Ai-Coustics Logo

Trust Center

Start your security review
View & download sensitive information
Ask for information
ControlK

ai-coustics GmbH (Berlin, Germany) licenses an SDK that makes voice AI systems reliable on real-world audio: real-time speech enhancement, voice activity detection and audio insight, running in-process on CPU using ai-coustics' own models.

The SDK processes audio locally inside the customer's own infrastructure or on end-user devices. No audio, transcripts or derived features are transmitted to ai-coustics. What ai-coustics operates is the supporting backend for license authentication, short-lived token minting, the model registry and usage telemetry, plus a developer portal and documentation, all hosted in AWS eu-central-1 (Frankfurt, Germany).

Security program: 26 published information security policies owned by the CTO, continuous control monitoring in Drata, an independent whitebox penetration test completed in August 2026, and a SOC 2 Type II examination (Security, Availability, Confidentiality) with Sensiba LLP under way. We operate as a German controller under the GDPR with a published privacy notice and sub-processor list.

Security contact: security@ai-coustics.com. Service status: status.ai-coustics.com.

Documents

REPORTSData Flow Diagram (DFD)

Risk Profile

We have secure, reliable hosting that customers can depend on. We are happy to provide details about our risk mitigation practices and recovery objectives upon request.

Self-Assessments

We are working on our security compliance. We can provide completed questionnaires upon request.

ESG

We prioritize and take environmental, social, and governance (ESG) considerations seriously in our operations and decision-making processes.

Security Grades

We are constantly monitoring the security of our website. We will post our grades from public security rating agencies when they become available.

Risk Management

We have a dedicated team that manages security risks. We are happy to provide more details about our risk management practices upon request.

Asset Management

We have strict asset management policies in place to ensure that all assets are accounted for and secure.

BC/DR

We have a business continuity plan in place to ensure that we can continue to operate in the event of a disaster.

Training

We provide security awareness training to all employees to ensure that they are aware of security best practices.

Change Management

We have a change and configuration management process in place to ensure that changes are properly reviewed and approved.

Physical & Environment

We have physical and environmental controls in place to ensure that our data centers are secure and reliable.

Continuous Monitoring

We continuously monitor our systems for security threats and vulnerabilities. We are happy to provide more details about our continuous monitoring practices upon request.

Knowledge Base (FAQ)
  • Does the SDK or service use third-party AI providers, LLMs or generative AI?
  • Describe your penetration testing program and whether customers can test.
  • What are your vulnerability remediation SLAs and how is scanning performed?
  • How does the SDK authenticate, and what permissions does it need on customer systems?
  • How is data encrypted at rest and in transit?
View more