PRODUCT DOCS
Security & data handling
What we store about your calls, how long it lives, how it is protected, and the controls you hold — export, deletion, and disclosure.
Protection in place
The controls below are live in the product today (each is tracked in our public claims registry with code evidence):
- HTTPS enforced by HSTS (max-age 1 year, includeSubDomains, preload)
- AES-256 encryption at rest
- Rate limiting on all endpoints
- Role-based access control for tools
- Step-up authentication for sensitive actions
What we store about calls
Each answered call produces a summary, a transcript, and (when recording is enabled) a recording, all scoped to your workspace. Before a transcript is stored, text matching payment-card and Social-Security-number patterns is automatically redacted. Recordings are served only through authenticated, workspace-scoped playback in the app.
How long data lives
Retention is enforced automatically on a schedule, by plan: 30 days on trial workspaces, 90 days on standard plans, and 365 days on larger plans. Calls, transcripts, and bookings past the window are deleted by a daily job — not merely hidden.
Your controls
- Export — request a full data export from the app; a download link is emailed to you and stays valid for 24 hours.
- Deletion — account deletion runs after a 7-day grace window (so a mistaken click is recoverable) and produces a destruction certificate.
- Recording disclosure — by default every call opens with a recording disclosure, and the assistant identifies itself as an AI. If you set the disclosure to never run, call recording is turned off with it — we do not record undisclosed.
Where to look deeper
The Trust Center documents our posture claim by claim, and the Security page covers the architecture. Subprocessors and the data processing addendum are published under Legal.