generated: '2026-07-21' method: searched source: https://verbit.readme.io/docs/authentication standards: - id: jwt-bearer-auth conforms: true evidence: Auth via short-lived JWT bearer token minted from an api_key (RFC 7519 JWT). - id: oauth2 conforms: false evidence: Custom api_key -> JWT token exchange; no standard OAuth2 authorization/token flow or scopes documented. - id: websocket conforms: true evidence: Live streaming over RFC 6455 WebSocket at wss://speech.verbit.co/ws. - id: rfc9457-problem-details conforms: false evidence: Custom error envelopes (ErrorType/ErrorComment and errors[]), not application/problem+json. - id: rrule-recurrence conforms: true evidence: Recurring orders use RFC 5545 RRULE strings. - id: soc2 conforms: true evidence: SOC 2 attestation published on the Verbit trust/data policy page. - id: iso-27001 conforms: true evidence: ISO 27001 certification published on the Verbit trust/data policy page. compliance: program_published: true certifications: [SOC 2, ISO 27001] url: https://verbit.ai/trust-data-policy/