Security
Security was a requirement, not an afterthought.
ActiveLens was built alongside design partners in financial services and the public sector, whose standards set the bar before the product went to market.

SOC 2 Type 2
Covers the security, availability, confidentiality and privacy criteria. Report issued by an independent auditor.
HIPAA
Controls examined against the HIPAA Security Rule as part of the same audit. HIPAA support available on Enterprise.
GDPR
Rigorous data protection and privacy standards in line with European regulations.
SOC 2 Type 2
ActiveLens Ltd has completed a SOC 2 Type 2 examination covering the security, availability, confidentiality and privacy trust services criteria, with the report issued by an independent auditor. Every product requirement for the audit was built into the platform rather than bolted on afterward.
Single sign-on
SSO available on Enterprise, so access follows the identity provider your organization already administers.
Data-retention controls
Configure how long transcripts, summaries, and recordings are retained, to match your own policy and regulatory obligations.
HIPAA support
The same examination assessed our controls against certain applicable administrative, physical and technical safeguards of the HIPAA Security Rule (45 CFR Part 164, Subpart C). HIPAA support is available on the Enterprise plan — talk to us about your specific obligations.
Access control
Role and permission controls determine who can see which conversations, with sharing by user or by team.
Encryption
Conversation data is encrypted in transit and at rest.
Recording consent is your responsibility
Call-recording law differs by jurisdiction. Some countries and some US states require the consent of every party to a call, and some sectors carry additional obligations. You are responsible for obtaining the consent required where you and the people you speak with are located, and for complying with applicable law. ActiveLens is designed for businesses recording their own conversations with appropriate disclosure. It is not a tool for recording people without their knowledge.
Report a vulnerability: security@activelens.ai
Talk to us about your requirements.
Tell us about your environment, your compliance obligations, and how your teams use the phone. We will tell you honestly whether we are a fit.