GDPR Compliance

At TeloAI, we prioritize your data privacy and comply fully with GDPR, ensuring secure, transparent, and responsible handling of your personal information.

TeloAI securely processes a range of personal data to support, improve, and deliver our voice assistant platform. This includes identifiers such as names, phone numbers, email addresses, usage logs, IP addresses, and geographic data.

We rely on the following legal bases:

  • Consent: Users grant explicit consent for specific types of data usage, such as location features or marketing. Consent may be withdrawn at any time.

  • Contractual Necessity: Data processing is necessary for delivering our services in accordance with our terms of use.

  • Legitimate Interests: Certain data is processed to maintain platform security, improve performance, and analyze system usage, always balancing these needs with user privacy rights.

Your Rights Under GDPR

TeloAI empowers users to exercise the full scope of their GDPR rights, including:

  • Access – Request a copy of your personal data.

  • Rectification – Correct inaccurate or incomplete data.

  • Erasure – Request deletion of your data under certain conditions.

  • Restriction – Temporarily limit how your data is processed.

  • Data Portability – Transfer your data in a structured, portable format.

  • Withdraw Consent – Opt out of consent-based data usage at any time.

Security Measures

We employ layered security to prevent unauthorized access, misuse, or loss of personal data:

  • Encryption – All data is encrypted in transit and at rest.

  • Hardened Infrastructure – Secure server configurations protect against attacks.

  • Access Controls – Only authorized personnel may access sensitive data.

  • Continuous Testing – Regular audits, penetration tests, and breach simulations ensure system integrity.

Third-Party Services

TeloAI partners with vetted third-party vendors for analytics, development, and payments. All integrations are subject to rigorous data protection agreements and are selected to meet our privacy standards.

Examples of providers include:

  • Analytics – Google Analytics, Cloudflare, PostHog

  • Development – GitHub

  • Payments – Stripe

Cross-Border Data Transfers

When data is transferred outside the EU (e.g., to the U.S.), we implement standard contractual clauses and other legally recognized safeguards to maintain GDPR-equivalent protection.

Compliance Monitoring

Our team continuously evaluates our GDPR posture through:

  • Penetration testing and access reviews

  • Data consent and deletion protocol testing

  • Internal compliance audits

  • Incident response simulations

TeloAI is committed to evolving its privacy framework in line with GDPR and industry expectations.

Status: In progress

Last updated