# Privacy Policy

Effective August 26, 2026

This policy explains what InboxTender collects, why we collect it, who we share it with, how long we keep it, and how to get it deleted. It is written to be read, not to be survived.

**This page is operated by InboxTender.** InboxTender is a software service that answers calls, texts, chats and email on behalf of the businesses that subscribe to it. If you reached this page from a message, a call or an email you received, the business you contacted uses InboxTender — the business remains your point of contact, and this document explains our role behind it.

## 1. Who this policy covers

InboxTender is an AI front desk. Businesses subscribe to it, brief it on what they sell and how they work. It answers phone calls, text messages, WhatsApp and Instagram messages, and prepares email replies for human approval on their behalf.

Two different groups of people show up in this policy:

- Customers — the businesses and their team members who hold an InboxTender account.
- Contacts — the people who call, text, message or email one of those businesses and have their conversation handled by InboxTender.

For customer account data we act as the controller. For conversation data we act as a processor on behalf of the business you contacted: they decide what the assistant knows and says, and they remain your point of contact. Where a request reaches us that only the business can decide, we pass it to them and tell you we have.

## 2. What we collect

### Account and billing information

- Name, business name and email address from the sign-in method you choose.
- Payment details are handled by our payment processor. We receive the billing status, the last four digits and the card brand; we never store full card numbers.

### What you tell the assistant

- Business configuration: hours, locations, inventory or services, prices, policies, tone of voice, escalation rules and autonomy settings.
- Any files, listings or notes you upload so the assistant can answer accurately.

### Phone and SMS registration information

- When a workspace owner requests a Front Desk phone and SMS line, we collect the business's legal name, entity type, registered address, industry, website, public privacy-policy and terms URLs, and the registration contact's name, email address and phone number. A registered entity also provides its EIN. A sole proprietor provides none, and is instead verified as a person by a one-time code the carrier texts to that contact number.
- This self-serve registration currently requires a United States-based business. The owner must submit the business's real identity and must not select a different entity type to work around carrier rules.

### Conversation data

- Phone calls: for calls answered by the assistant, the text transcript, generated summary and lead details captured from the conversation. Live audio is processed to operate the call, but InboxTender does not retain an audio recording as conversation data.
- Messages: the content of SMS and MMS messages, WhatsApp messages, Instagram direct messages, and emails sent to or from the connected channels, including attachments and images.
- Metadata: phone numbers, email addresses, social handles, timestamps, call duration, channel, delivery and read status, which replies were sent automatically versus written by a human, and who made each broadcast-consent attestation and when.
- Lead details: the facts the assistant extracts from a conversation — what someone asked about, a preferred appointment time, a budget or timeline they volunteered.

### Technical data

- Log data such as IP address, browser and device type, pages viewed and errors encountered.
- Cookies strictly necessary to keep you signed in and to keep the service secure. We do not run advertising cookies or third-party ad-tech on this site.

## 3. How we use it

- To receive, understand, answer and route calls and messages.
- To generate replies in your business's voice, hold every email reply for human approval, and hold other replies as drafts when configured.
- To capture leads, show them in the shared inbox, deliver them to CRM destinations you configure, collect preferred appointment details, send follow-ups you have configured, and create personalized broadcasts a workspace owner approves.
- To operate the account: authentication, billing, receipts, support requests and service notices.
- To keep the service safe and working: preventing abuse and spam, diagnosing failures, and measuring reliability such as delivery success and response time.
- To comply with law and to enforce our terms.

**We do not sell personal information**, and we do not share it for cross-context behavioral advertising. We do not use the content of your conversations to advertise to you or to anyone else.

## 4. AI processing

Answering a call or a message means sending the relevant content to specialist model providers: speech recognition to turn call audio into text, a language model to work out and write the reply, and speech synthesis to say it out loud. The same applies to messages, minus the audio steps.

- Providers receive only what is needed to produce the reply: the conversation in progress, the business briefing, and the relevant history with that contact.
- We use these providers under agreements that prohibit them from using data submitted through their APIs to train their models, and we do not use your conversations to train models of our own.
- AI-generated replies can be wrong. The assistant is instructed never to invent prices, availability or commitments, and to hand anything it is unsure about to a human — but the business using it remains responsible for what is said in its name.

## 5. Who we share it with

- The business you contacted. Everything the assistant handles is visible to that business in their inbox. That is the point of the product.
- Service providers who make the service work, each limited to what their job requires: telephony and messaging carriers, the WhatsApp and Instagram platforms, email delivery and receipt, cloud hosting and database, AI model providers, payment processing, and error monitoring. A current list of these subprocessors is available on request at hello@inboxtender.com .
- Telephony and messaging registration providers. When a workspace owner requests phone and SMS registration, we share the submitted legal entity identity, EIN, registered address, industry, website and policy URLs, and registration contact details with the carriers and their registration partners that verify the business, review the submission and operate the line. Those third parties process the submission under their own terms and legal obligations.
- Legal and safety: when we are legally required to, or where it is necessary to investigate fraud, abuse or a threat to someone's safety.
- A business transfer: if InboxTender is acquired or merged, data may transfer with it; this policy continues to apply until it is replaced by one you are told about.

**Mobile opt-in data and consent are never shared with third parties for marketing purposes.**

## 6. Calls, transcripts and disclosure

- Every call answered by InboxTender opens with a disclosure that the caller is speaking to an AI assistant and that the call will be transcribed.
- Telephony and AI providers process the live audio needed to carry and answer the call. InboxTender stores the resulting transcript, summary, call metadata and captured lead details, not an audio recording.
- Businesses using InboxTender are responsible for complying with the notice, consent, transcription and privacy laws where they and their callers are located.

## 7. Text messages, consent and opting out

- InboxTender sends texts on behalf of a business, including replies, first texts and relevant follow-ups when SMS permission is recorded. Permission can come from an inbound service conversation or an existing permission the business records with its source, date, purpose and staff member. Promotional broadcasts require separate promotional permission and workspace owner approval.
- Before each broadcast, the owner must attest that every selected recipient separately agreed to receive promotional texts. Prior inbound SMS history alone does not grant that permission. The business remains responsible for the consent it records and attests.
- Reply STOP to any message to stop receiving them. UNSUBSCRIBE, CANCEL, END and QUIT work the same way. Reply HELP for help, or contact the business directly.
- Opt-out requests are honored immediately and automatically, on that number, for that business.
- Message frequency varies with the conversation. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages.

## 8. Sign-in and optional email connection

### Signing in

You can sign in with a link sent to your email address or with Google. If you use Google, we receive your name, email address, profile picture and Google account identifier — only to create and authenticate your InboxTender account. Signing in does not give us access to Gmail, Drive, Calendar or Contacts.

### Connecting Google email

A workspace owner can separately choose to connect a Gmail or Google Workspace account. Immediately before asking Google for permission, we explain that InboxTender requests send-only access. We use that access only to send customer replies that a workspace member approves or writes; we cannot read, change or delete the connected inbox. Connecting Google changes the sending identity, not the workspace's approval settings. The message content is sent to Google for delivery and the reply appears in the account's Sent folder. We set the workspace's InboxTender-managed lead address as the reply address so customer responses return to the assistant and remain in the same InboxTender conversation.

We store the connected account's primary email address, Google account identifier, granted scope and encrypted OAuth tokens. We do not request access to aliases, contacts, Drive or Calendar. The workspace owner can disconnect the account from the Channels page at any time. Disconnecting immediately removes the connection. If it is the last workspace using that Google account, we keep one encrypted cleanup copy for no more than 24 hours solely to retry Google's revocation endpoint, then delete it; encrypted backup copies age out within 30 days. If Google cannot confirm revocation, we tell the owner to remove InboxTender from their Google Account. Future replies then use the workspace's InboxTender-managed address.

InboxTender's use and transfer to any other app of information received from Google APIs will adhere to the [Google API Services User Data Policy](https://developers.google.com/terms/api-services-user-data-policy), including the Limited Use requirements. We share Google user data only with service providers needed to operate and secure the reply-delivery feature, under confidentiality and data-use restrictions. We do not use Google user data to train or improve a generalized AI model, for advertising, or for sale to third parties.

See our [Google email connection guide](https://inboxtender.com/google-email) for connection, disconnection, and data-deletion instructions.

## 9. How long we keep it

- Account data: for as long as the account exists, then up to 30 days after closure, except where we must keep billing records longer for tax and accounting law.
- Conversations and transcripts: for as long as the account exists, because the assistant needs the history to answer a returning customer sensibly.
- Backups: deleted data disappears from encrypted backups within 30 days on the normal rotation.

## 10. Your choices and rights

Depending on where you live, you may have the right to access, correct, delete, export or restrict the use of your personal information, and to object to certain processing. To exercise any of these, email [hello@inboxtender.com](mailto:hello@inboxtender.com) from the address associated with the request, or from the phone number or email address involved in the conversation.

- Deletion on request. We act on verified deletion requests within 30 days and confirm when it is done. Account holders can also ask us to delete a single conversation.
- If you contacted a business. Because that business controls its own inbox, we forward your request to them and delete what is ours to delete.
- Marketing. We send account and service emails; any product announcements have an unsubscribe link.
- We will never charge you or degrade your service for exercising a privacy right.

## 11. Security

Data is encrypted in transit and at rest with our infrastructure providers, access is restricted to the people who need it to run the service, and secrets and credentials are stored in managed secret storage. No system is perfectly secure; if a breach affects your data we will notify you and any regulator we are required to notify, without undue delay.

## 12. Children

InboxTender is a business tool and is not directed to children under 16. We do not knowingly collect their personal information; if we learn that we have, we delete it.

## 13. Where data is processed

InboxTender is operated from the United States and data is processed there and in the regions our infrastructure providers operate. If you contact us from outside the United States, your information is transferred there under appropriate safeguards.

## 14. Changes to this policy

When this policy changes we update the effective date at the top, and for material changes we notify account holders by email before the change takes effect.

## 15. Contact

Privacy questions, requests and complaints: [hello@inboxtender.com](mailto:hello@inboxtender.com). We answer every one of them, usually within two business days.

Questions about this document? Email [hello@inboxtender.com](mailto:hello@inboxtender.com).

---

Canonical HTML: https://inboxtender.com/privacy

More from InboxTender: [Home](https://inboxtender.com/) · [About](https://inboxtender.com/about) · [Contact](https://inboxtender.com/contact) · [API docs](https://inboxtender.com/docs) · [llms.txt](https://inboxtender.com/llms.txt) · [Sitemap](https://inboxtender.com/sitemap.xml)
