Trust & security
Security & compliance.
How we protect your data and your customers'.
UK GDPR compliant
We follow the UK GDPR. We use Standard Contractual Clauses for any data leaving the UK or EEA. A Data Processing Agreement (DPA) is available for B2B customers — request at MissedCallHelpAI@gmail.com.
Encryption
All data is encrypted in transit (TLS 1.2+) and at rest (AES-256).
Sub-processors
We use these trusted services to deliver the product. Each is contractually bound to data-protection standards equivalent to UK GDPR.
- Stripe — payment processing
- Twilio — telephony and SMS
- OpenAI — language understanding
- ElevenLabs — voice synthesis
- Resend — transactional email
- Google Cloud — calendar integration & cloud storage
Data retention
Call recordings: 90 days default, configurable from 1 day to 7 years. Transcripts: 12 months default, configurable. See privacy policy for full retention terms.
Reporting a security issue
Found a vulnerability? Email MissedCallHelpAI@gmail.com with subject "Security". We respond within 24 hours.