AI disclosure: When you call a restaurant powered by Callra, you are speaking with an AI voice agent. Callers are told calls may be recorded for order accuracy before any recording begins, and can opt out at any time.

Trust & Data Handling · U.S.-based · PCI-compliant payment processors

AI Phone Security: How Callra Handles Restaurant and Salon Data

Claims last reviewed

Callra AI is U.S.-based and hosted on AWS. Payment card data is handled by PCI-compliant processors (Stripe, Converge/Elavon, Clover, or Square) via hosted checkout and tokenization, so Callra never stores raw card numbers. Calls may be recorded and transcribed for order accuracy; the AI agent can disclose the recording and its AI identity, and recording and consent behavior is configurable per state. Data is encrypted in transit and at rest, and you own your data, and Callra does not sell it.

What security certifications does Callra AI hold?

Callra AI is a young company, and we don’t hold formal third-party certifications yet: no SOC 2, no ISO 27001, no PCI DSS certification of our own, no HIPAA attestation. We’d rather tell you plainly what we do today than claim credentials we haven’t earned. Here is what is actually true right now.

Callra AI current data-handling practices. Plain status, no overclaims.
AreaStatusWhat it means for your restaurant
Payment card dataHandled by PCI-compliant processorsCard payments go through hosted checkout and tokenization at Stripe, Converge/Elavon, Clover, or Square. Callra does not store raw card numbers.
SOC 2 / ISO 27001 / HIPAANot certifiedCallra does not hold these certifications today. No claims are made otherwise.
Data hostingU.S.-based (AWS)Call data and order data are hosted in the United States.
Call recording disclosureBuilt in, configurable per stateThe agent can disclose recording and its AI identity before capturing audio.
EncryptionIn transit and at restStandard encryption practices apply to stored and transmitted data.

As Callra completes formal audits, we will publish the real results here, and not before.

How does Callra handle payment card data on phone orders?

When a guest reads a card number aloud during a phone order, the risk is obvious: a spoken card number could be recorded, transcribed, and stored. Callra’s approach is to keep raw card data out of our systems entirely. Payment is handled through hosted checkout and tokenization at PCI-compliant processors: Stripe, Converge/Elavon, Clover, or Square. And the card is tokenized before any Callra server processes it.

What Callra stores vs. what the payment processor stores

Callra stores a payment token, plus non-sensitive metadata (amount, last 4 digits, authorization time. Callra never stores the full card number. Refunds and reversals go through the processor’s API against the stored token, not through a card number Callra holds, because Callra holds none. Callra itself is not PCI DSS certified; the certified processors we route payments through are.

Handling of card-number audio

For the portion of a call where a card number is spoken, we aim to avoid retaining that audio segment or writing sensitive card data to transcripts. The stored record keeps only payment metadata (amount, token, last 4, and timestamp), not the card number itself.

Is Callra AI working toward SOC 2 or other certifications?

Formal certifications like SOC 2 Type II are audits of how a vendor’s controls operate over an observation period. Callra does not currently have an active SOC 2 engagement, and we won’t claim one until it’s real. As we grow, formal security audits are part of our roadmap, and we’ll publish verifiable results here, not marketing claims, once they exist.

How does Callra handle guest data privacy?

Guest data Callra processes (name, phone number, order history, voice recording, and transcript) is treated as data you own. Callra does not sell or share guest data with third parties. Requests about your data can be sent to info@callraai.com. The binding detail behind these commitments is in the Privacy Policy.

Call recording disclosure and consent

Calls may be recorded and transcribed for order accuracy. The AI agent can disclose that the call may be recorded and that the caller is speaking with an AI before capturing audio. Recording and consent behavior, including whether a disclosure plays before the first utterance, is configurable per state, so it can be set up to support one-party and two-party (all-party) consent requirements. This is a product feature and a compliance commitment we are building toward, not a completed legal certification.

An example disclosure

Can play before any utterance is recorded

“Hi, this is [Restaurant Name]. Calls may be recorded for order accuracy. How can I help?”

Several states require all-party (two-party) consent before a call can be recorded. Callra’s disclosure and recording settings are configurable so an operator can align call handling with the requirements of the state they operate in.

WAORCANVIDMTUTAZCOTXILFLPANYOHGAMIMNMONC
Figure 2. All-party (two-party) consent states are highlighted: California, Illinois, Pennsylvania, Florida, and Washington. Schematic, not to geographic scale; full list in the table below.
States generally requiring all-party (two-party) call recording consent, for reference.
JurisdictionConsent ruleHow Callra supports it
California (CA)All-partyDisclosure can be configured before first utterance
Illinois (IL)All-partyDisclosure can be configured before first utterance
Pennsylvania (PA)All-partyDisclosure can be configured before first utterance
Florida (FL)All-partyDisclosure can be configured before first utterance
Washington (WA)All-partyDisclosure can be configured before first utterance
Other statesGenerally one-partyDisclosure available, configurable per operator

This information is provided for general awareness and is not legal advice. Operators should confirm recording-consent requirements for their state with their own counsel.

Data residency: where is call data stored?

Callra hosts data with AWS in the United States. Voice recordings, transcripts, order data and appointment data are encrypted in transit and at rest.

Salon data: appointments, the client book, and allergy-alert records

The salon product stores a different shape of data than the restaurant one, so it is worth being specific rather than pointing at the paragraphs above. Callra holds your diary, your services and stylists, your client book, and the appointment history behind it — on the same U.S. infrastructure, with the same encryption in transit and at rest.

Allergy-alert (patch) test records

This is the most sensitive record the salon product keeps, and it is handled as a gate rather than a note. A colour service you flag as needing a test can only be booked by a client with a valid one on file, and the records are append-only — a correction is written as a new entry rather than overwriting the last one, so the history stays intact for your insurer. Nothing in the product deletes a test result to make a booking possible.

Salons: no card data at all

Everything on this page about PCI scope, tokenization and payment processors describes the restaurant product. Callra does not take deposits or charge cancellation fees for salons, so the salon product never touches a card number — there is no payment path to secure. If a salon plan ever gains one, this section changes before that ships, not after.

Who can see what

Access is stylist-scoped: a stylist account sees the diary and the clients it needs to do the job, not the whole salon’s book and settings. Call recording disclosure works the same way for a salon as for a restaurant — see the consent section above, which applies to both.

Voice AI architecture: how Callra separates payment data

The reason Callra can keep raw card data out of its own systems is architectural: the system is built as separated layers, so the components that handle payment never share state with the components that record and transcribe audio. The diagram below shows the pipeline and the point where card data leaves Callra’s systems for the payment processor.

Layer separation: model, orchestration, tools, and logging

Callra AI voice payment architecture showing the payment tokenization boundary at a PCI-compliant processor.A left-to-right pipeline: customer phone call enters via SIP trunk, passes through the ASR/NLU layer and the menu lookup layer, then reaches the tokenization boundary at a PCI-compliant payment processor, where raw card data exits Callra’s systems. Only a payment token plus metadata is written back to the POS.CALLRA SYSTEMS · no raw card number (PAN) storedPCI-COMPLIANT PROCESSORCustomer CallInbound orderSIP TrunkEncrypted TLS 1.3ASR / NLUSpeech → intentMenu RAGPOS source-of-truthTokenizationBoundaryCard data exits herePOS Write-BackToken + last 4only, never PAN
Figure 1. Callra separates payment handling from call processing: raw card data is tokenized at the payment processor boundary and never written to a Callra server.

The model layer, the orchestration layer, the tools layer, and the logging layer are kept separate so that logging never sees a full card number, and the tokenization boundary sits at the payment processor. A guest call enters over telephony infrastructure, the speech-recognition layer interprets the order, the menu-lookup layer reads from the POS source of truth, and payment is tokenized at the processor boundary. Only a token and the last 4 digits are written back to the POS.

Security testing

Callra does not currently run a scheduled third-party penetration-testing program. Security review and testing cadence are part of our roadmap as the product and company mature.

Accessibility

We aim to make Callra’s web experience accessible, and the voice AI supports escalation to a human or text channel. We do not currently hold formal WCAG certification and won’t claim one until an audit confirms it.

Questions about our security practices?

If you have questions about how Callra handles your data, email info@callraai.com, or book a demo and our team can walk you through our current practices and our roadmap for formal certifications.

Security FAQ

Straight answers on payment card data handling, data hosting, call recording consent, and what certifications we do and don’t hold today.

Callra AI itself is not PCI DSS certified. Payment card data is handled by PCI-compliant processors (Stripe, Converge/Elavon, Clover, or Square) via hosted checkout and tokenization, so Callra never stores raw card numbers.

Not yet. Callra is a young company and does not hold SOC 2, ISO 27001, HIPAA, or GDPR certification today. We will publish real audit results here if and when they are completed. We do not claim certifications we don’t have.

Data is hosted with AWS in the United States. Call recordings, transcripts, and order data are encrypted in transit and at rest.

Ready to Recover Missed Revenue?

Book your 10-minute demo. Live, on this page.

Three taps. Your numbers run on the call. Personalized quote in your inbox within 24 hours.

No credit card
10 minutes flat
Founder-led
01Type
02Slot
03Confirm
What kind of business are you?