The boundary
Everything in the box runs on your hardware. The caller’s audio enters through your trunk and never crosses the boundary.Components
Call handling
Call handling
Owns the media path: accepting the call, streaming audio in both directions, detecting when the caller interrupts, and deciding when a turn has ended. This is the component with the tightest latency budget, and the one that sits closest to your telephony.
Speech recognition
Speech recognition
Converts caller audio to text, including Najdi and other Gulf dialects and sentences that switch between Arabic and English mid-way. Runs on GPU-accelerated hosts inside your boundary.
Agent runtime
Agent runtime
Works out what the caller wants, follows the instructions you configured, decides when an action should fire, and applies your handover rules. Handover is a rule you set, not a judgement the agent makes on its own. See Handover.
Speech synthesis
Speech synthesis
Produces the agent’s audio, streaming the first words while the rest of the sentence is still being written. Emits telephony-native 8 kHz mulaw so there is no transcoding step between Voho and your trunk. See Voices.
Actions
Actions
The outbound integration layer. Each action calls one of your systems over its own API, authenticated as a service account whose permissions you control. Actions that your policy says need sign-off stop and ask. See Actions.
Records
Records
Turn-by-turn transcript, bilingual summary, and every action taken with its result: written to storage you own, under your retention policy. See Transcripts and records.
Telephony
Voho meets the phone system you already run. Audio is available as 8 kHz mulaw, which is what SIP trunks, Cisco and Avaya estates already carry, so there is no transcoding hop and no new numbers to provision.Identity and access
Operators sign in with your existing corporate identity: SAML or OIDC single sign-on, with SCIM for provisioning and de-provisioning. Roles are yours to define: reviewing calls for quality is a legitimate reason to read transcripts, and company-wide availability is not.Observability
A local dashboard, served from the deployment itself, shows usage and system health without anything leaving your network to render it. Alongside it, configuration changes, access events and exports are recorded and can be streamed to your own SIEM, so the audit trail lives in the system your auditors already read rather than in a vendor console.Licensing and egress
This is the first thing a security review tests, so it is worth stating precisely. Licensing does not require a live connection. The deployment checks a signed licence file held locally. It keeps running whether or not it can reach anything outside your network, and if a licence is not renewed in time it degrades gracefully rather than cutting the line off mid-call. Usage metering is reported back periodically for billing. This is the one outbound flow in a standard deployment. Your records (audio, transcripts, summaries and the action log) are written to your storage and are not what this flow is for. Ask for the exact contents in writing during scoping, the same way you would of any vendor.Next
Requirements
Hardware, software and network prerequisites.
Operations
Running it after go-live.

