Security
Slovio protects customer conversations with access controls, workspace separation and audit trails, and holds ISO/IEC 27001 certification and a SOC 2 audit report. Slovio is a product of Crunchy Media Pvt Ltd and a Meta Business Partner. Contact us for documentation to support your security review.
At Slovio, security means your workspace’s conversations, calls and contacts are kept separate from every other customer’s, accessible only to the people you authorise, and encrypted in transit.
Principles
How data flows
Messages and calls arrive over encrypted connections, are stored in your isolated workspace and reach only the people your roles permit.
Channels
Your Slovio workspace
Your team, by role
Compliance
Slovio is ISO/IEC 27001 certified, holds a SOC 2 report and is a Meta Business Partner. Contact us to request documentation for your security review.
Meta Business PartnerWhatsApp Business PlatformYes. Slovio is an ISO 27001 certified messaging platform: it holds ISO/IEC 27001 certification, the international standard for managing information security. The certification covers how Slovio identifies risks to the data it holds and the controls it runs to manage them. If your procurement process needs the certificate, contact the Slovio team at hello@slovio.ai and we will share it for your review.
Yes. Slovio has a SOC 2 audit report, in which an independent auditor assesses its controls for protecting customer data. Slovio is also a Meta Business Partner for the WhatsApp Business Platform. To request the SOC 2 report or a completed security questionnaire for your vendor review, contact the Slovio team at hello@slovio.ai.
Slovio keeps each workspace’s conversations, calls and contacts separate from every other workspace, and uses role-based access control so admins, project admins and agents see and change only what their role allows. Traffic between your browser, the Slovio app, its APIs and channel providers travels over encrypted TLS connections. Encryption at rest: [encryption-at-rest details].
Yes. Slovio records significant changes in a workspace together with who made them and when. Administrators can review this audit trail to understand what changed and investigate unexpected activity. Contact the Slovio team to confirm which plans include the audit trail for your workspace.
The regional options available to you may depend on your plan and organisation. Contact the Slovio team at hello@slovio.ai for details of where your workspace data is stored and to discuss any data residency requirements your organisation has before you sign up.
Yes. A Slovio workspace administrator can delete a contact’s record when that customer asks for their personal data to be erased. As the business that collected the data, you remain responsible for responding to your customers’ requests, and Slovio provides the tools to act on them within your workspace.
Email the Slovio team at hello@slovio.ai with “Security” in the subject line, and describe what you found, where you found it and how to reproduce it. Please do not access, change or delete data that is not yours while investigating, and allow the Slovio team reasonable time to fix the issue before sharing any details publicly.
Speak with our team about your security review, your data and your requirements.