Separate customer accounts
Each customer can access only their own data, Chatbot and settings.
Security
COMS processes conversations, leads and bookings. Access is limited by role, traffic is encrypted and integrations are connected to the correct customer account.
Each customer can access only their own data, Chatbot and settings.
Provider owners, customer admins and operators have separate permissions.
Uploaded files, conversations and enquiries are kept within the customer's account.
Schema, tenant data, CSP and asset checks support release readiness.
Current status
COMS uses account isolation, access control and documented security checks. COMS is not ISO 27001 certified.
How COMS is secured
Every widget, conversation, lead, contact, booking, file and delivery channel is tied to a customer account. The goal is to prevent customer data from mixing across UI and database boundaries.
The portal separates COMS owner management, customer admin access and operational users. This lets leadership manage settings while sales or marketing users work with narrower daily permissions.
Service traffic uses HTTPS/TLS. Customer uploads and operational data are designed for private, account-scoped use.
Leads can be delivered to email, webhook, WhatsApp, Telegram or other agreed channels. Each delivery channel is tied to a customer account so deliveries do not mix across customers.
COMS includes checks for schema readiness, tenant data, portal assets, CSP settings and smoke testing. Checks support releases, but do not replace continuous monitoring.
Separate legal pages
This page explains how COMS protects accounts and customer data. Privacy details and service terms are available on their own pages.