Privacy policy
Last updated 6 September 2026
This describes what the Net Infusion AI phone assistant collects, why, and who it is shared with. It covers the assistant itself and the calendar connection a business owner grants it.
Who this is for
Two groups of people appear here: the business owner who signs up and connects a calendar, and the caller who rings that business and speaks to the assistant.
What is collected from a business owner
- Business name, trade, website, service area, opening hours and contact details, all entered by the owner.
- A calendar authorization, if they choose to connect one. This is an access token issued by Google or Microsoft. We never receive or store the owner's password.
What is collected from a caller
- Their phone number, taken from caller ID and from what they say.
- What they tell the assistant: their name, the service address, and a description of the job.
- A recording and written transcript of the call, so the business can hear what was said.
How calendar access is used
With a connected calendar, the assistant does exactly two things:
- Reads whether the owner is busy during a requested time, so it does not book over something already there. It reads the times of existing events, not their contents.
- Writes an event when an appointment is booked, and deletes that event if the appointment is cancelled. It also writes a short follow-up note when a call needs a person, and removes it once handled.
It does not read the contents of existing events, does not modify events it did not create, and does not access anything else in the connected account. Calendar data is never used for advertising, never sold, and never used to train any model.
Who else sees this data
- Retell AI operates the voice assistant and holds call recordings and transcripts.
- Twilio carries the phone calls.
- Google or Microsoft, whichever calendar the owner connected.
- The United States Census Bureau geocoder is sent a service address to check it is a real address. No name or phone number is sent with it.
Data is not sold, rented, or shared with anyone else.
How this data is protected
Google user data, and every other kind of data described above, is protected by the following measures.
- Encrypted in transit. Every connection to this service, and every request made to the Google Calendar API, uses HTTPS with TLS. Data is never transmitted unencrypted.
- Encrypted at rest. The authorization tokens that grant access to a connected Google or Microsoft calendar are encrypted with AES‑256‑GCM before they are written to storage. The encryption key is held in the server's environment and is never stored in the database, so a copy of the database on its own does not grant access to anyone's calendar.
- Access is restricted. The administrative console requires a password. A business owner signing in to their own portal can see only their own business's data; the session is bound to that business by the server and cannot be altered to reach another. All passwords are stored as salted hashes and are never stored in a readable form.
- Least privilege. Only two Google scopes are requested, both narrowly scoped to calendar availability and calendar events. No other Google data is requested or accessed, and the contents of existing events are not read.
- Revocation is immediate. When a business owner revokes access from their Google account, all reading and writing stops at once and the stored authorization becomes unusable.
Google user data is not used to develop, improve, or train generalized artificial intelligence or machine learning models. It is used only to check availability and to create or remove appointments on the connected calendar, at the request of that calendar's own owner.
Where it is kept, and for how long
Calendar authorizations are encrypted where they are stored, so the token that grants access to a calendar is not readable from the database itself. Business details, appointments, messages and call records are kept on a private server controlled by Net Infusion, for as long as the business is a customer. Call recordings and transcripts are held by Retell AI under their retention terms.
Disconnecting and deletion
A business owner can revoke calendar access at any time from their Google account permissions or Microsoft account settings, without contacting us. Revoking it immediately stops all reading and writing; appointments already on the calendar remain, since they belong to the owner.
To have a business's stored data deleted, contact us at the address below and it will be removed, along with any calendar authorization held for it.
Contact
Net Infusion — [email protected]