telvox

Financial Services

Every change logged.Every call accounted for.

An append-only audit trail of who changed what, when and from where, with AES-256-GCM encryption, least-privilege roles and SSRF-safe integrations. Controls engineered to SOC 2 Type II and ISO 27001; certification in progress.

Audit trail on every writeWho · what · when · whereAES-256-GCMSOC 2-alignedISO 27001-alignedSSRF-safe egress

Audit Trail

who · what · when · where

append only
RK

Rosa Keller

acct ••2048

recording on

recorded under policy · encrypted at rest

stamped with actor, IP and user-agent

every change logged, nothing overwritten

Illustrative panel · sample entries

The audit trail

Watch every call write its own record

A call runs from your agent to the customer, and every event on the line drops a stamped entry into the ledger: dial, connect, disposition. Each row lands append-only, sealed with the actor, IP and user-agent. This is what your auditors will read.

telvoxaudit trailAppend-only · every write
DIALCONNECTDISPOSITIONAUDIT LEDGER · APPEND-ONLY001call.dialactor · ip · user-agent002call.connectrec=aes-256-gcm003call.dispositionsaved · pii redacted004AGENT · RBACCUSTOMERSEALED ON WRITEWHO · WHAT · WHEN · WHERE

Every event on the call line lands in the ledger as an append-only entry, stamped with the actor, IP and user-agent, then sealed. Nothing material happens without a record.

Audit trail by default

Accountability, built into every action

The controls a regulator or internal-audit team asks for, engineered in rather than added under deadline.

customers.phone•••2841•••2048

u.becker · 84.112.•.• · Chrome/126 · 10:42:07

appended · sensitive fields redacted

Append-only audit trail

Every sensitive write is logged with the actor, IP and user-agent, and phone, email, name and secrets are redacted in the log itself. Nothing material happens without a record.

user: a.royaction: updatetable: leads
12entries

Audit-trail report

Who changed what, when and from where. Filterable by user, action, table and date range, and exportable for review and reconciliation.

recording_0142.opus
SIP credential
AES-256-GCM · TLS in transit

Encryption everywhere

AES-256-GCM envelope encryption for recordings and every stored secret (SIP, TOTP, integration credentials), TLS in transit, and env-only key management.

role · Supervisorcalls.listenleads.exportreports.view
482 019TOTP · single session

Roles, permissions & 2FA

Seven system roles and 50+ granular permissions with custom roles, TOTP 2FA, single-session enforcement and account lockout. Least-privilege by default.

Org Aquerynot found
Org B

Strict tenant isolation

Every query is org-scoped at the data layer. A cross-organisation request returns “not found,” never a leak. Isolation by default, not by convention.

hooks.yourcrm.comallow-listed
169.254.169.254blocked
per-org egress allow-list · every request gated

SSRF-safe integrations

Wire TelVox into your core systems with lifecycle webhooks and an outbound API catalog, with every outbound request gated by a per-org egress allow-list.

Illustrative panels · sample values

Agrobhumi Agritech logo

Proof from a live floor

Agrobhumi Agritech is not a financial services firm. They sell to farmers across India. What they do run is the engine on this page: predictive dialing, recorded and auditable calls, and rechurn bringing back the ones who did not answer. Six agents, more than 17,000 calls in the last 30 days.

Their story

Questions

Financial services, answered

Straight answers on the audit trail, certification status, encryption and hosting.

Every sensitive write is recorded append-only with the actor, IP address and user-agent, and the audit-trail report lets you filter by user, action, table and date. That is the who-changed-what-when-from-where record auditors and regulators expect. Sensitive fields are redacted in the log itself.

See the record

Bring internal audit to the demo

We’ll walk the audit trail, the change-management report and the access model end to end.