Privacy Policy
1. Who we are and what this policy covers
Ringamo Connect is a business communications service operated by Ringamo Dev (fictitious operator, test install) ("we", "us"). We provide it to businesses ("business customers"), who give their own staff ("users") access to it. This policy explains what information the service handles, why, and the choices available. It covers the Ringamo Connect web application at this address, the Ringamo Connect mobile apps, and the website chat widget that business customers place on their own websites.
2. Our role and our business customers' role
Each business customer controls its own workspace: it decides who its users are, which phone numbers and channels it connects, and what it sends, receives and stores. For the content a business customer and its users put into the service — conversations, contacts, voicemail, documents and the like — we act on that business customer's behalf and under its instructions (as a "service provider" or "processor"). We are responsible for the account and technical information we use to run and secure the service itself.
If you contacted a business that uses Ringamo Connect — by text message, phone call, fax or its website chat — that business decides how your information is used, and its own privacy notice applies. Please contact that business first; we will help it respond to your request.
3. What the service does
Ringamo Connect gives a business one place to communicate with its customers and its own team:
- a shared inbox for SMS and MMS text messages and website chat conversations;
- voice calling through a softphone in the browser and the Ringamo Connect mobile apps, including push notifications that ring the mobile app for incoming calls;
- voicemail, and sending and receiving faxes;
- contacts, with fields the business customer defines;
- team chat between a business's own users, and notifications by email and push;
- reports on the business's own activity; and
- optional connections to other services the business already uses, such as accounting software.
4. Information we collect, how, and why
This table lists every kind of information the service collects — from the web application, the mobile apps and the website chat widget — how it is collected, what it is used for, who else handles it, and how long it is kept. The same table is the basis of our App Store and Google Play privacy disclosures (section 15).
| Information | How it is collected | What it is used for | Who else handles it | How long it is kept |
|---|---|---|---|---|
| Account detailsName, email address, role, extension number, notification preferences, and a password (stored only as a salted hash) or a Google sign-in identity. | Entered by the business's administrator when they invite the user; edited by the user in their profile; from Google if the user chooses to sign in with Google. | Signing in, showing who did what inside the business's workspace, routing calls to the right person, sending account and notification emails. | Hosting (DigitalOcean); email delivery; Google, only for a user who signs in with Google. | While the user account exists. Deactivating a user stops all access straight away; erasing the account's personal details is done by the operator on request (see Deleting your account). |
| Account identifiersThe internal IDs of the user's account and of the business it belongs to. | Created by the service when the account is created. | Keeping each business's data separate and attributing actions to the right account. | Hosting (DigitalOcean). | While the user account exists. |
| Device and push tokensThe push-notification token Apple issues to the iPhone app, the device's name and platform, and when it signed in. | Sent by the mobile app when the user signs in and when it starts. | Ringing the app for incoming calls, delivering notifications, and listing a user's signed-in devices so they or their administrator can sign one out. | Apple Push Notification service. | Until the app unregisters the device (for example when the user signs out of the app) or Apple reports the token is no longer valid. Deactivating an account stops all notifications to it at once. |
| MessagesText (SMS) and picture (MMS) messages, website chat messages, team chat messages, and notes users add to conversations. | Typed or sent by users in the app or on the web, and received from customers through the business's phone numbers and website chat. | Delivering, storing and showing the business its own conversations. | Telecommunications carriers and messaging providers (to send and receive text messages); hosting (DigitalOcean). | For as long as the business keeps its account, or until the business deletes them. |
| Photos, files and faxesA user's profile photo, pictures and files attached to messages, and faxes sent and received. | Chosen by the user from their photo library or taken with the camera (only with the permission the device asks for), uploaded on the web, or received from customers. | Delivering and showing them in the business's conversations; showing the user's profile photo to their team. | Telecommunications carriers and messaging providers (for picture messages and faxes); hosting (DigitalOcean). | For as long as the business keeps its account, or until the business deletes them or the operator does on its request. Fax documents are shredded automatically after the retention period set for the business (we set it on the business's request), if one is set; the record that a fax was sent or received is kept. |
| Live call audioThe user's voice during a call, through the microphone (only with the permission the device asks for). | Captured by the app or browser only while a call is in progress. | Carrying the call to the other party. | Telecommunications carriers, to connect the call. | Not recorded and not stored — it exists only for the length of the call. |
| VoicemailVoicemail messages callers leave for the business, with the caller's number, the time and the length. | Recorded by the business's phone system when a caller leaves a message, then stored so users can play it. | Letting the business's users listen to, and act on, their voicemail. | Hosting (DigitalOcean); the business's phone system provider. | For as long as the business keeps its account, or until the business deletes it or the operator does on its request. |
| Call history and activityWho called whom, when and for how long; which conversations a user has read; a user's availability status and when they were last active. | Recorded by the service as users make and take calls and use the app. | Showing call history, unread counts and who is available, and the business's own activity reports. | Hosting (DigitalOcean). | For as long as the business keeps its account. |
| Business contactsNames, phone numbers, email addresses and other details a business keeps about the people it deals with. The device's own address book is never read. | Entered or imported by the business's users, or created when a new customer gets in touch. | Showing who a customer is in conversations and calls. | Hosting (DigitalOcean). | For as long as the business keeps its account, or until the business deletes them. |
| Website chat visitorsThe messages a visitor sends from a business's website, any name, email address or other answer they choose to give, and a session identifier kept in their browser. | From the chat widget the business places on its own website — not from the mobile app. | Delivering the conversation to the business and continuing it between pages. | Hosting (DigitalOcean). | An anonymous visitor's conversations and details are deleted automatically 30 days after the last message. Otherwise for as long as the business keeps its account, or until the business deletes the conversation. |
| Connected accounting dataIf a business connects QuickBooks Online: its customers' names and contact details, invoices, payments and balances (read-only), and the overdue-balance summaries the service works out from those invoices. | Read by our servers from the accounting provider, only after an administrator of the business connects it. | Showing a business's users, in a conversation, what that customer owes. | The accounting provider the business connected (Intuit, for QuickBooks Online); hosting (DigitalOcean). | Deleted 30 days after the business disconnects QuickBooks in the service. If access is revoked from QuickBooks' side instead, syncing stops and the data stays until the business disconnects in the service (or asks the operator), which starts the 30 days. |
| Technical and security logsIP addresses, browser or app type, sign-in times and security events. | Recorded by our servers when the service is used. | Operating and securing the service, investigating abuse and diagnosing faults. | Hosting (DigitalOcean). | A limited period for security, then deleted. |
What we do not collect. The mobile apps never read the address book on your device, and:
- Call recordings — Recordings of whole calls. The service does not record calls. If call recording is added, this policy will be updated first.
- Crash reports and analytics — The apps contain no analytics, crash-reporting or advertising software. The mobile app's diagnostics log stays on the device. Not collected.
- Location, browsing history and advertising data — Precise or approximate location, web browsing history, advertising identifiers. Not collected.
Device permissions. The mobile apps ask your device for permission before using the microphone (for calls), the camera or your photo library (to attach a picture), or notifications (to ring you for calls and tell you about messages). You can turn any of these off at any time in your device's settings; the related feature then stops working, and nothing else changes.
Cookies. The service uses cookies and similar browser storage only to keep users signed in, remember their settings and keep website chat sessions working. It does not use advertising or third-party tracking cookies, and it does not track you across other companies' apps or websites.
5. How we use information
- to provide the service: deliver messages, calls, faxes and notifications, and show each business its own data;
- to secure the service: authenticate users, detect abuse and investigate security events;
- to support business customers when they ask for help;
- to maintain and improve the service, for example by diagnosing faults; and
- to meet legal obligations, including carrier and telecommunications rules.
We do not sell personal information, share it for cross-context behavioral advertising, or use a business customer's content for any purpose other than providing the service to that business.
6. Voicemail and call recordings
Voicemail messages left for a business are stored as audio files so its users can play them in the service. The audio of a live call is carried to the other party while the call lasts and is not recorded or stored. The service does not currently record calls; if call recording is added, we will update this policy before it is available, and a business customer that turns it on will be responsible for giving any notice of, or obtaining any consent to, recording that the law requires.
7. Artificial intelligence
Ringamo Connect does not currently send your content to artificial-intelligence services, and your content is not used to train AI models. If we add AI-powered features, we will update this policy before they are available, and describe what they process and which providers are involved.
8. Connected services, including accounting software
A business customer can choose to connect Ringamo Connect to other services it uses. A connection is made only when an administrator of that business authorizes it, and it reads only what the feature needs.
QuickBooks Online. Where a business connects QuickBooks Online, Ringamo Connect reads a limited set of its records so its users can see, in a conversation, what a customer owes: customer names and contact details, invoices with their balances and due dates, and payments recorded against them. From those invoicesRingamo Connect itself works out how much of a customer's balance is overdue, and by how long. The connection is read-only: Ringamo Connect never creates, changes or deletes anything in QuickBooks, and never takes a payment through it. It does not read payroll, and QuickBooks does not give it bank account or payment card numbers. The QuickBooks access tokens are stored encrypted. The data read is stored inside that business's own workspace, is visible only to its users, and is not used for advertising or shared outside the service.
Disconnecting. An administrator can disconnect at any time from the business's Settings in Ringamo Connect. When the business disconnects QuickBooks in Ringamo Connect, Ringamo Connect stops reading data, and the data it synced is deleted 30 days later. If access is instead revoked from QuickBooks' side (its own connected-apps settings), syncing stops, and the synced data stays until the business also disconnects in Ringamo Connect — or asks us to — which starts the same 30 days.
Other connected services work the same way: connected only by an administrator's choice, limited to what the feature needs, and disconnectable at any time. Where a connection can change data in the other service, we will say so at the point it is connected.
10. Where information is stored
Information is stored and processed in the United States.
11. How long we keep information, and deletion
How long each kind of information is kept is listed in section 4. In short: we keep a business customer's content for as long as its account is active, or until the business customer deletes it or asks us to. An anonymous website chat visitor's conversations are deleted automatically 30 days after the last message. Fax documents are shredded automatically after the retention period set for the business (we set it on the business's request), if one is set. Server logs are kept for a limited period for security and then deleted. QuickBooks data is deleted 30 days after the business disconnects QuickBooks in Ringamo Connect (section 8).
When a business customer closes its account, deleting its content is not automatic: it is handled by us on the business customer's request. We commit to completing it within 90 days of the request, unless the law requires us to keep something longer.
Deleting your account. Deleting a user account is a request handled by us, not an automatic feature of the service. You can make the request at any time, without signing in: see how to delete your account, or email us at legal@example.com from the address on the account. You can also ask your business's administrator, who can deactivate your account at once — that stops all access and signs you out of every browser and mobile device — and pass the request to us. We respond to a deletion request within 30 days. Messages you sent on a business's behalf belong to that business's records and stay with it.
12. Security
All connections to the service, from the web and from the mobile apps, are encrypted in transit with TLS. Passwords are stored only as salted hashes, and credentials for connected channels and services are stored encrypted. Each business's data is kept separate from every other business on the service, and access by our own staff is limited to what is needed to operate and support it. No system is perfectly secure; if we become aware of a breach affecting your information, we will notify the affected business customers and, where the law requires, the people affected.
13. Children
Ringamo Connect is a service for businesses and is not directed to children. It is not intended for anyone under 16, and we do not knowingly collect personal information from children under 13. If you believe a child has given us personal information, contact us and we will delete it.
14. Your rights and choices, and withdrawing consent
Depending on where you live, you may have the right to ask for access to, correction of, or deletion of your personal information, or to object to how it is used. You can withdraw a consent you have given at any time, without affecting what was done before:
- device permissions (microphone, camera, photos, notifications) — in your device's settings;
- signing in with Google — remove Ringamo Connect from your Google Account's third-party connections;
- a connected service such as QuickBooks Online — an administrator disconnects it (section 8);
- text messages from a business — reply STOP;
- everything else — ask for your account to be deleted (how).
Users can update their own profile and notification settings in Ringamo Connect at any time. For any other request, contact the business you deal with, or our privacy contact in section 17. We will not discriminate against you for exercising your rights.
15. App Store and Google Play disclosures
The Ringamo Connect iPhone app declares the following in the Apple App Store "App Privacy" section. There is no Android app yet; the Google Play "Data safety" answers below are the ones it will declare when it is published. Both are taken from the table in section 4.
| Information | App Store "App Privacy" | Google Play "Data safety" |
|---|---|---|
| Account details | Contact Info › Name; Contact Info › Email Address | Personal info › Name; Personal info › Email address |
| Account identifiers | Identifiers › User ID | Personal info › User IDs |
| Device and push tokens | Identifiers › Device ID | Device or other IDs › Device or other IDs |
| Messages | User Content › Emails or Text Messages; User Content › Other User Content (notes) | Messages › SMS or MMS; Messages › Other in-app messages; App activity › Other user-generated content (notes) |
| Photos, files and faxes | User Content › Photos or Videos; User Content › Other User Content (files, faxes) | Photos and videos › Photos; Files and docs › Files and docs |
| Live call audio | Not collected | Audio › Voice or sound recordings (processed ephemerally) |
| Voicemail | User Content › Audio Data | Audio › Voice or sound recordings |
| Call recordings | Not collected | Not collected |
| Call history and activity | Usage Data › Product Interaction; Contact Info › Phone Number (callers' numbers) | App activity › App interactions; Personal info › Phone number (callers' numbers) |
| Business contacts | Contacts › Contacts; Contact Info › Phone Number | Contacts › Contacts; Personal info › Phone number |
| Website chat visitors | Not collected by the app (covered by Messages when a user reads them) | Not collected by the app (covered by Messages when a user reads them) |
| Connected accounting data | Not collected by the app (read server-to-server) | Not collected by the app (read server-to-server) |
| Technical and security logs | Not declared — not used to locate users | Not declared — not used to locate users |
| Crash reports and analytics | Not collected | Not collected |
| Location, browsing history and advertising data | Not collected | Not collected |
- Data used to track you: none. Nothing is used for tracking.
- Data linked to you: every collected type above is linked to the user's account.
- Purpose: App Functionality, for every collected type.
- Data shared: none — every recipient above is a service provider acting for us, or a transfer the user starts.
- Data is encrypted in transit: yes.
- Users can request that data be deleted: yes — the delete-account page (a request handled by the operator).
- Purposes: App functionality, for every collected type; Account management as well for account details and identifiers.
16. Changes to this policy
We may update this policy. We will publish the new version at this address with a new effective date and, where a change is material, tell business customers before it takes effect. See also our Terms of Service.
17. Privacy contact
Ringamo Dev (fictitious operator, test install) operates Ringamo Connect and is responsible for this policy. For questions or requests about this policy or your information — including access, correction and deletion — contact our privacy contact:
Ringamo Dev (fictitious operator, test install)123 Example Street, Testville, KY 00000 (not a real address)Email: legal@example.comSupport: https://example.com/support