Legal
Privacy Policy
Privacy at a glance
- We collect information needed to run AgentReception AI and support business communications.
- Businesses control much of the customer and lead data inside their workspace.
- SMS, calls, and WhatsApp are used for customer care and appointment workflows.
- We do not sell personal information as a core business model.
- Live subscription billing and checkout may be unavailable until separately enabled for your account.
- Businesses and customers can contact us about privacy requests using the details below.
Notice at collection
This summary describes the main categories of personal information we collect, why we collect them, and who may receive them when you use AgentReception AI or interact with a business that uses our service.
| Personal information category | Main purpose | Shared with |
|---|---|---|
| Account and business profile data | Create accounts, configure workspaces, and operate the service | Service providers; authorized workspace staff |
| Customer and lead data | Help businesses respond to, track, and follow up with contacts | Service providers; authorized workspace staff |
| Communications data | Run chat, SMS, calls, WhatsApp, inbox, and follow-up workflows | Messaging, voice, and infrastructure providers; authorized workspace staff |
| Appointment and calendar data | Schedule, confirm, update, and sync appointments | Calendar and infrastructure providers; authorized workspace staff |
| Billing and subscription data | Process subscriptions, usage, invoices, and payment status | Payment processor and billing-related service providers |
| Usage, log, and security data | Operate, secure, troubleshoot, and improve the platform | Infrastructure, security, and analytics service providers where used |
| Consent and opt-out records | Honor messaging preferences and support lawful communications practices | Messaging providers and authorized workspace staff where relevant |
Introduction
This Privacy Policy explains how AgentReception AI collects, uses, shares, and protects information when you visit our website, create an account, use our platform, or interact with a business that uses our service. We wrote this policy in clear language so business owners, staff, and end customers can understand what to expect.
Who we are
AgentReception AI (“AgentReception AI,” “we,” “us,” or “our”) provides an AI receptionist software service for appointment-based and service businesses such as salons, barbers, med spas, dental offices, cleaning companies, auto repair shops, and home service providers. Our website is agentreceptionai.com.
What this policy covers
This policy applies to information collected through our website, web application, chat widget, messaging channels, voice features, billing flows, cookies or similar technologies, and support interactions connected to AgentReception AI. It describes both information about business users who subscribe to the service and information processed on behalf of those businesses about their customers and leads.
Business customers and end customers
Business users
Business users are the companies, owners, and authorized staff who subscribe to AgentReception AI and configure a workspace. They decide how the service is used, what business information is uploaded, and which channels are enabled.
End customers
End customers are people who contact a business through website chat, SMS, phone calls, WhatsApp, appointment requests, or other channels connected to AgentReception AI. End customers do not typically have a direct account with us.
Who controls what
Businesses may control customer, lead, conversation, and appointment data inside their workspace. In many cases, an end customer who wants access, correction, deletion, or export of information held about them by a business should contact that business directly. We may help our business customers respond to certain requests when appropriate, permitted by law, and consistent with our agreements with them.
Business customer responsibilities
Business users are responsible for:
- Having permission to contact their customers through the channels they enable.
- Keeping business information, hours, services, and AI training content accurate.
- Using SMS, calls, and WhatsApp in accordance with applicable law and carrier requirements.
- Handling customer and lead data inside their workspace responsibly.
- Reviewing AI-generated replies before sending sensitive or high-impact messages.
Information we collect
The information we collect depends on how you use AgentReception AI and your role as a business user or end customer. The table below summarizes the main categories.
| Category | Examples | Why we collect it |
|---|---|---|
| Account information | Name, email, login credentials, workspace role, notification preferences | Create and manage business user accounts and access controls |
| Business profile information | Business name, address, hours, services, branding, staff details, AI training content | Configure the receptionist experience and represent the business accurately |
| Customer and lead information | Names, phone numbers, emails, inquiry details, lead status, notes, tags | Help businesses track, respond to, and follow up with prospects and customers |
| Communications data | Chat messages, SMS, WhatsApp threads, inbox content, follow-ups, delivery status | Provide messaging, inbox, and customer-care workflows across channels |
| Call and voice data | Call metadata, summaries, transcripts, voice agent interactions, appointment details from calls | Support phone reception, call handling, and appointment-related voice workflows |
| Appointment and calendar data | Booking requests, availability, calendar events, sync status | Schedule, confirm, update, and display appointments when calendar tools are connected |
| Billing and subscription data | Plan, usage, invoices, payment status, limited card details from the payment processor | Process subscriptions, track usage, and maintain billing records |
| Usage, log, and device data | IP address, browser type, device info, feature usage, error logs, security events | Operate, secure, troubleshoot, and improve reliability of the platform |
| Support and contact data | Support tickets, emails, forms, and other messages sent to our team | Respond to questions, resolve issues, and communicate about the service |
| Consent and opt-out records | SMS consent indicators, STOP/HELP replies, opt-out timestamps, related audit logs | Support lawful messaging practices, carrier requirements, and compliance records |
We collect this information directly from business users, from end customers when they contact a business, from connected integrations, from service providers that help us operate the platform, and automatically through use of the service.
How we use information
We use information to operate AgentReception AI and support the businesses that rely on it, including to:
- Provide, maintain, personalize, and improve the service.
- Run website chat, inbox, SMS, phone calls, WhatsApp messaging, appointments, follow-ups, voice agent features, and AI-assisted workflows.
- Notify businesses and, where permitted, their customers about service-related activity.
- Process subscriptions, usage tracking, invoices, and billing.
- Detect abuse, troubleshoot issues, monitor reliability, and protect security.
- Respond to support requests and communicate about product or account matters.
- Maintain consent, opt-out, and messaging compliance records where required by carriers, providers, or law.
- Comply with legal obligations, enforce our terms, and meet provider requirements.
SMS, calls, and WhatsApp privacy
AgentReception AI is built for customer care and appointment-related communications. It is not intended for cold outreach, purchased contact lists, or unsolicited marketing blasts. If a separate marketing feature is introduced in the future, it would require appropriate consent, notice, and controls.
SMS and messaging
- Messages are intended for customer care, appointment confirmations, reminders, replies, and support related to an existing or requested business relationship.
- When a business collects a phone number for SMS follow-up, the business is responsible for obtaining any consent required before messaging through AgentReception AI.
- Recipients may reply STOP to opt out of further text messages and HELP for help.
- Message frequency varies depending on the conversation and business activity.
- Message and data rates may apply depending on the recipient's mobile carrier and plan.
- AgentReception AI may retain consent, opt-out, and related messaging logs for compliance, audit, and carrier or provider requirements.
Calls and voice features
- Phone calls may be handled by an AI voice receptionist when a business enables that feature, primarily for customer care and appointment workflows.
- Depending on configuration, call summaries, transcripts, call metadata, routing details, and appointment information discussed during a call may be stored in the workspace.
- Businesses are responsible for using call recording, transcription, or AI voice features in accordance with applicable law, including any notice or consent requirements in their jurisdiction.
When WhatsApp is enabled, message content and related metadata are processed to support inbox, customer-care, and appointment-related conversations connected to the business workspace.
AI processing
AgentReception AI may use automated and AI-assisted tools to draft replies, summarize conversations, classify leads, suggest next steps, route inquiries, and support chat or voice interactions.
- AI features may use business-provided information, customer messages, conversation history, and related workspace context.
- AI output is meant to assist businesses and should not be treated as perfect or final.
- AI can make mistakes, omit important details, or generate responses that are inappropriate for a given situation.
- Businesses remain responsible for reviewing sensitive, regulated, or high-impact communications before sending them to customers.
- Businesses should avoid uploading unnecessary sensitive information unless it is needed to operate the service responsibly.
- Whether AI provider data is used for model training or other secondary purposes depends on the applicable provider settings and contractual terms in place at the time. We do not make blanket promises about AI data use beyond what our agreements and product configuration support.
Connected services and third-party providers
We use service providers to help deliver AgentReception AI. When a business connects an integration, we access only the data reasonably needed to provide the connected feature.
- Google Calendar: create, update, sync, and display appointment-related events when a business connects calendar access.
- Twilio: SMS, voice calls, and WhatsApp messaging infrastructure.
- Stripe: subscription billing and payment processing.
- Resend: transactional email notifications such as account or service messages.
- Supabase: database, authentication, and related platform infrastructure.
- AI providers: AI-assisted features such as reply drafting, summarization, or voice support, where used.
Businesses can disconnect supported integrations where account or provider controls allow. Disconnecting a service may limit related features until it is reconnected.
Payment data
When live billing is enabled for an account, subscriptions and payments are processed by Stripe. Payment information is submitted directly to Stripe under Stripe's privacy and security practices. We receive limited billing details such as the last four digits of a card, card brand, billing address, and transaction status to manage subscriptions and maintain billing records. We do not store full payment card numbers on our systems unless a future implementation explicitly states otherwise.
Checkout, subscription changes, and live charges may be disabled during test mode, controlled rollout, or maintenance. When disabled, no live payment data is collected through checkout flows in the Service.
Data retention
We retain information only as long as reasonably necessary for the purposes described in this policy. Examples include:
- Account and workspace data: retained while the account is active and for a reasonable period afterward if needed for closure, dispute resolution, or legal requirements.
- Billing records: retained as needed for accounting, tax, fraud prevention, and legal obligations.
- Conversation, lead, and appointment records: retained while the workspace is active or until deleted or exported through future account tools or a support request, subject to applicable law and legitimate operational needs.
- Security and reliability logs: retained for a limited period where possible to investigate incidents, maintain service integrity, and protect the platform.
- Consent and opt-out records: retained as needed to honor messaging preferences and meet compliance or audit requirements.
We have not stated fixed retention day counts here because retention may vary by data type, account status, legal requirements, and product capabilities over time.
Data security and limitations
We use reasonable administrative, technical, and organizational safeguards designed to protect information against unauthorized access, loss, misuse, or alteration. These measures may include access controls, encryption in transit where supported, monitoring, and internal policies for handling customer data.
- No method of transmission or storage is completely secure.
- We cannot guarantee absolute security against all threats.
- AgentReception AI does not claim SOC 2 certification, HIPAA compliance, or similar formal certification unless and until such status is formally achieved and publicly disclosed.
Customer data controlled by businesses
Businesses that use AgentReception AI may control customer, lead, conversation, and appointment data inside their workspace. End customers may need to contact the business directly for some privacy requests relating to information the business collected or generated through its customer relationships.
Your choices and privacy rights
Depending on your relationship with AgentReception AI and where you live, you may have choices such as:
- Accessing or updating account information through workspace settings.
- Requesting correction of inaccurate account information.
- Requesting deletion of account-related information, subject to legal and operational limits.
- Requesting export of certain information through future account tools or support.
- Opting out of SMS by replying STOP to a message sent through the platform.
How to submit a privacy request
Email privacy@agentreceptionai.com and include:
- Your name and email address.
- Your business or workspace name, if applicable.
- The type of request you are making, such as access, correction, deletion, or export.
- Enough detail for us to locate the relevant account or request.
We may need to verify your identity or account relationship before fulfilling a request. Some requests from end customers may need to go through the business that controls the relevant workspace data. We will handle valid requests in accordance with applicable law, but we have not stated fixed response timelines here pending legal review.
Additional privacy rights may apply depending on your location, including California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA) rights where relevant.
Children's privacy
AgentReception AI is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, please contact us and we will take appropriate steps to review and address the request.
International users
AgentReception AI is operated from the United States. If you access the service from outside the United States, your information may be processed in the United States or in other countries where we or our service providers operate. Those locations may have different data protection laws than your home country.
Changes to this policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the effective date and provide additional notice when appropriate, such as by email, in-product notice, or a prominent notice on our website. Your continued use of the service after an update becomes effective means you have reviewed the revised policy.
Contact us
If you have questions about this Privacy Policy or our privacy practices, contact us at:
- General support: support@agentreceptionai.com
- Privacy requests: privacy@agentreceptionai.com
- Legal or formal notices: legal@agentreceptionai.com
Important limitations
- This Privacy Policy is a business-ready draft and should be reviewed by legal counsel before production launch.
- AgentReception AI does not currently claim SOC 2, HIPAA, or similar certification unless that status is later formally achieved and published.