Legal
Privacy Policy
Last updated: October 3, 2026
TellDesk is an AI phone receptionist operated by Adel Dafi, trading as QuietBuilds ("TellDesk", "we", "us"), based in Adrar, Algeria. Our customers are businesses. This policy explains what data we handle, why, and what your choices are.
Who this policy covers
There are two groups of people whose data we handle:
- Account users: people at our customer businesses who sign in to TellDesk. For this data, TellDesk is the controller.
- Callers: people who phone a business that uses TellDesk. For this data, TellDesk acts as a processor (service provider) on behalf of that business, which decides why the data is collected.
Data we collect
Account data. Name and email (through our sign-in provider, Clerk), organization name, business profile (address, timezone, services, opening hours), notification and billing email, and the last known IP address.
Billing data. Payments are handled by Paddle, which is the Merchant of Record and seller of record. Paddle handles payment details and sales tax. We never see full card numbers. We store Paddle customer and subscription IDs.
Call data. The caller's phone number, call recordings, transcripts, call duration and outcome, AI-generated call analysis (summary and sentiment), and appointment details (customer name, phone, email, service, time and notes).
Calendar data. If you connect Google Calendar, Calendly or Cal.com, we use OAuth access to read availability and to create and cancel events. OAuth tokens are stored encrypted.
Optional exports. If you turn them on, we send call logs to your Google Sheet and send events to webhook URLs that you provide.
Website. We use reCAPTCHA on the demo-call form. Essential cookies are used for sign-in (Clerk) and security (an OAuth state nonce cookie). We store your theme choice and notification read-state in your browser's local storage. We do not use advertising cookies or trackers.
How we use data
- Provide the service: answer calls, book appointments, send confirmations and reminders, and show dashboard analytics
- Bill you and manage your subscription
- Provide support
- Keep the service secure and prevent abuse
- Improve the service
We do not sell personal data. We do not use caller data to train our own AI models.
Service providers (sub-processors)
We use these providers to run TellDesk:
- Clerk: Authentication and sign-in
- Neon: PostgreSQL database hosting
- Retell AI: Voice calls, telephony, call recordings and transcription
- Anthropic: AI processing of call transcripts to extract booking details
- Resend: Transactional email (confirmations, reminders, notifications)
- Paddle: Payments, as Merchant of Record
- Google: Calendar and Sheets when you connect them; reCAPTCHA on the website
- Calendly and Cal.com: Scheduling, when you connect them
- Inngest: Background job processing
- Hetzner: Application hosting
- Cloudflare: Storage and network services
This list may change as the product evolves. Customers can request the current list at any time by emailing privacy@telldesk.app.
Retention and deletion
We keep your data while your account is active. When an organization is deleted, we cancel its subscription and anonymize personal data in our systems: caller phone numbers, transcripts, recording links, appointment customer details and business contact information are removed or redacted.
Recordings and transcripts held by our voice provider, Retell AI, are subject to that provider's retention practices. You can contact us to request deletion. Billing records may be kept as long as the law requires.
Your rights
You can ask for access to, correction of, deletion of, or a copy of your data, and you can object to certain processing. Email privacy@telldesk.app.
If you are a caller and want to exercise these rights, please contact the business you called. We will help that business respond to your request.
International transfers
TellDesk and the providers listed above may process data in countries other than your own. Where the law requires it, we rely on appropriate safeguards for these transfers, including under the GDPR.
Security
- Data is encrypted in transit using HTTPS
- OAuth tokens are encrypted at rest
- Each customer's data is isolated from other customers
- Webhooks are signed
No system is perfectly secure, but we work to protect your data.
Changes to this policy
We may update this policy. If the changes are significant, we will let account owners know before they take effect. The date at the top shows when it was last updated.
Contact
Privacy questions: privacy@telldesk.app. General support: support@telldesk.app.