SECURITY AT DOTSFLOW

Built to Protect the Conversations Behind Your Business.

DotsFlow is designed around controlled access, responsible data handling and practical safeguards across CRM, Call Agent and Website Concierge.

OUR APPROACH

Security Is Part of How DotsFlow Is Built

Customer conversations can contain important business and personal information. Our approach focuses on keeping access controlled, integrations intentional and customer information associated with the right business workspace.

01

Controlled Access

Workspace access is intended for authorized users, with account and team controls designed to reduce unnecessary access to customer information.

02

Separated Workspaces

DotsFlow is designed around separate business workspaces so customer information remains associated with the appropriate organization and users.

03

Secure Connections

Supported platforms and services are connected through authorized integration methods and secure web connections where available.

04

Human Control

Automation supports customer workflows while businesses retain the ability to review interactions and involve people when human judgment is required.

ACCOUNT SECURITY

Protecting Access to Your Workspace

DotsFlow uses authenticated access to protect customer workspaces and administrative functionality. Access should only be provided to people who need it for their role.

01
Authenticated Account Access

Workspace functionality is accessed through authenticated user accounts.

02
Team & Workspace Controls

Businesses can organize access around their workspace and operational team.

03
Administrative Controls

Sensitive settings and configuration should be limited to appropriate authorized users.

04
Access Removal

Businesses should promptly remove workspace access when a team member, contractor or partner no longer requires it.

CUSTOMER DATA

Customer Information Stays Connected to the Right Workspace

Depending on the products and integrations a business enables, DotsFlow may process information such as customer names, contact details, messages, enquiry information, tickets, order context, call details and conversation history.

This information is used to provide the requested DotsFlow functionality and support the customer workflows configured by the business.

Data minimization matters.

Businesses should connect and collect only the information necessary for their customer experience and operational workflows.

CONNECTED PLATFORMS

Connections Through Authorized Platforms

DotsFlow connects supported communication, ecommerce and business platforms through their available authorization and integration methods.

WhatsApp Customer messaging
Instagram Customer conversations
Facebook Messenger Messaging workflows
Shopify Ecommerce context
WooCommerce Store and order workflows
Email Business communication
Third-party account security also matters.

Customers remain responsible for maintaining secure access to their connected Meta, ecommerce, email and other third-party business accounts.

CALL AGENT

Responsible Handling of Call Data

Depending on the customer’s plan, setup and enabled features, DotsFlow Call Agent may create call summaries, transcripts, lead information and recordings where recording is enabled.

Recordings Where Enabled

Call recordings are available only where the relevant feature, plan and provider configuration support them.

Controlled Visibility

Call history, transcripts and related information are presented through the appropriate DotsFlow workflow or customer dashboard.

Consent & Local Laws

Businesses using automated calling or call recording are responsible for complying with applicable privacy, telecommunications, notice and consent requirements.

AUTOMATION & AI

Automation With Business Oversight

DotsFlow uses automated systems to help answer questions, understand enquiries, route conversations and support customer workflows.

Automation should not replace human judgment where a sensitive issue, business decision or manual review is required.

01
Business Knowledge

Knowledge and responses can be configured around the information provided by the business.

02
Human Handoff

Supported workflows can involve team members when a conversation requires human attention.

03
Reviewable Interactions

Businesses can review supported conversation records and outcomes through their configured workflows.

04
Testing Before Launch

Businesses should test important automated responses, routing and workflows before production use.

SHARED RESPONSIBILITY

Security Also Depends on How DotsFlow Is Used

Businesses play an important role in protecting their workspace, connected accounts and customer information.

01

Protect Login Credentials

Use strong credentials and avoid sharing account access unnecessarily.

02

Manage Your Team

Review workspace access and remove users who no longer require access.

03

Secure Connected Accounts

Protect your Meta, Shopify, WooCommerce, email and other connected business accounts.

04

Review Your Workflows

Test knowledge, automation and routing rules before relying on them for important customer interactions.

Found a Security Concern?

If you believe you have discovered a security issue or suspicious activity involving DotsFlow, contact our team with enough information for us to review the concern.

SECURITY FAQ

Common Security Questions

Clear answers about workspace access, call data, integrations and security practices.

Is DotsFlow SOC 2 certified?
DotsFlow does not currently advertise itself as SOC 2 certified. As the platform and enterprise requirements develop, additional security and compliance programs may be evaluated.
Does DotsFlow keep different businesses’ data separate?
DotsFlow is designed around separate business workspaces so customer information remains associated with the appropriate organization and authorized users.
Does DotsFlow record customer calls?
Recordings may be available where recording is enabled and supported by the customer’s plan and call configuration. Businesses are responsible for complying with applicable recording and consent requirements.
Who can access my DotsFlow workspace?
Workspace access is intended for authorized users associated with the relevant business. Customers should regularly review which team members have access.
How does DotsFlow connect with third-party platforms?
DotsFlow uses supported connection and authorization methods for available integrations. Exact permissions and functionality depend on the platform and integration being used.
What should I do if I suspect unauthorized access?
Secure your login credentials and connected accounts, remove unnecessary user access and contact DotsFlow as soon as possible so the issue can be reviewed.

Have a Security or Data Question?

Talk to our team about how DotsFlow handles customer conversations, integrations, calls and workspace access.

Contact DotsFlow →