Skip to main content

Security & Privacy

Your data security is foundational to how we build Tenali AI. Here is how we protect it.

How Tenali works

Tenali AI is a real-time sales intelligence platform that gives reps answers during live calls. Calls are captured by the Tenali desktop app:

Desktop App (System Audio Capture)

The Tenali desktop app captures your microphone and your computer's system audio using system-level audio APIs, similar to screen recording on macOS. No bot or participant joins the meeting, and Tenali does not trigger a recording notification. Because capture happens on your own machine, it works with Zoom, Microsoft Teams, Google Meet, Webex, Slack huddles, Dialpad, Orum, Nooks, WhatsApp, and 30+ other platforms. What varies by platform is how the call is detected and whether video is captured alongside audio — see supported platforms.

Tenali transcribes audio in real time, detects buyer questions, and surfaces answers from your connected knowledge base. Answers appear in a private overlay visible only to the rep.

Transcription and recordings

Tenali transcribes live audio in real time to detect buyer questions and surface answers during the call. Where meeting capture is enabled, Tenali also saves the meeting so you can review it afterwards: the full transcript, a summary, and a recording you can replay from the meeting page — video on fully supported platforms (Zoom, Meet, Teams) and audio for Slack huddles, Webex, and universal capture.

Recording can be turned off per meeting, and you can delete any meeting or transcript at any time. Transcripts, recordings, and summaries are retained for the duration of your active subscription. On account termination or on request, all associated data is permanently deleted from our systems, including backups, within 30 days. Where workspace admins are able to replay a team member's recording, every playback is audit-logged.

No model training on your data

Customer conversations and documents are never used to train or fine-tune any foundation model, and are never used to improve answers for another organization. Your data is used at inference time to generate contextual responses for your organization. Our AI providers operate under zero data retention agreements and do not use customer data for model training.

Tenali does get better for your team over time, and it does so entirely inside your own workspace: the content you connect and the corrections your team makes are indexed against your organization only, so a correction made by one of your reps improves your future answers and nobody else's.

Encryption

All data in transit is protected with TLS 1.2 or higher. All data at rest is encrypted using AES-256. Database-level encryption is applied to all persistent storage. API communications use industry-standard encrypted protocols. All connections enforce encrypted transport by default.

Infrastructure

Tenali AI is hosted on AWS cloud infrastructure with enterprise-grade security controls including firewalls, intrusion detection, and continuous monitoring. Internal access is governed by role-based access controls (RBAC). All third-party integrations (Salesforce, HubSpot, Slack, Google Drive, OneDrive, Gong, and others) authenticate via OAuth 2.0, and Tenali requests only the scopes an integration needs. Knowledge sources are connected with read access. CRM integrations can additionally be granted write access so Tenali can log activity and update records on your behalf. When you ask Tenali to make a change in chat, anything that moves the forecast — deal stage, amount, close date — waits for your approval on a review card by default, and a move to closed-won or closed-lost always requires confirmation; additive changes such as logging a note or creating a task can apply on their own. In Slack, every change waits for approval. The Push to CRM button on a meeting summary is a separate, narrower path: it writes that recap to the one record you pick and applies directly on click. Admins can revoke any integration at any time.

Compliance

SOC 2 Type II: Tenali AI is currently undergoing SOC 2 Type II certification.
GDPR: Tenali AI is GDPR compliant. A Data Processing Agreement (DPA) is available on request.
Data residency: Tenali AI processes data on AWS infrastructure in the United States. Contact us for specific data residency requirements.
Security questionnaires: We maintain responses for standard vendor security questionnaires. Contact security@tenali.ai to request one.

Recording laws and consent

Many jurisdictions require notification or consent from all parties before recording or transcribing a conversation. These include two-party consent states in the US (such as California, Florida, Illinois, Pennsylvania, and others) as well as international regulations under GDPR.

When using the Tenali desktop app, no bot joins the call and no automatic notification is sent to meeting participants. You are solely responsible for determining whether consent is required and for obtaining it before using Tenali to transcribe a meeting.

We recommend always informing meeting participants when AI transcription tools are in use, regardless of whether it is legally required in your jurisdiction. A simple approach is to include a line in your calendar invites: "This meeting may use AI-assisted transcription for internal note-taking purposes."

Tenali provides the transcription technology. We do not monitor, verify, or enforce your compliance with recording laws.

AI providers

Tenali AI uses multiple AI providers for different capabilities across the platform. All providers operate under zero data retention agreements: your data is not stored by providers after processing and is never used to train their models.

Enterprise customers can request the full sub-processor schedule under NDA at security@tenali.ai.

You control your data

You retain full ownership of your data at all times. You can delete individual data or request deletion of all your data at any time. Upon account termination, Customer Data is deleted within 30 days. Admins can revoke third-party integrations at any time from the Tenali dashboard. Tenali follows data minimization principles: we collect only the data necessary to provide the service.

Frequently asked questions

For security documentation, DPA requests, or to submit a vendor security questionnaire, contact security@tenali.ai

TENALi