Data residency
All customer voice data — recordings, transcripts, analysis results — is stored and processed in EU data centers by default. No transfer to third countries unless explicitly configured and contracted.
On-premise deployment
For teams that require it (regulated finance, defense, sensitive public sector), a full on-premise deployment installs InOro's stack in your own datacenter. Audio, transcripts and results never touch our infrastructure. Same features, same UX, deployed and updated per your change process.
Access controls
- Single sign-on via SAML 2.0; OpenID Connect on request.
- Role-based access per team, campaign, agent group.
- Fine-grained permissions — who can listen, who can score, who can export.
- Audit trail of every access, query and export.
Anonymization
Sensitive data — national IDs, card numbers, sector-specific PII — is masked automatically in transcripts and analytics views. Original audio is preserved with retention rules you define.
Model governance
Your recordings and transcripts are never used to train or fine-tune models without written consent. Any model updates that would benefit from your data require an opt-in DPA amendment.
Certifications and audits
InOro operates under ISO 27001-aligned practices. Formal certifications on our roadmap — request the current status under NDA.
Vendor DPA
Data processing agreements are available on request as processor. For BPO deployments, sub-processor arrangements per end client are supported.