
ISO 27001
Certified information security management, covering how sensitive borrower information is stored and handled.

Compliance & Security
Vodex is ISO 27001 and SOC 2 Type II certified. Disclosures, calling windows, consent handling, opt-outs, call caps, and audit logging are enforced on every call, so sensitive borrower information stays protected.
Certifications & frameworks
Security certifications held by Vodex and the collection regulations the platform enforces on every conversation.

Certified information security management, covering how sensitive borrower information is stored and handled.

AICPA SOC 2 Type II certified. Security controls audited for effectiveness over time, not just on paper.

HIPAA-compliant workflows for medical and healthcare collections, including patient payment reminders.

Required disclosures and legally required language enforced on every call, with timestamped transcripts for record-keeping.

Call caps and calling windows enforced by the platform, keeping outreach frequency inside Regulation F limits.

Consent handling and opt-outs built into every campaign, honored automatically across channels.
Running a collections operation? See Vodex for Debt Collection
Security practices
The controls behind the certifications: how data is encrypted, who can touch it, and what gets logged.

All call artifacts, recordings, and transcripts are encrypted in transit and at rest.

Access to borrower data is scoped by role, so people only see what their job requires.

MFA protects every platform account handling sensitive borrower information.

Detailed audit logs, with recordings and transcripts indexed, searchable, and exportable.
Running a collections operation? See Vodex for Debt Collection