Ready for businesses that also handle health records and card data
Operon runs in regulated environments by default, not as an enterprise upsell. This page is the summary. The full documentation, reports, and subprocessor list are one email away.
What is actually in place
SOC 2 Type II
Audited annually by an independent firm across security, availability, and confidentiality. Report available under NDA within one business day of request.
HIPAA
BAA signed on every healthcare deployment. PHI encrypted in transit and at rest, with field-level redaction policy applied to transcripts and derived data.
PCI DSS 4.0
Card data is captured through a tokenized processor path and never enters a transcript, a log, or a model prompt. Our scope is documented and audited.
Zero-retention inference
On Enterprise, model traffic routes through a path where no provider persists any prompt or completion. Nothing is available for provider training under any plan.
Data residency
Regional processing and storage in the US or EU, selected per tenant. Cross-region transfer is disabled unless you explicitly enable it.
AI disclosure and consent
Disclosure and recording consent applied per jurisdiction based on the caller's number and your location, defaulting to the strictest applicable standard.
Retention you control
Set retention per data class, from indefinite down to zero. Deletion is honored across primary storage, backups, and analytics within the documented window.
Access control
SSO through SAML or OIDC, SCIM provisioning, granular role permissions, and an immutable audit log of every access and configuration change.
Your conversations are not our training data
This is the question every operator asks, so here is the plain answer. We do not train on your data, we do not allow providers to train on it, and there is no plan tier where that changes.
- No model training on customer conversations, ever, on any plan
- Zero-retention inference path available on Enterprise
- Encryption in transit with TLS 1.3 and at rest with AES-256
- Field-level redaction for PHI and PCI before storage
- Immutable audit log of every access and configuration change
- Full export and hard deletion available on request at any time
What security teams ask us
If your reviewer needs something not covered here, we will answer it directly rather than pointing at a portal.
No. Your conversations are never used to train any model, ours or a provider's, on any plan. There is no opt-in toggle that changes this, because it is not something we offer.
Yes, under NDA. Email security@operon.ai and you will have it within one business day, along with our latest penetration test summary and our subprocessor list.
In the region you choose, US or EU, on infrastructure we operate in a dedicated logical tenant. We publish our subprocessor list and notify you 30 days before it changes.
They follow your retention policy, which you set per data class. Enterprise customers commonly run zero retention on audio with structured outcomes kept for reporting.
Send it to security@operon.ai. We acknowledge within 24 hours, trigage within 72, and we run a paid disclosure program with no legal action against good-faith researchers.
99.9% on Growth and 99.99% on Enterprise, both with financial remedy. Our public status page shows per-region history, and the voice path has carried 99.99% over the trailing twelve months.
