Important distinction
Enterprise features described on this page are separate from the consumer BYOK app. Features such as SSO, SCIM provisioning, admin controls, audit logs, managed key distribution, shared billing, or transcript sync require SpeechKey-operated backend infrastructure and separate contractual terms. The consumer BYOK app routes audio directly from user devices to AI providers, with no SpeechKey server in the processing path. Enterprise managed services introduce a SpeechKey-operated layer — this is intentional and disclosed. Contact us before procurement if your use case requires specific compliance, data residency, or processing terms.
01Built for the conversations that have to work
For suppliers, factory floors, doctors, customers and partners on the other side of the world — where the network is whatever it wants to be, and the meeting can't be rescheduled. SpeechKey gives international teams a single, calm translation layer they can trust.
02BYOK at scale
- In the consumer BYOK model, each user manages their own provider keys.
- Centralised key management for teams: planned for managed enterprise tier.
- Per-team or per-region key allocation: planned.
- Spend visibility and audit trail: planned for managed tier.
- Token costs stay between your organisation and your providers — we don't mark them up.
03Custom & private AI providers
- Bring your own provider endpoint, including private deployments of OpenAI on Azure, Vertex AI on Google Cloud, or self-hosted open models behind a compatible API.
- Custom voice profiles for specific languages or speakers, where supported by your provider.
- Per-tenant model allow-list and provider routing rules.
04Deployment options
- Consumer BYOK
- No SpeechKey-hosted infrastructure in the processing path. Available now.
- Managed SaaS
- SpeechKey-hosted backend with admin controls. Private beta — contact us.
- Dedicated tenant
- Single-tenant infrastructure in your selected region. Planned — contact us.
- On-premise / private cloud
- For regulated industries. Under evaluation.
05Security & governance
- TLS 1.3 in transit, AES-256 at rest, customer-managed keys (CMK) available.
- Hardware-key MFA enforced for admin roles.
- Tamper-evident audit log streaming to your SIEM.
- Quarterly access reviews; annual third-party penetration tests.
- GDPR-aligned data processing agreements available.
- SOC 2 Type II audit programme: under evaluation.
See the dedicated Security page.
06Procurement readiness
- Master Services Agreement (MSA) and Data Processing Agreement (DPA) templates available.
- Standard Contractual Clauses (SCCs) for international transfers.
- Pre-completed SIG and CAIQ-Lite questionnaires.
- Vendor security review turnaround: 3 business days.
- Insurance certificates, sub-processor list and incident history available under NDA.
07Scalability
- Horizontally scaled realtime layer with automatic regional load balancing.
- Provider-level rate-limit pooling so one busy team doesn't choke another.
- SLOs: 99.9% availability target for the resilient layer; provider-specific SLOs depend on the underlying provider.
08Admin controls
- SSO (SAML 2.0, OIDC) and SCIM user provisioning. (Planned for managed tier.)
- Role-based access control: owner, admin, billing, audit-viewer, end user.
- Tenant-wide policy for transcript retention and analytics opt-in.
- Region-pinning per team — e.g. CN team uses iFLYTEK; EU team uses OpenAI EU; false-route attempts are blocked.
- Centralised provisioning of API keys; end users never see raw credentials.
09Data ownership
- You own your transcripts, conversations and configuration — always.
- We do not use your data to train models. Ever.
- One-click export of all tenant data in JSON.
- Legal-hold and tenant-purge actions available to admins.
10Integrations
- SIEM (audit-log streaming) — Splunk, Datadog, Elastic.
- SSO / IdP — Okta, Entra ID, Google Workspace, Auth0.
- Webhook events — session start/end, transcript export, security events.
- Calendar & meeting tools — Zoom, Teams, Google Meet via captured-audio bridge (beta).
11DPA & legal
DPA, SCCs, sub-processor list and security exhibit are available on request from legal@vaitl.ai. Most enterprise customers can close paperwork in under two weeks.
12Contact sales
- Enterprise sales
- enterprise@vaitl.ai
- Trust & compliance
- trust@vaitl.ai
- Security questionnaires
- security@vaitl.ai