Security & compliance

Your data, your permissions and AI with safeguards.

Everyone sees only what you give them, every action is logged and the AI works with the minimum data.

Access

Explicit permissions, no opaque roles

One owner per account and module-by-module permissions for everyone else, with shortcuts when inviting: All, Sales, Support or None. Passwords set only via link, two-step verification you can make mandatory and recovery codes.

  • Permissions per module
  • Mandatory 2FA with recovery codes
  • Open sessions in plain sight

Activity

Everything is logged

The account’s activity log shows who did what and when, with CSV export. Agent approvals run with the approver’s permissions, and each account is isolated at database level.

  • Exportable activity log
  • Account isolation on every table
  • AI actions with a person’s permissions

Responsible AI

AI with European safeguards

AI notice on every channel, names and personal data pseudonymised in every AI request and health data always kept out. Your data isn’t used to train models, and the AI only changes with what you approve.

  • AI notice (EU AI Act)
  • Pseudonymisation in every request
  • Full deletion on request (GDPR)

AI built in

Documentation

  • Privacy policy under GDPR, Spanish LOPDGDD and LSSI.
  • AI use disclosure under Regulation (EU) 2024/1689.
  • Processors and transfers detailed in the privacy policy.

Frequently asked questions

Where is my data stored?

The platform is hosted in a data centre in the European Union, with each account isolated at database level. The providers involved (for example, the AI model provider) and their safeguards are detailed in the privacy policy.

Is my data used to train the AI?

No. The AI isn’t retrained on your data: it only improves with the knowledge and lessons you approve inside your account.

Try it with your team

14 days free, no card. We activate your account within one business day.

Security, privacy and compliance · ConverFlow