SOC 2 compliance
TravoPilot maintains SOC 2 compliance. Our controls cover security, availability and confidentiality across every part of the platform — from how we build software to how we manage access and respond to incidents.
Data isolation
Every TravoPilot customer is a separate tenant. Your data — conversations, bookings, traveller profiles, analytics — is isolated from every other customer’s data at the database, application and storage layer. There is no shared database that could expose your data to another customer.
Encryption
All data is encrypted in transit and at rest:
- In transit: TLS 1.2 minimum (TLS 1.3 preferred) for all API requests, webhooks and web traffic.
- At rest: AES-256 for stored data, including conversation logs, customer records and configuration.
- Credentials: All service credentials (API keys, SMTP passwords, etc.) are encrypted using AES-256-GCM before being written to storage. The encryption key is unique per deployment.
Access control
TravoPilot implements role-based access control (RBAC) across all plans. Business plan customers can also integrate SSO/SAML to enforce your existing identity provider and MFA policies.
- Role-based permissions for every team member and agent seat.
- Audit-ready logs of every action taken in the platform.
- SSO/SAML integration (Business plan) so your identity policies apply automatically.
- Session timeouts and automatic logout for inactive admin sessions.
Infrastructure
TravoPilot runs on cloud infrastructure with the following properties:
- Automated backups with tested restore procedures.
- Redundant infrastructure across availability zones.
- DDoS protection via Cloudflare at the network edge.
- Regular penetration testing and vulnerability scanning.
- Dependency and container image scanning in our CI/CD pipeline.
No training on your data
TravoPilot does not use your Customer Data to train or improve AI models for use by other customers. Your conversation data, booking data and traveller profiles are used only to deliver the Service to you. Your data is yours.
Configurable data retention
You can configure how long TravoPilot retains conversation transcripts, traveller profiles and analytics data. When you delete data or cancel your subscription, it is permanently purged from our systems within 30 days.
Responsible disclosure
If you discover a security vulnerability in TravoPilot, please disclose it responsibly by emailing [email protected]. We will:
- Acknowledge receipt within 24 hours.
- Provide a timeline for investigation and remediation within 72 hours.
- Keep you updated throughout the process.
- Credit your disclosure in our security acknowledgements.
Please do not publicly disclose a vulnerability before we have had the opportunity to address it.
Security questions?
For security concerns, audits or enterprise security reviews, contact our team directly.
[email protected] Privacy Policy