Your data
How we use call data
Tuvoz places phone calls for your AI agent. This page explains, in plain words, what we keep from those calls, what we use it for, and what you can control. The Privacy Policy and the Terms are the binding versions; if this page and those documents ever disagree, they win.
The short version
- Every call opens by saying it’s an AI assistant calling for you through Tuvoz, then asks the other person if recording is okay. If they say no, the call ends and Tuvoz keeps nothing they said. Our AI voice provider processes their words live to run the call and may keep them for a limited time for abuse monitoring, as our Privacy Policy explains.
- When they say yes, we keep a written transcript of the call. Calls may be used to train AI, including by other AI companies, which only ever get de-identified transcripts: names, numbers and other details that identify people removed. Tuvoz doesn’t sell personal information.
- Free plan includes training on your calls. On a paid plan you can turn training off for new calls at any time.
- Calls about health, money or children are left out of training unless you separately opt in. Calls where we detect a child are never used. Calls to your own phone (test calls, reminders, and the calls Tuvoz makes to ask you something mid-call) are never used.
- Delete your account and we delete your call content and training records.
What we record
| What | Where it comes from | Kept as |
|---|---|---|
| The brief your agent sends: who to call, the goal, the purpose, facts it may share, limits | Your agent | Text |
| What Tuvoz’s voice agent says on the call | Tuvoz | Transcript text |
| What the other person says, from the moment they agree to recording | The person you call | Transcript text |
| Notes, questions asked mid-call, the answers you or your agent gave, and the outcome | Both sides | Text |
| Call details: number called, time, length, cost, the consent answer, opt-outs | Tuvoz | Records |
Tuvoz keeps transcripts, not audio files. Call audio streams through our phone and voice providers while the call happens.
Anything said before the other person agrees to recording (their reply to the opener, a phone menu, a voicemail greeting) is used only to run the call, and Tuvoz doesn’t keep it. The only exception is the few words of their “yes”, which we keep as proof of consent. Our AI voice provider processes it live to run the call and may keep it for a limited time for abuse monitoring (see “Who processes data for us”).
The question on every call
Right after saying who’s calling, Tuvoz asks:
“Just so you know, Tuvoz records this call, and it may be used to train AI. Other AI companies may get a transcript with names and numbers removed. Is that okay with you?”
- Yes: the call continues and is recorded as described above.
- No, or no clear answer after asking twice: Tuvoz says goodbye and hangs up. Tuvoz keeps nothing they said, and the call is never used for training. Our AI voice provider processes their words live to run the call and may keep them for a limited time for abuse monitoring, as our Privacy Policy explains.
- “Don’t call again” or pressing 9, at any point: Tuvoz ends the call and won’t call that number again for anyone.
If a different person comes to the phone, Tuvoz is built to introduce itself and ask again. Each person’s answer covers only what they say.
How calls are used for training
A call can become a training record when the person on the call agreed to recording and nothing below excludes it. A training record holds:
- the brief your agent sent for the call;
- the transcript from the moment the other person agreed, including only the people who agreed;
- the outcome, and basic facts like the kind of number called, the state, and the call length;
- which agent placed the call (Claude Code, Codex, claude.ai, Meta Muse, OpenClaw).
We use training records to train and improve AI, including Tuvoz’s own systems. We may also license them to other AI companies to train and evaluate their models, but only after removing names, phone numbers, account and confirmation numbers and other details that identify people. Those companies must agree not to re-identify anyone and not to pass the records on. We never license identifiable personal information, call audio or voice recordings, biometric data, health or financial information, or records from calls with a child, and Tuvoz doesn’t sell personal information. So models other than Tuvoz’s may improve from your calls. This is why the question on every call names other AI companies and says their transcript has names and numbers removed.
Free and paid plans
Free plan includes training on your calls. On a paid plan, training is on by default and you can turn it off.
| Free plan | Paid plan | |
|---|---|---|
| Training on your calls | Always on | On by default; you can turn it off |
| When a change applies | To new calls, from the moment you flip the switch | |
| Calls made before the change | Keep the setting they were made with |
There is no switch until you top up. To turn training off, make any top-up (from $5) and switch it off in Settings, or delete your account.
On a paid plan, turning training off applies to calls placed after you flip it. Calls already made keep the setting they had when they were placed, and turning it back on doesn’t reach back to calls made while it was off.
What’s never used, or left out by default
- Calls with a child. If Tuvoz detects that it’s talking with a child, it stops recording what they say, deletes what they already said, and the whole call is left out of training, even if an adult comes to the phone later.
- Calls to your own phone. Test calls, reminders, and the calls Tuvoz makes to ask you something when your agent can’t answer are never used for training.
- Calls about health, money or children. Calls to hospitals, clinics, pharmacies, banks, insurers and schools, and calls where the content turns out to involve health, financial accounts, children, precise location or biometrics, are left out of training. You can opt in to including them with a separate setting, Sensitive calls, available on any plan and off by default. It applies to new calls only.
- Calls where someone said no, calls Tuvoz ended for breaking its own rules, and calls that failed on our side.
- Your card details. Payments go through Stripe; we never see your full card number.
Deleting your data
- Delete your account in Settings. We delete your calls’ content, your training records and your phone numbers, refund your paid balance, and close the account. Training records deleted this way are left out of any training run that starts after the deletion. A model already trained before the deletion isn’t retrained.
- If someone Tuvoz called wants their data deleted, they can write to privacy@tuvoz.io. See Privacy for people we call.
- Data under a legal hold (for example, an abuse investigation or a court order) is kept until the hold ends.
How long we keep it
| Data | Kept |
|---|---|
| What the other person said: transcripts, notes, questions, answers to their questions, summaries | 30 days after the call |
| What Tuvoz’s voice agent said, and the instructions your agent sent mid-call | 5 years after the call (proof of what was disclosed), or until you delete your account |
| Call records without content: status, consent answer, opt-outs, billing | For the life of your account |
| Training records | Until you delete your account |
| Evidence of disclosures and consents (stored as fingerprints, not words), audit log | 5 years |
| Records of each call request (your request in your own words, which agent sent it, when, and from which IP address) | 5 years, including after you delete your account |
| Payments and your balance history | At least 7 years |
| Numbers that asked not to be called | Indefinitely, so we keep honoring the request |
Who processes data for us
| Provider | What for | Notes |
|---|---|---|
| Google (Gemini API, paid tier) | The voice on the call, transcription, and reading the outcome | Billed tier: Google doesn’t train its models on Tuvoz data. Google keeps limited logs for abuse monitoring (up to 55 days) and a short-lived session cache. |
| Twilio | Placing calls, checking numbers, verifying your phone | |
| Google Places | Checking that a number belongs to a listed business | Only the number is sent |
| Supabase | Database and sign-in | US region |
| Stripe | Payments, tax and refunds | |
| Fly.io | The servers that run calls | US region |
| Vercel | Hosting tuvoz.io and the dashboard | |
| Sentry | Error reports | Phone numbers and transcripts are removed before sending |
| Cloudflare Turnstile | Bot checks on public forms | |
| PostHog | Page analytics on tuvoz.io only | No session recordings |
Your agent’s provider (for example Anthropic, OpenAI or Meta) receives what your agent reads about a call: status, questions, notes and summaries, and the transcript if your agent asks for it. Their terms and settings decide what happens to it there.
Questions
Write to privacy@tuvoz.io. We answer within 30 days, and sooner when we can.