Security & compliance

Your data is safe with us

We take security seriously. Every enquiry workflow we build is designed with compliance, encryption and human oversight at its core.

Is this GDPR compliant?

Yes. Every Total Ops workflow runs on a documented lawful basis, with data minimisation, support for erasure and portability, and a Data Processing Agreement for every customer. Compliance is designed into the workflow rather than bolted on afterwards.

What does 'EU AI Act ready' mean?

It means clear documentation of what each automation does, human oversight on consequential actions, traceable audit logs, and transparency about where AI is used — so you can demonstrate accountable, explainable handling of customer enquiries.

How is our data secured?

AES-256 encryption at rest, TLS 1.3 in transit, role-based access controls and full audit logging on monitored infrastructure. Keys rotate on a schedule and every access to data is recorded.

How we keep you protected

GDPR compliant

Full UK & EU data protection compliance.

  • A documented lawful basis for every processing activity
  • Data minimisation — we only process what an enquiry needs
  • Right to erasure and data portability fully supported
  • Data Processing Agreements provided to every customer
  • Data Protection Impact Assessments on higher-risk processing

Enterprise-grade encryption

Protected at every stage of the flow.

  • AES-256 encryption for all data at rest
  • TLS 1.3 for all data in transit
  • End-to-end encryption on sensitive actions
  • Encryption keys rotated on a regular schedule
  • No plaintext storage of credentials or personal data

EU AI Act ready

Transparent, accountable AI with human oversight.

  • Every automated decision is explainable and auditable
  • Human-in-the-loop approval on high-value actions
  • No opaque 'black box' decisions on consequential outcomes
  • Bias monitoring and fairness checks built in
  • Documented capabilities and limits for each workflow

SOC 2 aligned

Infrastructure built on trust service principles.

  • Security, availability and confidentiality controls in place
  • Role-based access with least-privilege permissions
  • Continuous monitoring and incident response procedures
  • Vendor risk assessments on every third-party connection
  • Regular penetration testing and vulnerability scanning

Our data principles

Full transparency

You always know what data we read, what we write back, and why. Complete documentation on request.

Audit-ready

Every reply, quote and booking is logged with a timestamp and decision trail your team can review.

Your data, your control

We never sell, share or repurpose your data. It stays in your systems — we automate the process around it.

UK data residency

Processing and storage stay within UK/EU jurisdictions. No unexpected cross-border transfers.

It's time to let every channel run itself

Enquiries come in everywhere. We make sure none of them get missed — and every one gets actioned automatically.

  • Works with the tools you already use
  • No enquiry left unanswered
  • Handles the back-and-forth, not just the first reply

What enquiries cost you

Add your team's monthly wage bill and the hours they lose to enquiries each week.

Per week

£665

Per month

£2,880

Per year

£34,560

That's roughly 83 working days a year on enquiry admin, at an effective £55/hour. Most of it is work we can action for you.

How we work
Book a meeting20 minutes, no prep needed
DiscussionWhere enquiries land and stall
Audit of systemsInbox, CRM, diary, rate card
DevelopmentYour actions built and tested
Roll outLive, monitored, tuned weekly
✓ Every channel running itself