Legal

Privacy Policy

Last updated June 25, 2026

Draft template — please have a lawyer review and tailor this before launch.

This Privacy Policy explains how Voxera ("Voxera", "we", "us") collects, uses, and protects information when you use our AI receptionist platform and website at voxeraai.com (the "Service").

Information we collect

  • Account information — your name, business name, email, and password (passwords are stored hashed by our auth provider).
  • Business configuration — your agent settings, FAQs, hours, branding, and connected integrations.
  • Conversation data — written transcripts of chats and calls handled by your AI receptionist. We keep transcripts only; we do not store call audio recordings.
  • End-customer details — information your callers provide to book (e.g. name, contact details, appointment details). You are the controller of this data; we process it on your behalf.
  • Payment information — handled by Stripe; we do not store full card numbers.
  • Usage & technical data — log, device, and usage metrics needed to operate and secure the Service.

How we use information

To provide and operate the Service — answering calls and chats, checking availability, booking appointments, sending confirmations, metering usage, processing payments, providing support, and keeping the Service secure.

Google user data

If you connect your Google account, we request Google Calendar and Gmail-send access solely to book appointments on your calendar and send confirmation emails from your address on your behalf. Voxera's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Your Google tokens are stored encrypted, and you can disconnect at any time from your dashboard.

Service providers

We share data with vendors that help us run the Service, under contract and only as needed: Supabase (database & authentication), Stripe (payments), Anthropic, Deepgram, Cartesia and LiveKit (the AI voice/chat pipeline), Google (calendar & email when you connect it), and Twilio (telephony). We do not sell personal data.

Data retention

We retain account and conversation data for as long as your account is active or as needed to provide the Service, comply with legal obligations, resolve disputes, and enforce agreements. You can request deletion as described below.

Security

We use industry-standard measures including encryption in transit, encryption of stored OAuth tokens, tenant isolation, and access controls. No method of transmission or storage is 100% secure.

Your rights

Depending on your location, you may have rights to access, correct, export, or delete your personal data. Contact us to exercise them.

Changes

We may update this policy from time to time; we'll post the new date above and, where appropriate, notify you.

Contact

Questions? Email [email protected].