Security at Revorex
Our architecture keeps the client’s telephony system under client control and limits access to Revorex operational data.
Client-owned telephony
Your VICIdial installation, DIDs, trunks, agent in-groups, and call recordings remain on systems you control. Revorex connects through scoped Asterisk ARI credentials.
Data boundaries
Tenant-scoped authorization prevents one call center from reading another call center’s campaigns, users, reports, or logs. Administrative changes are recorded in an audit log.
Credentials and sessions
Passwords are hashed, ARI passwords are encrypted at rest, authenticated sessions can be invalidated, and login attempts are rate-limited and locked after repeated failures.
Call data
Revorex does not store raw call audio or recordings. It stores structured operational records such as detected outcomes, transfers, durations, and callback status.