Compliance

Compliance Is the Architecture.
Not a Checkbox.

ShieldLayer is our purpose-built compliance engine operating across every channel — voice, RCS, SMS, WhatsApp — enforcing TCPA calling windows, HIPAA data handling, PCI DSS payment security, and DNC list management in real time.

SOC 2 Type II
HIPAA
TCPA
GDPR
PCI DSS
ShieldLayer

Built-in compliance across every channel

TCPA Compliance
Automatic calling window enforcement, consent management, DNC list checking, opt-in/opt-out flows, and NRSC number reassignment scrubbing — all built into every call and message.
HIPAA Ready
BAA available. PHI handling protocols, encrypted storage, access controls, and audit trails for healthcare deployments.
SOC 2 Type II
Independently audited security controls. Current certification at trust.clerk.chat.
GDPR & Privacy
Standard Contractual Clauses, data processing agreements, and Article 28 compliance for EU operations.
PCI DSS
Secure payment handling with tokenization and PII redaction in transcripts.
10DLC & STIR/SHAKEN
Managed campaign registration with TCR, caller ID authentication, and carrier compliance built in.
Automatic

Compliance that runs itself

  • Real-time calling window enforcement across time zones
  • Automatic opt-in and opt-out flow management
  • DNC list checking before every outbound interaction
  • NRSC number reassignment scrubbing every 15 days
  • Full audit trails for every interaction
  • PII redaction in call transcripts
  • Role-based access controls
  • US-based data residency with AES-256 encryption at rest
  • TLS 1.2+ encryption in transit
ShieldLayer

The reason they choose Clerk AI

For regulated industries like healthcare, finance, and insurance, ShieldLayer isn't optional — it's the reason they choose Clerk AI.

Platform

Explore the Platform

Build
Design AI agents visually or describe them in natural language.
Learn more
Launch
Deploy agents across voice, SMS, RCS, and WhatsApp in minutes.
Learn more
Analyze
Real-time analytics and insights across every conversation.
Learn more
Act
A unified inbox where AI and humans work side by side.
Learn more

Enterprise compliance, built in from day one.

SOC 2, HIPAA, TCPA, GDPR, PCI DSS. Every channel. Every interaction. Every time.