At CallPad, safeguarding your data is a top priority. We follow industry-standard practices to ensure your business and customer information is kept secure, private, and only used for its intended purpose.
Data Storage & Encryption:
API Keys: Stored using SHA-256 encryption on a per-business basis.
Identifying Information: Encrypted with SHA-256 and stored securely in AWS data centres in Stockholm, Sweden (EU jurisdiction).
Customer Data: Only used for essential business functions (e.g., call handling, bookings, message delivery).Infrastructure & HostingHosted on Amazon Web Services (AWS), benefiting from enterprise-grade physical and network security.Access is strictly controlled through role-based authentication and logging.
Security Practices:
Data in transit is encrypted using HTTPS/TLS.
Access controls ensure only authorised staff can access sensitive systems.
Monitoring & alerts are in place for suspicious activity.
Regular reviews of sub-processors and integrations to ensure compliance.Data Privacy & Compliance
We operate under GDPR/UK GDPR requirements.
All sub-processors are vetted and bound by equivalent security and privacy obligations.
Clients remain in control of their data, with the right to request access, deletion, or portability at any time.