{{ tr.glossH }}
{{ tr.glossP }}
{{ g.t }}
{{ g.d }}
VoicePilot Features Commands Platforms Integrations Security Pricing EN Start free trial Back to Security Technical architecture The full Azure data path The detailed view for technical decision-makers — aligned with the Microsoft Foundry Chat Baseline. The animated path runs from the client via Application Gateway (WAF) and Load Balancer into the App Service, over Private Link into Azure AI Foundry and to the OpenAI models — and back the same private way. Self-hosted SaaS · EU Reference: Microsoft Foundry Chat Baseline VoicePilot · Technische Architektur — Self-hosted Azure-Referenzarchitektur · Microsoft Foundry Chat Baseline · End-to-End-Datenfluss Region: frei wählbar Client-Apps beim Kunden macOS Teams Windows iOS · Android Web · M365 HTTPS · TLS 1.2 Kunden-Subscription · Ihr Azure-Tenant Microsoft Entra Tenant des Kunden Microsoft Entra ID Managed Identity · OAuth2 / SSO Azure Monitor App Insights · Log Analytics DDoS Protection Virtual Network · vnet-voicepilot · 10.0.0.0/16 snet-appGateway · 10.0.1.0/24 snet-appServicePlan · 10.0.2.0/24 snet-agentsEgress · 10.0.4.0/24 · delegated snet-privateEndpoints · 10.0.3.0/24 Application Gateway WAF · Layer 7 · TLS-Offload Load Balancer Layer 4 App Service — VoicePilot API Zone-redundant · VNet-Integration · System-assigned MI Azure Firewall — Egress ausgehend nur geregelt · Default-Deny Private Endpoint → Foundry Private Link · privater DNS Private Endpoint → Key Vault Secrets · Zertifikate · Keys Private Endpoint → Storage Blob · Agent-State Private Endpoint → AI Search Grounding / RAG (optional) Azure AI Foundry Foundry — Account + Project Foundry im Kunden-Tenant gpt-4o · Chat / Reasoning Azure OpenAI · Deployment gpt-4o-realtime · Whisper Speech-to-Text · TTS Auth über Managed Identity — keine API-Keys OpenAI-Modelle laufen als Azure-Komponente — keine Datenweitergabe an OpenAI. Internet · nur geregelter Egress Sprach- & Inhaltsdaten verbleiben vollständig im Azure-Tenant des Kunden — kein Abfluss zu S2S 1 Client → Application Gateway · TLS 1.2 / WAF Self-hosted — the customer subscription — region freely selectable, voice data never leaves the tenant. Data flow step by step 1 Client → Application Gateway All apps (macOS, Teams, Windows, iOS/Android, Web in M365) connect via HTTPS · TLS 1.2 . The Web Application Firewall (OWASP) inspects every request, TLS offload at the gateway. 2 Gateway → Load Balancer → App Service The Load Balancer distributes to the zone-redundant App Service (VoicePilot API). Public access only to the gateway — the App Service is private. 3 Authentication via Entra ID The App Service authenticates via system-assigned Managed Identity against Microsoft Entra ID — no API keys. Secrets live in Key Vault. 4 App Service → Private Endpoint The request never leaves for the public internet: communication exclusively over Private Link / Private Endpoint in subnet snet-privateEndpoints with private DNS. 5 Private Link → Azure AI Foundry The Foundry project endpoint receives prompt + audio. The OpenAI models run as an Azure component inside Foundry — no data passed to OpenAI. 6 Inference: Whisper + gpt-4o Whisper / gpt-4o-realtime turns speech into text, gpt-4o generates the answer. Optional grounding via AI Search (RAG). 7 Response back to the app The answer flows back the same private path. Outbound internet traffic only via Azure Firewall (default-deny). The Azure components at a glance Each building block has a clearly scoped role — VoicePilot consistently uses native Azure services. Application Gateway + WAF Layer-7 entry with Web Application Firewall and TLS offload. The only publicly reachable endpoint. Load Balancer Distributes load to the zone-redundant App Service. Layer-4 distribution, high availability. Microsoft Entra ID Identity & access. Managed Identity instead of API keys, SSO via the M365 tenant, RBAC. Private Link / Endpoint Private, non-public connection to Foundry, Key Vault, Storage and AI Search. Azure AI Foundry Hosts the OpenAI models as an Azure component: gpt-4o for chat, Whisper for speech-to-text. Azure Firewall Controlled egress on a default-deny basis — outbound traffic only to approved destinations. An architecture review with your team? We walk through the data path together with your IT — including subnets, egress rules and the identity model. Documentation Book a call VoicePilot newsletter Product updates, new commands and hands-on tips — about once a month, unsubscribe anytime. Double opt-in; details in our Privacy . Subscribe VoicePilot The Voice OS for Microsoft 365. Self-hosted, GDPR-compliant, EU. A product of Solutions2Share GmbH. voicepilot.eu Product Features Commands Platforms Integrations Office add-ins Security Pricing Resources Hosting Blog FAQ Documentation Status Support Company Solutions2Share Contact Trust Center © 2026 Solutions2Share GmbH · Built in Germany Privacy Imprint Terms Cookie settings
VoicePilotFeaturesCommandsPlatformsIntegrationsSecurityPricingBack to SecurityDocumentationBook a callPrivacyFeaturesCommandsPlatformsIntegrationsOffice add-insSecurityPricingHostingBlogFAQDocumentationStatusSupportSolutions2ShareContactTrust CenterImprintTerms{{ tr.glossP }}
{{ g.d }}
{{ tr.ctaP }}