Sovereignty · Certifications

Posture and certification are not the same claim.

This page states plainly what is certified, what is controls-level posture, and what remains roadmap — because conflating the three is the single most common trust-page failure in this category. Voz360 does not claim SOC 2, HIPAA, or PCI certification; no evidence of a completed certification audit exists as of this writing.

This page states plainly what is certified, what is controls-level posture, and what remains roadmap — because conflating the three is the single most common trust-page failure in this category. Voz360 does not claim SOC 2, HIPAA, or PCI certification; no evidence of a completed certification audit exists as of this writing.

The distinction

Controls posture vs. formal certification.

A platform can have real technical controls that support a compliance framework without having completed the independent audit that produces a certification. Voz360 is explicit about which category each item falls into.

01

GDPR-relevant controls

Data erasure workflows and data classification tooling support GDPR obligations. No formal GDPR certification framework exists to claim, as GDPR compliance is a legal determination, not a certificate.

02

PCI-DSS-relevant controls

Recording pause/resume logging around card-capture moments supports PCI-DSS scope reduction. No PCI-DSS certification (AOC/ROC) is claimed.

03

HIPAA-relevant governance

Encryption, audit logging, and access controls support a HIPAA governance program. No HIPAA certification exists as a formal credential — HIPAA compliance is a covered-entity/business-associate contractual determination, evaluated via BAA terms during discovery.

Questions, answered

What enterprise buying teams want to know.

Self-contained answers, so the questions a security or procurement reviewer asks first don't require reading the whole page.

Is Voz360 SOC 2 certified?

No. This site does not make an unsupported certification claim. Confirm current status directly with Voz360 before a certification-dependent purchase decision.

What should a security reviewer ask for instead of a badge?

Ask for the specific control mapping — encryption method, audit log design, tenant isolation model, and retention policy — rather than a certification logo. This page and the Audit Log / Encryption pages are built to answer exactly that.

Talk to Voz360

Run it on your terms.

Bring your deployment constraints, compliance requirements, and channel mix. We will show you exactly where control lives in the architecture.