Privacy Policy
1. What we collect
| Category | What it includes | Why |
|---|---|---|
| Account data | Email address, hashed password, account role (provider or caller), account creation date, email verification status. | To create and secure your account and sign you in. |
| API keys | A stored key used to authenticate your calls, and a short visible prefix shown in your dashboard. | To authenticate calls and let you identify and rotate your key. |
| Provider material | For providers: product name and description, per-call prices, skill descriptions, and the configuration material you enter to shape your capability. | To operate your capability and produce answers to calls. |
| Usage records | For each call: which account called, which capability, which verb, timestamp, the price charged, and our model compute cost. Not the request text and not the answer text. | To bill correctly, calculate provider earnings, show your history, and detect abuse. |
| Access records | Requests to call a capability and their status: pending, approved, denied, revoked, with dates. | To enforce who may call which capability. |
| Payment records | Credit purchases and balances. Payments are handled by Stripe; we never receive or store your full card number. | To sell credits and keep your balance accurate. |
| Technical data | Standard server and error logs from our hosting provider, which may include IP address, timestamps, and request paths. Rate-limiting counters held temporarily in memory. | Security, debugging, and abuse prevention. |
2. Call content: what happens to it
When you make a call, the information you provide in that request, together with the relevant parts of the provider's configuration material, is sent to our model provider (Anthropic) to generate the answer, and the answer is returned to you.
- We do not write the request text or the answer text to our database. Our usage records store only the metadata listed above.
- Our model provider processes the content in order to produce the answer, and may retain it temporarily for their own abuse-monitoring and legal purposes under their terms. It is not used to train their models on our account.
- Because content passes through third-party processing, do not send sensitive personal data through calls: no health data, government identification numbers, financial account credentials, or anyone else's confidential information you are not permitted to share.
3. Who can see what
- Providers can see the email address of accounts that request or hold access to their capability, and the calls made against their capability (verb, time, price). This is how access approval and earnings work. Providers cannot see the content of your calls, since it is not stored.
- Callers can see a provider's public product name, description, and prices. They receive answers only; they never receive the provider's underlying material.
- We can see account data, usage metadata, and provider material, for support, billing, and platform operation.
4. Service providers we use
We share data with a small number of processors, only as needed to run the service:
| Provider | Purpose | Data involved |
|---|---|---|
| Supabase | Database and authentication | Account data, provider material, usage and access records |
| Render | Application hosting | Technical and log data in transit |
| Stripe | Payment processing | Payment and card data, handled directly by Stripe under its own privacy policy |
| Anthropic | Model inference | Call content, as described in section 2 |
We may also disclose information if required by law, to enforce our terms, or to protect the rights, safety, or property of Callstand, our users, or the public. If the business is ever sold or reorganized, account data may transfer as part of that transaction; we would notify you first.
We do not sell personal data, and we do not share it with advertisers.
5. International transfers
Callstand is operated from Mexico and our service providers operate infrastructure in the United States and other countries. Using the service involves transferring your information to those countries, which may have different data protection rules than yours. We rely on our providers' standard contractual protections for these transfers.
6. How long we keep it
- Account data: while your account is open, and for a reasonable period after closure to handle disputes, chargebacks, and legal obligations.
- Usage and payment records: retained as long as needed for accounting, tax, and audit obligations, typically five years.
- Provider material: until you delete it or your account is closed.
- Server logs: short-term, as retained by our hosting provider.
- Call content: not retained by us at all (see section 2).
7. Your rights
Depending on where you live, you may have the right to access, correct, delete, restrict, or object to our use of your personal data, to receive a copy in a portable format, and to withdraw consent where we rely on it. In Mexico these are known as ARCO rights (access, rectification, cancellation, opposition).
To exercise any of these, email info@callstand.com from the address on your account. We will respond within the time required by applicable law. Note that we may need to keep certain records to meet legal or accounting obligations, and that deleting your account does not undo completed transactions or payouts. If you believe we have mishandled your data, you may complain to your local data protection authority; in Mexico, that is the competent national transparency and data protection authority.
8. Cookies and tracking
We use only what the product needs to work: browser storage to keep you signed in and to hold an unsaved draft of your work locally in your own browser. We do not use advertising cookies, third-party analytics, or cross-site tracking. Clearing your browser storage will sign you out and discard any local draft backup.
9. Security
We protect data with encryption in transit (HTTPS), hashed passwords, scoped API keys you can rotate at any time, access controls on every call, and rate limits. No system is perfectly secure, and we cannot guarantee absolute security. If a breach affects your personal data, we will notify you and any regulator as required by law. Keep your own credentials safe: your password and API keys are yours to protect.
10. Children
Callstand is for people aged 18 and over. We do not knowingly collect data from children. If you believe a child has given us personal data, contact us and we will delete it.
11. Changes to this policy
We may update this policy. If a change is material, we will give reasonable notice by email or in the product before it takes effect. The "last updated" date above always reflects the current version.
12. Contact
For privacy questions or requests: info@callstand.com.