Legal

Privacy Policy

Last updated: December 17, 2025

1. Introduction

ConverseLead ("ConverseLead", "we", "our", "us") provides AI-powered voice systems designed to help businesses manage inbound and outbound customer communications, including lead qualification, scheduling, and follow-up.

This Privacy Policy explains how we collect, use, store, and protect personal data when:

  • Businesses ("Clients") use our platform, and
  • End users ("Call Participants") interact with our voice systems.

ConverseLead is operated by Axioma AI.

2. Roles Under GDPR

For the purposes of EU General Data Protection Regulation (GDPR):

  • Clients are the Data Controllers for personal data of their customers and leads.
  • ConverseLead acts as a Data Processor, processing data strictly on the Client's instructions.

3. Types of Data We Process

3.1 Client Account Data

  • Name, email address
  • Company name
  • Billing and administrative details
  • Authentication credentials (via third-party identity providers)

3.2 Call & Interaction Data

Depending on Client configuration, we may process:

  • Phone numbers
  • Call metadata (date, duration, call outcome)
  • Call transcripts (speech-to-text)
  • Call recordings (if enabled by the Client)
  • AI-generated summaries and classifications

3.3 Scheduling & Integration Data

If enabled by the Client:

  • Calendar availability and event metadata
  • CRM or spreadsheet data provided by the Client
  • Lead status and qualification fields

4. How We Use Data

We process data solely to:

  • Operate and provide the ConverseLead service
  • Enable AI-driven conversations and lead qualification
  • Generate call summaries and analytics for Clients
  • Improve system reliability, accuracy, and performance
  • Detect fraud, abuse, or technical issues
  • Comply with legal obligations

Important: We do not sell personal data and do not use call content to train general-purpose AI models.

5. Call Recording & Voice AI Disclosure

Depending on Client configuration and applicable law:

  • Calls may be recorded or transcribed
  • AI may participate in or conduct calls on behalf of the Client

Clients are responsible for:

  • Providing legally required disclosures to Call Participants
  • Obtaining consent where required by local law

ConverseLead provides tooling, but legal compliance remains the Client's responsibility.

6. Legal Bases for Processing (GDPR)

Processing is based on one or more of the following:

  • Performance of a contract
  • Legitimate interest (service operation, fraud prevention)
  • Legal obligation
  • Consent (where required and obtained by the Client)

7. Data Storage & Retention

  • Data is stored on secure cloud infrastructure
  • Retention periods are configurable by the Client
  • Data is deleted or anonymized upon Client request or contract termination, unless legally required otherwise

8. Data Sharing & Sub-Processors

We may use trusted sub-processors, including:

  • Telephony providers
  • Cloud infrastructure providers
  • Speech-to-text and text-to-speech services
  • Analytics and monitoring tools

All sub-processors are contractually bound to GDPR-compliant standards.

9. International Transfers

Where data is transferred outside the EU/EEA, we rely on:

  • Standard Contractual Clauses (SCCs)
  • Other approved legal safeguards

10. Security Measures

We implement appropriate technical and organizational measures, including:

  • Encryption in transit and at rest
  • Access controls and audit logging
  • Least-privilege permissions
  • Monitoring and incident response procedures

11. Data Subject Rights

Data subjects may exercise rights including:

  • Access
  • Rectification
  • Erasure
  • Restriction
  • Objection
  • Data portability

Requests should be directed to the relevant Client (Data Controller). We assist Clients in fulfilling such requests where required.

12. Contact

For privacy inquiries:

Email: [email protected]

Company: Axioma AI