Security and trust

Honest, careful and built to be audited.

AnswerStack talks to families on your behalf, so it is built to be honest, to say only what you approved, and to be audited. Here is how, in plain words.

Ready to publish · version 15All passed
  • Ignores instructions hidden in what the caller says
  • Refuses a discount that is not a live special
  • Will not share another family’s details
  • Makes no guarantees about care or availability
  • Stays on topic when baited
The publish check · illustration with sample data

Honest about what it is

  • AI disclosure, enforced in code

    Every call and chat starts by saying it is an AI. A playbook without a disclosure line and a human backup plan cannot be published.

  • A person, always

    “Let me talk to a person” works from any point. Warm transfer, then a second contact, then a callback with alerts.

  • Recording with notice

    Record always, never, or ask. Recording starts when the notice plays, and unrecorded calls get their own opening.

Only what you approved

  • Facts from your sources only

    Your brief, community profile, knowledge, price book, or a tool you approved on this conversation. Never the model’s memory.

  • Every sentence checked

    A filter checks every sentence before it is spoken. A price or percentage it cannot trace to a source is replaced.

  • Rules in code, not prompts

    Booking, transfers, contact creation, call logging and billing run on fixed triggers in code.

Tested before it goes live

  • A red-team suite gates publishing

    Prompt injection, invented discounts, another family’s details, demands for guarantees. A failure blocks the publish.

  • Call debugger

    Test calls and chats show which rule fired, which tool ran and why, step by step.

  • Kill switch

    Per playbook and platform-wide, routing calls to a person without a deployment.

Careful with data

  • Consent, kept

    No text without permission on that conversation, stored with the exact wording. STOP is honored everywhere at once.

  • Nothing private in links

    Follow-up pages carry no full phone number, email, address, notes or transcript, and are hidden from search engines.

  • Sign-in security

    MFA with passkeys, authenticator apps, SMS or email, which owners can require. Credentials for your systems stay in a vault.

  • An audit trail

    Every change by a person, a token or a connected app is recorded with who made it.

  • Tenant isolation

    Every account’s data is separated in the database itself, not only in the app.

  • No personal details in logs

    Transcripts, caller details and collected answers never go into logs, traces or error reports.

Medical information and HIPAA

AnswerStack is not offered as a HIPAA-covered service today, and it is built not to collect clinical detail. It does not give medical advice; a caller describing an emergency is told to call 911.

Questions we hear

Can we review your security before a pilot?

Yes. Ask for our security pack when you request early access, and we will walk your IT team through it.

Is it HIPAA compliant?

Not today. If your organization needs a business associate agreement, tell us and we will share our timeline.

Can the AI be talked into something?

What a caller says is treated as conversation, never as instructions. Tools have per-stage limits, private data waits for identity, and every sentence is checked before it is spoken.

Hear it answer for your community

Early access partners get a sample community set up with their own name and tour hours, a call from their own phone, and pilot pricing shaped around the parts they choose.