Security & Compliance

GDPR-native. EU AI Act ready.

Built in Europe from day one. SOC 2 Type II & ISO 27001 (in progress) · HDS-hosted. No model training on customer audio. Sovereign deployment option for regulated industries.

CertificationsGDPR-nativeSOC 2 Type II (in progress)ISO 27001 (in progress)HDS-hosted
Capabilities

Compliance built in, not bolted on.

GDPR-native by design

Data residency is enforced at the infrastructure level, not by a privacy policy. Audio and transcripts stay in the EU region you choose. No cross-border transfers without explicit configuration.

EU AI Act ready

Voxist ASR, TTS, and MT are designed to meet the EU AI Act's obligations for high-risk AI systems, including transparency, accuracy monitoring, and human oversight hooks.

SOC 2 Type II & ISO 27001 (in progress)

Voxist's security program is built to the SOC 2 Type II and ISO 27001 frameworks; formal certification is in progress. Security documentation available on request under NDA.

HDS-hosted

Customer health data is hosted on HDS-certified infrastructure (Hébergeur de Données de Santé) in France, on Voxist Private Cloud or on-premise. Audio and personal data stay inside your controlled perimeter.

Security posture

The same API, the security profile you need.

GDPR-nativeEU AI Act readySOC 2 Type II (in progress)ISO 27001 (in progress)HDS-hostedSecNumCloud roadmapNo training on customer audioOn-premise optionAir-gapped option

No customer audio is used for model training, ever, on any plan. On-premise and private cloud deployments give you full control of your encryption keys and audit logs.