CallPad Security Overview

At CallPad, safeguarding your data is a top priority. We follow industry-standard practices to ensure your business and customer information is kept secure, private, and only used for its intended purpose.

Data Storage & Encryption:

API Keys: Stored using SHA-256 encryption on a per-business basis.

Identifying Information: Encrypted with SHA-256 and stored securely in AWS data centres in Stockholm, Sweden (EU jurisdiction).

Customer Data: Only used for essential business functions (e.g., call handling, bookings, message delivery).Infrastructure & HostingHosted on Amazon Web Services (AWS), benefiting from enterprise-grade physical and network security.Access is strictly controlled through role-based authentication and logging.

Security Practices:

Data in transit is encrypted using HTTPS/TLS.

Access controls ensure only authorised staff can access sensitive systems.

Monitoring & alerts are in place for suspicious activity.

Regular reviews of sub-processors and integrations to ensure compliance.Data Privacy & Compliance

We operate under GDPR/UK GDPR requirements.

All sub-processors are vetted and bound by equivalent security and privacy obligations.

Clients remain in control of their data, with the right to request access, deletion, or portability at any time.