certification and SOC 2 audit. All measures are described in our Security Whitepaper.
Yes. You can contact our dpo at privacy@cloudtalk.io.
You can contact us at privacy@cloudtalk.io to request data access, correction, deletion, or portability.
Still have questions?
Can’t find the answer you’re looking for? Please chat to our friendly team.
Get in touch