Last updated · July 24, 2026
Privacy Policy
Regulance LLC ("Regulance," "we," "us") builds and runs AI systems for local businesses: an AI phone receptionist, a Google review agent, websites, email marketing, social media automation, and custom automations. This policy tells you, in plain English, what data we handle, how we use it, who we share it with, and the rights you have over it. If anything here is unclear, write services@regulance.ai and we will explain it.
1. Who this applies to
This policy covers the people we interact with through our services:
- Operators, the business owners who pay us so the team builds and runs AI systems for their business.
- Operators’ customers, the people who call an Operator’s number and speak with the AI receptionist, receive a review request text, receive an email sent on the Operator’s behalf, or visit a website we run for the Operator.
- Website visitors, anyone who reads regulance.ai, requests a demo or a quote, or submits one of our forms.
2. What we collect
From Operators (the people paying us)
- Account information: business name, owner name, billing email, phone number, billing address, payment method (handled by Stripe, we never store full card numbers).
- Service information you give the team during onboarding calls: hours of operation, service area, services and prices, emergency rules, calendar choice, brand voice notes, and the content you approve for your systems.
- Access and credentials you authorize so the team can act on your behalf: Google Calendar, Cal.com, or Calendly access, and any CRM or other tool you ask the team to connect. We store credentials encrypted at rest and use them only to perform the actions you authorized.
From your customers
- Callers: phone number (when the carrier provides it), the name and details they give, the content of the call (transcript), call audio recording, and the booking they made if any.
- Review request recipients: name, phone number, the message content, delivery status, replies (forwarded to the Operator), and opt outs. A STOP reply immediately stops further texts and is kept on a do-not-text list.
- Email recipients: name, email address, and the content of messages sent on the Operator’s behalf.
- We surface a clear AI disclosure on calls when your industry requires it or when you turn it on. Where state law requires two-party consent for recording, recording is disclosed before transcription begins.
Automatically, on regulance.ai
- Standard web logs: IP address, browser type, pages visited, referring URL, timestamps. Used for debugging and abuse prevention.
- Analytics and advertising measurement: we use privacy-friendly page analytics, and we use the Meta (Facebook) pixel to measure our own advertising. The pixel may set cookies and share standard event data about your visit to regulance.ai (such as pages viewed and button clicks) with Meta. You can limit this with browser settings or blockers, and manage how Meta uses data at facebook.com/ads/preferences. The pixel runs only on regulance.ai. It is never connected to the calls, texts, or customer data we process for Operators.
3. How we use it
- To run the services you paid for: answer calls, book appointments, email you a summary of each call, send review request texts, run your website, send your email campaigns, post your social content, and run your custom automations.
- To improve service quality. Anonymized call transcripts may be used internally to tune conversation prompts. We do not use your customers’ call content, your Google data, or your CRM data to train third-party AI models.
- To bill you and handle support requests.
- To comply with the law and resolve disputes.
4. Google API Services User Data Policy, Limited Use
When the team connects your Google Calendar, Regulance requests these scopes:
calendar.events, to create and update events the AI receptionist books on your behalf.calendar.readonly, to check your availability before offering a slot.userinfo.email+openid, only to confirm which Google account is connected.
Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- We use your Google data only to provide and improve the user-facing features you connected the integration for (calendar availability and event booking on your behalf).
- We do not transfer your Google data to third parties except as necessary to provide or improve the service, comply with the law, or as part of a merger, acquisition, or asset sale (in which case the acquiring party will be bound by this policy).
- We do not use your Google data for serving advertisements.
- We do not allow humans to read your Google data unless we have your affirmative agreement for specific data, it is necessary for security purposes (such as investigating abuse), to comply with applicable law, or our use is for internal operations and the data has been aggregated and anonymized.
You can revoke our access at any time from your Google account at myaccount.google.com/permissions. When you revoke, the receptionist stops booking on your calendar and your refresh token is deleted from our database within 7 days.
5. Who we share with
We share the minimum data required with the service providers that power our services. They process data on our behalf under data processing agreements. None of them sells your data.
- Voice AI infrastructure provider, voice agent runtime (call audio and transcripts).
- Telephony carrier, call routing and recordings.
- Language model provider, transcripts and conversation context, processed per request; our provider does not train its models on data sent through its API.
- Email and text delivery providers, sending confirmations, summaries, review requests, and campaigns.
- Stripe, payments (your billing info; we never see full card numbers).
- Database and cloud hosting providers, where our systems and this website run.
- Google, calendar (when you connect it).
- Meta, website analytics only (the pixel described in section 2), never your customers’ call, text, or booking data.
We do not sell personal information. We use advertising cookies only to measure and improve our own marketing.
6. How long we keep it
- Account data: as long as you are a client, plus 24 months for tax and audit purposes after cancellation.
- Call recordings and transcripts: 12 months by default. You can request shorter or longer.
- Google refresh tokens: deleted within 7 days of access revocation or the end of your engagement.
- Do-not-text opt outs: kept indefinitely so an opt out is never forgotten.
- Aggregated metrics (no personal info): retained indefinitely for product improvement.
7. Your rights
- Access, get a copy of your data.
- Correction, fix anything inaccurate.
- Deletion, remove your data (where we are not legally required to keep it).
- Portability, export your data in a machine-readable format.
- Opt-out, California residents have additional rights under the CCPA, including the right to opt out of any "sale" or "sharing" of personal information.
Email services@regulance.ai with any request and we will respond within 30 days.
8. Security
We encrypt data in transit (TLS 1.2+) and at rest. Credentials are encrypted with provider-managed keys. Access to production data is restricted and logged.
9. International transfers
Regulance is operated from the United States. If you access the service from outside the U.S., your data will be transferred to and processed in the U.S. We rely on Standard Contractual Clauses where applicable.
10. Children
Regulance is a B2B service. It is not directed at children under 16, and we do not knowingly collect personal information from anyone under 16.
11. Changes
We will update this policy when our practices change. The date at the top reflects the most recent material update. For material changes that reduce your rights, we will email active Operators 14 days before the change takes effect.
12. Contact
Privacy questions, requests, or complaints: services@regulance.ai. Postal mail: Regulance, Los Angeles, CA.