What is STIR/SHAKEN?
​Ensuring Caller ID Integrity for a Safer Calling Experience
​
STIR/SHAKEN are industry standards designed to authenticate caller ID information using digital certificates and cryptographic techniques, aiming to reduce unwanted robocalls and combat caller ID spoofing. Specifically, STIR stands for Secure Telephone Identity Revisited, and SHAKEN stands for Signature-based Handling of Asserted Information Using toKENs. Together, these protocols allow telecommunications providers to sign and verify caller ID information as legitimate, so that consumers can have greater trust in the calls they receive.
​
The Federal Communications Commission (FCC) is leading efforts in the USA to implement STIR/SHAKEN across the telecom industry to protect consumers from fraudulent robocalls. At String Telecom, we are committed to aligning with these standards to ensure our network provides a reliable, secure calling experience for our clients and their customers.
​
How STIR/SHAKEN Works
STIR/SHAKEN functions by embedding a unique certificate of authenticity in the call data. When a call is placed, its digital signature travels along with it, allowing other carriers to verify that the call originates from a legitimate source. This verification process occurs in a series of steps:
​
Attestation Levels
Each call receives an attestation level based on the service provider’s ability to verify its source:
Full Attestation: The originating service provider has confirmed the identity of the customer and authorized their use of the calling number.
Partial Attestation: The provider has verified the call origin but cannot confirm that the customer is authorized to use the specific number.
Gateway Attestation: The provider cannot verify the source of the call but has confirmed its network entry point, common in international calls.
Authentication and Verification
As the call is routed across the network, the Identity header, containing the caller ID information, is encrypted and securely transmitted across the Public Switched Telephone Network (PSTN). The receiving carrier then decrypts and verifies the caller’s authenticity, which aids in flagging potential robocalls or spoofed calls and protecting the end recipient.
​
Consumer Assurance
When the terminating carrier successfully verifies the call, it can mark the caller ID as trustworthy, signaling to the consumer that the call is likely from a legitimate source. This transparent verification helps consumers identify calls they can trust.
The Role of STIR vs. SHAKEN
STIR technology identifies and determines whether a call is spoofed or legitimate. SHAKEN, on the other hand, manages the practical application of this verification process by ensuring that authenticated calls are handled correctly across networks. In essence, STIR identifies the trustworthiness of a call, and SHAKEN enables network providers to route those calls more effectively, minimizing the impact of robocalls on consumers.
​
International Call Compatibility
STIR/SHAKEN is currently implemented primarily within the United States and Canada, with plans for international adoption as other countries develop compatible standards. As the global telecom community aligns with these protocols, STIR/SHAKEN will expand to provide even broader protection against robocalls.
​
String Telecom’s Commitment to STIR/SHAKEN Compliance
At String Telecom, we take STIR/SHAKEN compliance seriously, going beyond the basic standards to enhance the security and reliability of our network. Our systems are equipped with industry-leading, FCC-compliant technology to authenticate calls effectively and protect our clients from spam and fraudulent calls. We also employ additional proprietary measures, such as String CallGuard, an advanced interactive voice response (IVR) technology.
​
String CallGuard uses simple interactive commands to verify if the caller is human. For instance, callers are prompted to respond with specific inputs, like “Press 2 to continue,” filtering out unwanted robocalls without requiring the intervention of your customer service or sales teams. This additional layer of protection means your business receives cleaner, more accurate call data, allowing your team to focus on genuine, high-value calls and reducing the time wasted on spam.
​
Partner with String Telecom for a Trusted Connection
With String Telecom’s STIR/SHAKEN-compliant services, you can trust that our network is designed to reduce robocalls and caller ID spoofing, creating a safer, more reliable experience for both businesses and consumers. Our commitment to STIR/SHAKEN compliance, combined with our advanced anti-robocall technology, empowers your business to maintain seamless, trustworthy communication with your customers.
String Telecom LLC – NOC / Service Disclaimer
Effective Date: September 11, 2026
String Telecom LLC operates and supports telecommunications and technology services with a focus on network reliability, service visibility, technical assistance, and timely issue response. This NOC / Service Disclaimer explains the general nature and limitations of our monitoring and support activities.
​
1. Network Operations and Monitoring
For services that include network monitoring or NOC support, String Telecom may monitor supported infrastructure, network conditions, service availability, traffic patterns, system status, and other relevant technical indicators.
Monitoring is intended to help identify potential issues and support timely troubleshooting.
Not every device, application, network component, or third-party service is necessarily included in monitoring. Coverage depends on the services purchased and the applicable service configuration.
​
2. Telecommunications Monitoring
For supported telecommunications services, String Telecom may monitor network and service conditions to identify issues affecting voice connectivity, routing, traffic handling, or other service components.
Monitoring does not guarantee that every service interruption, call-quality issue, routing problem, or technical event will be detected immediately.
​
3. IT Infrastructure Monitoring
Where included in an IT service agreement, monitoring may cover selected servers, endpoints, network devices, applications, systems, or other infrastructure.
Monitoring scope depends on the customer's environment, technical configuration, access permissions, and selected services.
​
4. Incident Response
When a monitored issue is identified, String Telecom may investigate the condition and take reasonable corrective action within the scope of the applicable service.
Response time may vary based on severity, service type, customer environment, third-party dependencies, availability of required access, and other circumstances.
​
5. Maintenance and Service Improvements
String Telecom may perform maintenance, upgrades, configuration changes, security improvements, network optimization, or other work intended to maintain or improve service performance.
Where practical, planned maintenance may be communicated in advance.
Emergency maintenance may occasionally be necessary without advance notice.
​
6. Third-Party Dependencies
Telecommunications and IT services may depend on internet providers, carriers, cloud platforms, hosting companies, software vendors, data centers, utilities, hardware manufacturers, and other third parties.
String Telecom cannot guarantee the availability or performance of infrastructure that it does not directly control.
Third-party outages or failures may affect services even when String Telecom's own systems are operating normally.
​
7. Customer Equipment and Environment
Service performance may be affected by customer-owned equipment, local networks, internet connections, power, cabling, software, security settings, configuration changes, or unsupported systems.
Customers are responsible for maintaining equipment and environments that are outside the agreed String Telecom service scope.
​
8. Security Monitoring
Where security-related monitoring is included, String Telecom may use available tools and processes to identify suspicious activity, system conditions, or potential vulnerabilities.
Security monitoring reduces risk but does not guarantee detection or prevention of every cyberattack, vulnerability, malware infection, unauthorized access attempt, or security incident.
​
9. Backups and Recovery
Customers should maintain appropriate backups of critical information unless backup and recovery services are expressly included in their agreement.
String Telecom does not assume responsibility for customer data loss solely because monitoring or technical support services are provided.
​
10. Service Availability Disclaimer
String Telecom strives to provide reliable and resilient telecommunications and IT services. However, no network or technology environment can be guaranteed to operate without interruption.
Service availability may be affected by events including:
-
Network or carrier outages.
-
Internet connectivity failures.
-
Power interruptions.
-
Hardware or software failures.
-
Cybersecurity incidents.
-
Maintenance activities.
-
Customer configuration changes.
-
Third-party service disruptions.
-
Natural disasters or other force majeure events.
Any specific uptime commitment or service credit will be governed exclusively by the applicable written service-level agreement.
​
11. No Guarantee of Error-Free Operation
Monitoring, technical support, maintenance, and NOC services are designed to reduce operational risk and improve service reliability. They do not guarantee that systems will remain free from errors, vulnerabilities, outages, performance degradation, or other technical problems.
​
12. Customer Cooperation
Effective troubleshooting may require customer cooperation, including providing system access, accurate technical information, administrative credentials through secure methods, configuration details, logs, equipment access, or timely approvals.
Delays caused by unavailable access, incomplete information, unsupported systems, or customer-controlled dependencies may affect resolution times.
​
13. Scope of Support
Support obligations are determined by the customer's selected services and applicable agreement.
Requests involving unsupported hardware, third-party software, unauthorized changes, out-of-scope infrastructure, or services not purchased from String Telecom may require additional fees or referral to the relevant provider.
​
14. Emergency and Security Actions
String Telecom may take reasonable steps to isolate, restrict, disable, or modify affected services when necessary to protect its network, customers, systems, or third parties from significant security or operational threats.
Where practical and appropriate, String Telecom will communicate relevant actions with the affected customer.
​
15. Continuous Improvement
String Telecom may use service observations, incident information, performance data, and customer feedback to improve monitoring, troubleshooting, infrastructure, and support processes, subject to applicable agreements and privacy requirements.
​
16. Contact Information
For service, network, or technical concerns, customers may contact:
String Telecom LLC
4835 E Cactus Road
Paradise Valley Corporate Center, Suite 203
Phoenix, AZ 85032, USA
Phone: 339-565-5658
Email: Ankit.sh@stringtelecom.org
Website: www.stringtelecom.org
String Telecom LLC Privacy Policy
Effective Date: November, 13, 2024
​​
String Telecom LLC (“String Telecom,” “we,” “us,” or “our”) respects the privacy of customers, website visitors, business contacts, and users of our telecommunications and IT services.
This Privacy Policy explains the types of information we may collect, how we may use it, when it may be shared, and the choices that may be available to you.
1. Information We May Collect
Depending on how you interact with String Telecom, we may collect information such as:
Contact and Business Information
-
Name
-
Business name
-
Job title
-
Email address
-
Telephone number
-
Business address
-
Information submitted through forms or inquiries
Account and Service Information
When you purchase or use our services, we may collect information needed to establish and manage your account, including service selections, account identifiers, telephone numbers, technical configurations, billing information, and service-related communications.
Telecommunications Information
Depending on the services used, telecommunications systems may generate information such as call detail records, telephone numbers, call times, routing information, usage information, and related technical data.
If call recording or similar functionality is enabled, recordings may be processed subject to the applicable service configuration, customer instructions, and applicable law.
IT and Technical Information
For IT, network, support, website, or application services, we may process technical information such as device information, system configurations, logs, diagnostic information, network information, and support records.
Website Information
When you visit our website, certain technical information may be collected automatically, such as IP address, browser type, device information, pages visited, approximate usage information, and similar technical data.
2. How We Use Information
We may use information to:
-
Provide and manage telecommunications and IT services.
-
Process orders, billing, and payments.
-
Configure and maintain customer accounts.
-
Provide technical and customer support.
-
Monitor and troubleshoot service performance.
-
Maintain network and system security.
-
Develop, maintain, and support websites and applications.
-
Communicate about services, accounts, maintenance, or support matters.
-
Detect fraud, abuse, unauthorized activity, and security incidents.
-
Meet legal, regulatory, and contractual obligations.
-
Improve our services and business operations.
3. Service Providers and Business Partners
String Telecom may work with telecommunications carriers, technology providers, hosting providers, cloud platforms, payment processors, software vendors, support providers, and other service partners.
Information may be shared with these providers when reasonably necessary to deliver, maintain, secure, or support the requested services.
Third-party providers may process information under their own privacy policies and contractual obligations.
4. Legal and Security Disclosures
We may disclose information when reasonably necessary to:
-
Comply with applicable law or legal process.
-
Respond to lawful government requests.
-
Protect customers, employees, systems, or third parties.
-
Investigate fraud, abuse, or security incidents.
-
Establish or defend legal claims.
-
Enforce agreements and policies.
5. Data Security
String Telecom uses reasonable administrative, technical, and organizational measures intended to protect information against unauthorized access, alteration, disclosure, or destruction.
However, no internet, telecommunications, cloud, or information-storage system can be guaranteed to be completely secure.
6. Data Retention
We retain information for as long as reasonably necessary to provide services, maintain business and financial records, satisfy contractual requirements, resolve disputes, address security matters, and comply with applicable legal obligations.
Specific retention periods may vary depending on the type of information and service involved.
7. Cookies and Similar Technologies
Our website may use cookies or similar technologies to support website functionality, security, preferences, analytics, or other legitimate business purposes.
Where required by applicable law, appropriate choices or notices may be provided regarding certain technologies.
8. Third-Party Websites
Our website or services may contain links to third-party websites, applications, or services.
String Telecom does not control the privacy practices of third parties. We recommend reviewing the privacy policy of any external service before providing personal information.
9. Your Choices and Privacy Rights
Depending on where you live and whether a particular privacy law applies to you, you may have rights regarding your personal information, such as rights to access, correct, delete, restrict, or obtain certain information.
The availability and scope of these rights vary by jurisdiction and circumstance.
Requests may be submitted using the contact information below. We may need to verify your identity before completing certain requests.
10. Business Customers and Customer-Controlled Data
When String Telecom provides telecommunications, managed IT, network, hosting, development, or support services, customers may provide or make available information belonging to their employees, customers, users, or other individuals.
Where applicable, String Telecom will handle such information according to the relevant service agreement, customer instructions, and applicable law.
Customers remain responsible for determining the lawful basis and appropriate notices or consents required for information they collect and instruct String Telecom to process.
11. Children's Privacy
String Telecom's services are intended primarily for businesses and are not directed toward children.
We do not knowingly seek to collect personal information from children through our business services. If you believe a child has provided personal information to us improperly, please contact us.
12. International Users
String Telecom is based in the United States. If you access our services from another country, your information may be processed in the United States or other locations where our service providers operate.
Where required, appropriate safeguards will be considered for applicable cross-border data transfers.
13. Policy Updates
We may revise this Privacy Policy as our services, technology, business practices, or legal requirements change.
The updated version will be posted through our website with a revised effective date where appropriate.
14. Contact Us
Questions or privacy requests may be directed to:
String Telecom LLC
4835 E Cactus Road
Paradise Valley Corporate Center, Suite 203
Phoenix, AZ 85032, USA
Phone: 339-565-5658
Email: Ankit.sh@stringtelecom.org
Website: www.stringtelecom.org
Important implementation note: Before publication, String Telecom should confirm its actual cookie/analytics tools, payment providers, data processors, call-recording practices, retention periods, marketing communications practices, and applicable state privacy obligations so this policy accurately reflects its operations.
String Telecom LLC Acceptable Use Policy
Effective Date: November, 13, 2024
​​
This Acceptable Use Policy (“AUP”) establishes rules for the responsible use of services provided by String Telecom LLC. It applies to telecommunications, voice, carrier, network, managed IT, technical support, website development, mobile application development, and other services provided by String Telecom.
Customers are responsible for ensuring that their employees, contractors, users, applications, and systems comply with this policy.
1. Lawful Use
String Telecom services may be used only for legitimate and lawful business purposes.
Customers may not use the services to:
-
Violate applicable laws or regulations.
-
Facilitate fraud, theft, deception, or other unlawful conduct.
-
Infringe intellectual property, privacy, or other rights.
-
Threaten, harass, abuse, or unlawfully harm another person.
-
Distribute unlawful or prohibited material.
-
​
2. Spam and Unsolicited Communications
Customers must not use String Telecom services to transmit unlawful, deceptive, abusive, or excessive unsolicited communications.
This includes prohibited bulk calling, messaging, email activity, robocalling, phishing campaigns, or other communications that violate applicable requirements.
Customers are responsible for obtaining and maintaining any consent required for their communications.
​
3. Caller ID, Numbering, and Voice Misuse
Customers may not manipulate caller identification information for fraudulent, deceptive, or unlawful purposes.
Telephone numbers, DIDs, SIP credentials, calling resources, and related services must not be used to facilitate impersonation, scams, toll fraud, traffic pumping, bypass activity, or other abusive practices.
​
4. Network Abuse
Customers may not intentionally interfere with String Telecom’s network or services or attempt to disrupt service availability for other users.
Prohibited activity includes:
-
Denial-of-service or distributed denial-of-service attacks.
-
Port or network attacks.
-
Deliberate traffic flooding.
-
Unauthorized scanning of systems.
-
Attempts to bypass network controls.
-
Activities designed to degrade network performance.
-
​
5. Unauthorized Access
Customers may not attempt to access systems, accounts, networks, applications, or data without authorization.
This includes credential theft, password attacks, exploitation of vulnerabilities, privilege escalation, unauthorized administrative access, and attempts to circumvent authentication or security controls.
​
6. Malware and Malicious Code
String Telecom services may not be used to create, distribute, host, deploy, or operate malware or malicious code intended to compromise systems or cause unauthorized damage.
Examples include ransomware, destructive software, credential-stealing tools, botnets, malicious scripts, and other harmful code.
​
7. Fraud and Impersonation
Customers may not use String Telecom services to impersonate another person, organization, business, government entity, or service provider for fraudulent or deceptive purposes.
Services must not be used to facilitate financial scams, identity theft, account takeovers, fraudulent transactions, or similar activities.
​
8. IT and Managed Services
Customers receiving IT services must not intentionally interfere with monitoring, security controls, administrative systems, endpoint management tools, backups, or other technologies deployed as part of the service.
Customers must provide accurate information and reasonable cooperation when String Telecom is diagnosing or addressing technical or security issues.
​
9. Network and Security Testing
Security assessments, penetration testing, vulnerability scans, or other testing against String Telecom-managed infrastructure may only be conducted with prior written authorization.
Customers must not conduct testing against systems they do not own or have permission to assess.
​
10. Website and Application Development
Website and mobile application development services may not be used to create technology intended primarily to facilitate unlawful activity, fraud, malware distribution, unauthorized surveillance, credential theft, or other malicious conduct.
Customers are responsible for ensuring that content and functionality requested for development projects comply with applicable law.
​
11. Data and Privacy
Customers must not use String Telecom services to unlawfully collect, expose, process, transmit, or distribute personal, confidential, financial, healthcare, or other protected information.
Customers are responsible for identifying applicable privacy and data-protection obligations associated with their use of String Telecom services.
​
12. Resource Abuse
Customers must not consume network, computing, storage, bandwidth, calling, or other resources in a manner that materially interferes with services provided to String Telecom or other customers.
String Telecom may take reasonable steps to protect network stability and service quality.
​
13. Security of Customer Accounts
Customers are responsible for protecting usernames, passwords, SIP credentials, API keys, administrative accounts, and other authentication information.
Suspected credential compromise should be reported to String Telecom promptly.
​
14. Enforcement
If String Telecom reasonably believes that activity violates this AUP or creates a security, legal, operational, or network risk, it may take appropriate action.
Depending on the circumstances, actions may include:
-
Requesting corrective action.
-
Blocking or restricting specific activity.
-
Temporarily suspending affected services.
-
Disconnecting abusive traffic or accounts.
-
Investigating suspected misuse.
-
Terminating services where permitted.
-
Reporting suspected unlawful conduct to appropriate authorities.
Emergency action may be taken without prior notice when necessary to protect systems, networks, customers, or third parties.
​
15. Customer Cooperation
Customers agree to cooperate reasonably with investigations involving suspected abuse, security incidents, fraud, or unlawful activity associated with their accounts or services.
​
16. Reporting Abuse
Suspected abuse, fraud, security incidents, or unauthorized activity involving String Telecom services should be reported promptly.
String Telecom LLC
4835 E Cactus Road
Paradise Valley Corporate Center, Suite 203
Phoenix, AZ 85032, USA
Phone: 339-565-5658
Email: Ankit.sh@stringtelecom.org
​
17. Policy Changes
String Telecom may update this AUP as technology, services, security requirements, and applicable laws evolve.
The current version published or otherwise communicated by String Telecom will apply to continued use of the services, subject to applicable agreements and law.