← Voxlumo

Security & data handling

A transparent overview of the current Voxlumo architecture. We do not claim certifications or compliance controls that have not been independently established.

Self-service transcription

When a customer submits a recording in the Workspace, the selected media is processed by the Voxlumo transcription workflow and the configured AI provider. The public workflow is request-based and is not presented as a permanent customer-audio archive.

Done-for-you intake

The current service-request page can validate a selected recording and prepare project details locally in the browser, but it does not yet upload that recording to Voxlumo. Secure service-file storage will only be represented as available after the backend is actually connected and reviewed.

Browser-local project storage

Projects saved with the Workspace's Save locally action are stored in browser local storage on that device. This is a convenience feature, not a cloud backup or multi-user account system.

Retention & provider controls

External-provider retention and processing are governed by the provider configuration and terms applicable to the deployment. Customers with specific retention, region, DPA or subprocessor requirements should confirm those requirements before production use.

Transport & advanced controls

Production traffic is served over HTTPS by the hosting platform. Additional customer-specific controls such as private networking, dedicated regions, SSO, audit logging, contractual SLAs or certified compliance are not represented as available unless separately implemented.

Important limitation

Voxlumo should not be represented as HIPAA, SOC 2, ISO 27001, government-cloud or other regulated-compliance ready unless those controls are actually established and documented.

Privacy →Terms →