Legal

Privacy Policy

Effective Date: June 12, 2026

Privacy at a glance

  • We collect information needed to run AgentReception AI and support business communications.
  • Businesses control much of the customer and lead data inside their workspace.
  • SMS, calls, and WhatsApp are used for customer care and appointment workflows.
  • We do not sell personal information as a core business model.
  • Live subscription billing and checkout may be unavailable until separately enabled for your account.
  • Businesses and customers can contact us about privacy requests using the details below.

Notice at collection

This summary describes the main categories of personal information we collect, why we collect them, and who may receive them when you use AgentReception AI or interact with a business that uses our service.

Personal information categoryMain purposeShared with
Account and business profile dataCreate accounts, configure workspaces, and operate the serviceService providers; authorized workspace staff
Customer and lead dataHelp businesses respond to, track, and follow up with contactsService providers; authorized workspace staff
Communications dataRun chat, SMS, calls, WhatsApp, inbox, and follow-up workflowsMessaging, voice, and infrastructure providers; authorized workspace staff
Appointment and calendar dataSchedule, confirm, update, and sync appointmentsCalendar and infrastructure providers; authorized workspace staff
Billing and subscription dataProcess subscriptions, usage, invoices, and payment statusPayment processor and billing-related service providers
Usage, log, and security dataOperate, secure, troubleshoot, and improve the platformInfrastructure, security, and analytics service providers where used
Consent and opt-out recordsHonor messaging preferences and support lawful communications practicesMessaging providers and authorized workspace staff where relevant

Introduction

This Privacy Policy explains how AgentReception AI collects, uses, shares, and protects information when you visit our website, create an account, use our platform, or interact with a business that uses our service. We wrote this policy in clear language so business owners, staff, and end customers can understand what to expect.

Who we are

AgentReception AI (“AgentReception AI,” “we,” “us,” or “our”) provides an AI receptionist software service for appointment-based and service businesses such as salons, barbers, med spas, dental offices, cleaning companies, auto repair shops, and home service providers. Our website is agentreceptionai.com.

What this policy covers

This policy applies to information collected through our website, web application, chat widget, messaging channels, voice features, billing flows, cookies or similar technologies, and support interactions connected to AgentReception AI. It describes both information about business users who subscribe to the service and information processed on behalf of those businesses about their customers and leads.

Business customers and end customers

Business users

Business users are the companies, owners, and authorized staff who subscribe to AgentReception AI and configure a workspace. They decide how the service is used, what business information is uploaded, and which channels are enabled.

End customers

End customers are people who contact a business through website chat, SMS, phone calls, WhatsApp, appointment requests, or other channels connected to AgentReception AI. End customers do not typically have a direct account with us.

Who controls what

Businesses may control customer, lead, conversation, and appointment data inside their workspace. In many cases, an end customer who wants access, correction, deletion, or export of information held about them by a business should contact that business directly. We may help our business customers respond to certain requests when appropriate, permitted by law, and consistent with our agreements with them.

Business customer responsibilities

Business users are responsible for:

  • Having permission to contact their customers through the channels they enable.
  • Keeping business information, hours, services, and AI training content accurate.
  • Using SMS, calls, and WhatsApp in accordance with applicable law and carrier requirements.
  • Handling customer and lead data inside their workspace responsibly.
  • Reviewing AI-generated replies before sending sensitive or high-impact messages.

Information we collect

The information we collect depends on how you use AgentReception AI and your role as a business user or end customer. The table below summarizes the main categories.

CategoryExamplesWhy we collect it
Account informationName, email, login credentials, workspace role, notification preferencesCreate and manage business user accounts and access controls
Business profile informationBusiness name, address, hours, services, branding, staff details, AI training contentConfigure the receptionist experience and represent the business accurately
Customer and lead informationNames, phone numbers, emails, inquiry details, lead status, notes, tagsHelp businesses track, respond to, and follow up with prospects and customers
Communications dataChat messages, SMS, WhatsApp threads, inbox content, follow-ups, delivery statusProvide messaging, inbox, and customer-care workflows across channels
Call and voice dataCall metadata, summaries, transcripts, voice agent interactions, appointment details from callsSupport phone reception, call handling, and appointment-related voice workflows
Appointment and calendar dataBooking requests, availability, calendar events, sync statusSchedule, confirm, update, and display appointments when calendar tools are connected
Billing and subscription dataPlan, usage, invoices, payment status, limited card details from the payment processorProcess subscriptions, track usage, and maintain billing records
Usage, log, and device dataIP address, browser type, device info, feature usage, error logs, security eventsOperate, secure, troubleshoot, and improve reliability of the platform
Support and contact dataSupport tickets, emails, forms, and other messages sent to our teamRespond to questions, resolve issues, and communicate about the service
Consent and opt-out recordsSMS consent indicators, STOP/HELP replies, opt-out timestamps, related audit logsSupport lawful messaging practices, carrier requirements, and compliance records

We collect this information directly from business users, from end customers when they contact a business, from connected integrations, from service providers that help us operate the platform, and automatically through use of the service.

How we use information

We use information to operate AgentReception AI and support the businesses that rely on it, including to:

  • Provide, maintain, personalize, and improve the service.
  • Run website chat, inbox, SMS, phone calls, WhatsApp messaging, appointments, follow-ups, voice agent features, and AI-assisted workflows.
  • Notify businesses and, where permitted, their customers about service-related activity.
  • Process subscriptions, usage tracking, invoices, and billing.
  • Detect abuse, troubleshoot issues, monitor reliability, and protect security.
  • Respond to support requests and communicate about product or account matters.
  • Maintain consent, opt-out, and messaging compliance records where required by carriers, providers, or law.
  • Comply with legal obligations, enforce our terms, and meet provider requirements.

SMS, calls, and WhatsApp privacy

AgentReception AI is built for customer care and appointment-related communications. It is not intended for cold outreach, purchased contact lists, or unsolicited marketing blasts. If a separate marketing feature is introduced in the future, it would require appropriate consent, notice, and controls.

SMS and messaging

  • Messages are intended for customer care, appointment confirmations, reminders, replies, and support related to an existing or requested business relationship.
  • When a business collects a phone number for SMS follow-up, the business is responsible for obtaining any consent required before messaging through AgentReception AI.
  • Recipients may reply STOP to opt out of further text messages and HELP for help.
  • Message frequency varies depending on the conversation and business activity.
  • Message and data rates may apply depending on the recipient's mobile carrier and plan.
  • AgentReception AI may retain consent, opt-out, and related messaging logs for compliance, audit, and carrier or provider requirements.

Calls and voice features

  • Phone calls may be handled by an AI voice receptionist when a business enables that feature, primarily for customer care and appointment workflows.
  • Depending on configuration, call summaries, transcripts, call metadata, routing details, and appointment information discussed during a call may be stored in the workspace.
  • Businesses are responsible for using call recording, transcription, or AI voice features in accordance with applicable law, including any notice or consent requirements in their jurisdiction.

WhatsApp

When WhatsApp is enabled, message content and related metadata are processed to support inbox, customer-care, and appointment-related conversations connected to the business workspace.

AI processing

AgentReception AI may use automated and AI-assisted tools to draft replies, summarize conversations, classify leads, suggest next steps, route inquiries, and support chat or voice interactions.

  • AI features may use business-provided information, customer messages, conversation history, and related workspace context.
  • AI output is meant to assist businesses and should not be treated as perfect or final.
  • AI can make mistakes, omit important details, or generate responses that are inappropriate for a given situation.
  • Businesses remain responsible for reviewing sensitive, regulated, or high-impact communications before sending them to customers.
  • Businesses should avoid uploading unnecessary sensitive information unless it is needed to operate the service responsibly.
  • Whether AI provider data is used for model training or other secondary purposes depends on the applicable provider settings and contractual terms in place at the time. We do not make blanket promises about AI data use beyond what our agreements and product configuration support.

Connected services and third-party providers

We use service providers to help deliver AgentReception AI. When a business connects an integration, we access only the data reasonably needed to provide the connected feature.

  • Google Calendar: create, update, sync, and display appointment-related events when a business connects calendar access.
  • Twilio: SMS, voice calls, and WhatsApp messaging infrastructure.
  • Stripe: subscription billing and payment processing.
  • Resend: transactional email notifications such as account or service messages.
  • Supabase: database, authentication, and related platform infrastructure.
  • AI providers: AI-assisted features such as reply drafting, summarization, or voice support, where used.

Businesses can disconnect supported integrations where account or provider controls allow. Disconnecting a service may limit related features until it is reconnected.

Payment data

When live billing is enabled for an account, subscriptions and payments are processed by Stripe. Payment information is submitted directly to Stripe under Stripe's privacy and security practices. We receive limited billing details such as the last four digits of a card, card brand, billing address, and transaction status to manage subscriptions and maintain billing records. We do not store full payment card numbers on our systems unless a future implementation explicitly states otherwise.

Checkout, subscription changes, and live charges may be disabled during test mode, controlled rollout, or maintenance. When disabled, no live payment data is collected through checkout flows in the Service.

Cookies, analytics, and technical data

We may use cookies, session storage, local storage, or similar technologies for login and session management, security, preferences, and core product functionality.

We may also use analytics or diagnostic tools to understand how the service is used, identify issues, and improve reliability. The specific tools in use may change over time as we evaluate privacy, performance, and operational needs.

Where required by law or where we offer meaningful choices, we will describe applicable cookie or analytics controls in product settings or an updated version of this policy. This section does not name every vendor or tool that may be used during rollout.

How we share information

We may share information in the following situations:

  • Service providers: with vendors that help us host, secure, message, bill, email, sync calendars, or otherwise operate the platform.
  • Business users and authorized staff: with the business account and team members authorized to access a workspace.
  • Legal and safety reasons: when we believe disclosure is required by law, regulation, legal process, or to protect rights, safety, and security.
  • Business transfers: in connection with a merger, acquisition, financing, reorganization, or sale of assets, subject to appropriate safeguards.
No sale as a core business model. AgentReception AI does not sell personal information as a core business model. We share information to deliver the service, support our customers, and meet legal or operational requirements.

Data retention

We retain information only as long as reasonably necessary for the purposes described in this policy. Examples include:

  • Account and workspace data: retained while the account is active and for a reasonable period afterward if needed for closure, dispute resolution, or legal requirements.
  • Billing records: retained as needed for accounting, tax, fraud prevention, and legal obligations.
  • Conversation, lead, and appointment records: retained while the workspace is active or until deleted or exported through future account tools or a support request, subject to applicable law and legitimate operational needs.
  • Security and reliability logs: retained for a limited period where possible to investigate incidents, maintain service integrity, and protect the platform.
  • Consent and opt-out records: retained as needed to honor messaging preferences and meet compliance or audit requirements.

We have not stated fixed retention day counts here because retention may vary by data type, account status, legal requirements, and product capabilities over time.

Data security and limitations

We use reasonable administrative, technical, and organizational safeguards designed to protect information against unauthorized access, loss, misuse, or alteration. These measures may include access controls, encryption in transit where supported, monitoring, and internal policies for handling customer data.

  • No method of transmission or storage is completely secure.
  • We cannot guarantee absolute security against all threats.
  • AgentReception AI does not claim SOC 2 certification, HIPAA compliance, or similar formal certification unless and until such status is formally achieved and publicly disclosed.

Customer data controlled by businesses

Businesses that use AgentReception AI may control customer, lead, conversation, and appointment data inside their workspace. End customers may need to contact the business directly for some privacy requests relating to information the business collected or generated through its customer relationships.

Your choices and privacy rights

Depending on your relationship with AgentReception AI and where you live, you may have choices such as:

  • Accessing or updating account information through workspace settings.
  • Requesting correction of inaccurate account information.
  • Requesting deletion of account-related information, subject to legal and operational limits.
  • Requesting export of certain information through future account tools or support.
  • Opting out of SMS by replying STOP to a message sent through the platform.

How to submit a privacy request

Email privacy@agentreceptionai.com and include:

  • Your name and email address.
  • Your business or workspace name, if applicable.
  • The type of request you are making, such as access, correction, deletion, or export.
  • Enough detail for us to locate the relevant account or request.

We may need to verify your identity or account relationship before fulfilling a request. Some requests from end customers may need to go through the business that controls the relevant workspace data. We will handle valid requests in accordance with applicable law, but we have not stated fixed response timelines here pending legal review.

Additional privacy rights may apply depending on your location, including California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA) rights where relevant.

Children's privacy

AgentReception AI is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, please contact us and we will take appropriate steps to review and address the request.

International users

AgentReception AI is operated from the United States. If you access the service from outside the United States, your information may be processed in the United States or in other countries where we or our service providers operate. Those locations may have different data protection laws than your home country.

Changes to this policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the effective date and provide additional notice when appropriate, such as by email, in-product notice, or a prominent notice on our website. Your continued use of the service after an update becomes effective means you have reviewed the revised policy.

Contact us

If you have questions about this Privacy Policy or our privacy practices, contact us at:

Important limitations

  • This Privacy Policy is a business-ready draft and should be reviewed by legal counsel before production launch.
  • AgentReception AI does not currently claim SOC 2, HIPAA, or similar certification unless that status is later formally achieved and published.

© 2026 AgentReception AI. All rights reserved.

This Privacy Policy draft is original to AgentReception AI and may not be copied or reused without permission.