Security isn't a feature we added later — it's how Xentral is built. Every company is a fully isolated tenant, credentials are encrypted at rest, access is governed by clear roles, and you bring your own email, WhatsApp and AI keys so you stay in control of the tools that touch your data.
Workspace-isolated tenants · AES-256-GCM encryption at rest · Role-based access · audit logging
Roles & access
Tenant isolatedWhen several businesses share one platform, the most important guarantee is that one company can never see another's data. In Xentral, every workspace is a sealed tenant: contacts, conversations, mailboxes, numbers, documents and keys are scoped to your company and accessible only to the users you authorise.
Sensitive credentials — your email, WhatsApp and AI provider keys — are encrypted at rest with AES-256-GCM, never written to logs and never exposed back to the browser. They're used only to operate the service on your behalf.
Inside your workspace, access follows the principle of least privilege. Roles such as Owner, Admin, Manager, Sales and Support each see only what they need, and sensitive actions are gated and recorded.
Every query in Xentral is scoped to your company. There are no shared mailboxes, numbers or records between tenants, and cross-tenant access paths are removed by design — even platform administration respects the boundary for customer data.
Roles & access
Tenant isolatedEmail, WhatsApp and AI provider credentials are sealed with AES-256-GCM encryption at rest. Because you bring your own keys, you decide which providers power your workspace, and you can rotate or revoke them at any time.
Keys are never logged, never returned to the client, and resolved per user and per workspace so each team controls its own access.
Sara Khan
Procurement Lead · Acme Health LLC
Open deals
3
Lifetime
AED 48k
Health
Good
Activity
Role-based access control keeps people in their lane: Support can't touch billing, Sales can't change admin settings. Sensitive and money-related actions require permission, and AI actions run through the same checks as humans.
Important actions — including everything the AI does — are written to an audit and usage log, so you always know what changed and on whose behalf.
Open deals
42
New contacts
128
Every company is a sealed tenant — no shared data, ever.
Credentials sealed with AES-256-GCM, never logged or exposed.
Bring and control your email, WhatsApp and AI provider keys.
Least-privilege roles so people see only what they should.
Sensitive and AI actions are recorded for accountability.
Export your data, and request deletion of personal data.
Protecting proprietary customer, communication and financial data is non-negotiable. Xentral is engineered around a strict, multi-tenant security architecture designed from the ground up to prevent data leaks and maintain complete operational isolation.
Our system enforces rigid data-scoping protocols alongside Role-Based Access Control (RBAC). Employees see only the information necessary for their roles, while every API request, WhatsApp webhook payload and transaction is authenticated, logged and shielded against modern threats.
Absolute isolation across company workspaces to guarantee zero data commingling.
Restrict visibility down to specific modules, fields or actions per profile.
Protect budgets via ACID-compliant operations that eliminate double-purchasing.
Rigorous validation on inbound Meta WhatsApp requests secures your channels.
Instant termination of active user sessions across all API endpoints on access removal.
SaaS Platform Security · Cloud Data Protection · Enterprise Access Control · RBAC Architecture
A growing business requires clear internal structure. Xentral Team Management provides a centralized control center to onboard personnel, structure department visibility and audit platform activity.
By mapping your org-chart directly into Xentral, you maximize alignment. Define team boundaries, assign regional accounts to exact divisions, and monitor macro-level productivity across your growing workforce.
Add, modify or deprecate seat allocations instantly from a secure admin dashboard.
Build permission structures for reps, support, accountants or external consultants.
Direct targeted lead segments and territories to matching divisions.
Monitor usage trends to verify data completeness and software adoption.
Connect independent departments to remove internal barriers.
Team Management software · User Access Governance · Employee Role Management · Workforce Optimization
Yes. Every workspace is a sealed tenant. Contacts, conversations, mailboxes, numbers, documents and keys are scoped to your company and reachable only by the users you authorise.
Email, WhatsApp and AI keys are encrypted at rest with AES-256-GCM, never written to logs and never returned to the browser. They're used only to operate the service for you.
Access follows least privilege through roles like Owner, Admin, Manager, Sales and Support. Money and admin actions require explicit permission.
Yes. The AI runs through the same role-based permission checks as people, requires confirmation for sensitive actions, and every action is logged.
Yes. You can export your workspace data, and request deletion of personal data, subject to applicable law.
Isolated workspaces, encrypted credentials, least-privilege access and your own keys. Create a workspace and see for yourself.