Security, Audits & Patents

Built for the Most Demanding Environments.

Security in ByondPitch is not a feature — it is the foundation of the architecture. Every interaction, every data point, every tenant — designed and independently audited to enterprise and public-sector standards.

✓ SOC 2 Type I & II audited ✓ Big 4 audit ✓ State of Israel penetration test ✓ Multi-Tenant ✓ Self-hosted architecture ✓ Registered patent — IL · US & EU pending

Audits & Registrations

Independent validation of the platform’s security design.

AICPASOCTYPE 2COMPLIANT

SOC 2 Type I & II

Audited

Completed SOC 2 Type I and Type II audits performed by a Big 4 firm, covering security, availability, processing integrity, confidentiality, and privacy.

Government Penetration Test

State of Israel

A penetration test conducted on behalf of the State of Israel as part of the platform’s onboarding to government environments.

AWS Marketplace

Listed March 2026 Deployed on AWS

Listed on AWS Marketplace as SmartMeet.AI by ByondPitch (March 2026). View the product listing →

Registered Database

Israeli Privacy Protection Authority ✓

ByondPitch’s database is registered in the Databases Registry of the Israeli Privacy Protection Authority (Ministry of Justice). The platform’s data management was designed in accordance with Israel’s Privacy Protection Law, 5741-1981, including the requirements of Amendment 13.

Environment Architecture — Built for Absolute Separation

ByondPitch was architected with fully separate environments for public-sector and private-sector workloads — zero overlap.

🏛️ Public-Sector Deployments

Dedicated Sovereign Cloud (isolated government environment)

For government projects, ByondPitch was deployed in a dedicated, isolated sovereign cloud environment built for Israeli government workloads, with all data processed and stored within Israeli borders.

  • Data kept within Israeli borders
  • Deployed in government emergency-period projects (2025–2026)
  • Full separation from private-sector workloads
  • Built to national cyber-security requirements
☁️ Commercial Deployments

AWS

Commercial deployments run on AWS infrastructure, and the architecture supports a self-hosted model for organizations requiring full data control.

  • AWS infrastructure
  • Encryption in transit (TLS 1.3) and at rest (AES-256)
  • Self-hosted deployment model

Security Architecture

Infrastructure built from the ground up for enterprise-grade security.

Multi-Tenant — Full Isolation

Multi-Tenant architecture with strict data separation between organizations. Every tenant — a completely isolated environment, designed for zero cross-tenant leakage.

Encryption In Transit & At Rest

All data encrypted in transit (TLS 1.3) and at rest (AES-256). Encryption keys managed separately per organization.

Self-Hosted — Full Control

A self-hosted deployment option — available primarily for government environments — for organizations requiring absolute data control, with data in transit and at rest kept within their own environment.

Zero Data Leakage — DLP

Built-in DLP mechanisms. Automatic data leakage prevention — between agents, teams, and organizations.

Governance, Control & Audit

Full control — who sees what, when, and why. Complete audit trail for compliance and regulation.

RBAC — Role-Based Access Control

Granular permission management: Admin → Division Manager → Team Manager → Agent. Each role sees only information permitted at their level — no exceptions.

Full & Automatic Audit Trail

Every action, access, and change — automatically logged with timestamp and user ID. Designed to meet governance and external-audit requirements.

Built-in Enterprise Governance

Control reports, access policies, data lifecycle management, and alignment with GDPR and Israeli Privacy Law.

Multi-Tenant Gov-Grade

Architecture designed to host dozens of government entities on one platform with absolute isolation — proven in government emergency-period projects.

Meeting-Level Control

The principle is simple: reps engage clients only within the boundaries the organization defined — in content, materials and AI.

Playbook-Scoped Rep Access

Each rep conducts virtual meetings only within playbooks assigned by the organization or an authorized manager. Access is governed at the playbook level — not the system level.

Controlled Sharing — Not Screen Sharing

In a meeting, reps present only the documents and visuals pre-approved in their authorized playbook. No free-form screen sharing — eliminating data leakage from the rep’s screen.

Per-Tenant Arena Policy

The organization sets the interaction rules for every tenant — receiving client documents, sharing materials, or both. Full elasticity, aligned with organizational policy.

AI Under Organizational Control

The AI engine is configured per tenant and per playbook — including defining in advance which output types are never surfaced to reps. The AI serves your policy, not the other way around.

Independent Validation

ByondPitch’s audit, IP and compliance work was carried out with leading professional firms.

SOC 2 Audit

Big 4 Audit Firm

Audit & Information Security

Performed ByondPitch’s SOC 2 Type I and Type II audits.

Patent Attorneys

CDS-Luthi & Co.

Israel · USA · Europe

Patent counsel for ByondPitch’s patent family in Israel, the US and Europe.

Patent Protection

ByondPitch’s core technology is protected by a registered patent in Israel, with active applications in the USA and Europe.

System & Method of Managing Communication Interactions

The patent covers ByondPitch’s core AI mechanism: real-time management of communication interactions — sentiment analysis, adaptive Playbook, and conversation turning point detection.

🇮🇱 Israel — Granted ✓ 🇺🇸 USA (USPTO) — Pending 🇪🇺 Europe (EPO) — In Process
🇮🇱 Israel

Registered Israeli Patent

Date of Grant: December 2024

✓ Granted
🇺🇸 USA — USPTO

US Patent Application

Under active examination by USPTO

⏳ Under Examination
🇪🇺 Europe — EPO

European Patent Application

In filing process via CDS-Luthi & Co.

⏳ In Process

Security Documentation

Detailed security documentation, including the SOC 2 report (under NDA), is available to qualified parties on request.

Request documentation →