Security & Trust Centre
Last Updated: August 2026
At Tunk.ai, security and responsible handling of customer data are fundamental to the way we build and operate our AI voice automation platform.
Tunk.ai is designed to help businesses automate customer conversations while maintaining appropriate controls around data protection, infrastructure security, access management, and privacy.
1. Infrastructure & Hosting
Tunk.ai production infrastructure is hosted on Amazon Web Services (AWS) and uses AWS infrastructure and security capabilities to operate our platform.
Depending on the service and workload, Tunk.ai uses managed cloud services for application hosting, databases, compute, storage, networking, monitoring, and other infrastructure requirements.
AWS provides the underlying cloud infrastructure and security capabilities, while Tunk.ai is responsible for securing our applications, configurations, access controls, customer data, and services running within that infrastructure.
Learn more about AWS security at AWS Security.
2. Data Protection
We implement technical and organizational measures designed to protect customer data against unauthorized access, alteration, disclosure, or destruction.
Our security practices include:
- Encryption of data in transit using HTTPS/TLS.
- Encryption at rest where supported and configured for applicable AWS services.
- Restricted access to production systems and customer data.
- Secure authentication and authorization mechanisms.
- Access controls based on business requirements and the principle of least privilege.
- Monitoring and logging of relevant infrastructure and application activity.
3. Access Control
Access to production infrastructure and customer data is restricted to authorized personnel based on operational requirements.
We follow security principles including:
- Least-privilege access.
- Role-based access controls where applicable.
- Restricted production access.
- Protection of administrative credentials and secrets.
- Periodic review of access permissions.
4. Application & API Security
Tunk.ai provides APIs and integrations that allow customers to connect AI voice capabilities with their existing applications and workflows.
We use security controls appropriate to our application architecture, including authentication, authorization, secure API communication, input validation, logging, and monitoring.
We continuously work to identify and address security vulnerabilities across our application, infrastructure, and dependencies.
5. Monitoring & Logging
Tunk.ai uses infrastructure and application monitoring and logging to help identify operational issues, security events, and abnormal activity.
Security and operational events are reviewed as appropriate to help maintain the availability, reliability, and security of the platform.
6. Customer Data & Privacy
Tunk.ai processes customer data only as necessary to provide and improve the services, subject to the applicable agreements and our privacy practices.
Our approach includes:
- Limiting access to customer data to authorized personnel and systems.
- Applying appropriate safeguards to stored and transmitted data.
- Following defined data retention and deletion practices.
- Working with trusted infrastructure and technology providers.
- Providing transparency regarding how personal information is handled.
For additional information, please review our Data Privacy Policy.
7. Third-Party Services & Subprocessors
Tunk.ai may use trusted third-party infrastructure, AI, telecommunications, cloud, and technology providers to deliver specific capabilities of the platform.
Third-party providers are selected based on their suitability for the services they provide and their security and privacy practices.
Where applicable, customer data processed by third-party providers is handled according to the relevant service requirements and agreements.
8. Business Continuity & Backups
Tunk.ai uses cloud infrastructure and managed services designed to support platform availability, reliability, and operational resilience.
Where applicable, backups and recovery mechanisms are configured for critical systems and data.
Our operational practices continue to evolve as the platform and customer requirements scale.
9. Security Incident Response
Tunk.ai maintains processes for identifying, investigating, containing, and responding to security incidents.
If we become aware of a confirmed security incident that materially affects customer data, we will assess the incident and take appropriate actions, including notification where required by applicable law or contractual obligations.
10. Responsible Disclosure
We encourage security researchers and customers to report suspected security vulnerabilities responsibly.
Please report security concerns to: admin.tunk@logicnimbus.com
When reporting a vulnerability, please provide enough information for our team to understand and reproduce the issue where possible.
11. Compliance & Certifications
Tunk.ai is committed to continuously improving its security and privacy practices.
We do not currently claim certifications or attestations that we have not formally obtained. Any future certifications or independent security assessments will be communicated on this page when applicable.
12. AWS Shared Responsibility
Tunk.ai's cloud infrastructure operates under the AWS shared responsibility model.
AWS is responsible for the security of the underlying cloud infrastructure, while Tunk.ai is responsible for security in the cloud, including our applications, configurations, access controls, customer data, and services we deploy.
More information about AWS's security practices is available through AWS Security.
13. Contact Us
For questions about Tunk.ai security, privacy, or data protection, please contact:
Security: admin.tunk@logicnimbus.com
We are committed to continuously strengthening the security, reliability, and privacy of the Tunk.ai platform as we grow.