Privacy, in plain language.
Product privacy notice · September 9, 2026
Ringstead helps businesses answer incoming calls and organize follow-up. The business using Ringstead decides what information its receptionist collects and is responsible for informing callers about AI processing and transcription.
Information the application stores
We store the signed-in account identifier and contact email, business settings, phone number assignments, call metadata, text transcripts and summaries, leads, appointment details, and subscription identifiers. Payment card details are entered on Stripe-hosted pages and are not stored in Ringstead. Audio recording is disabled in the default voice configuration.
How information is used
Information is used to answer calls, make appointments, present business records, control plan usage, process subscriptions, and operate the service. Booking notifications are sent to the business contact email when the email service is configured.
Services involved
Cloudflare provides hosting and database infrastructure. Ringstead uses Better Auth for secure account sign-in and Resend for account emails. Vapi coordinates voice calls, Twilio provides telephony, OpenAI processes conversation text, ElevenLabs generates speech, and Deepgram transcribes speech through Vapi. Stripe processes billing. Resend may deliver booking notifications. These providers process information according to their agreements with the platform operator.
Retention and your choices
Records remain stored until removed by the platform operator. No automatic retention schedule is enabled by default. Business owners can export their records in Settings. For correction, deletion, or a retention arrangement, contact the operator that provided your Ringstead account. A business owner should direct callers to the business’s own privacy contact.
Access and sensitive data
Workspace records are restricted to the signed-in business owner. Do not use the receptionist to collect passwords, full payment card details, government identifiers, or sensitive health information. This initial service is not represented as HIPAA compliant or suitable for regulated clinical workflows.
Before a commercial launch
The operating company’s legal identity, privacy contact, processing agreements, geographic commitments, and retention schedule must be supplied by the platform operator before the service is offered publicly. This notice describes the implemented product and is not a substitute for the operator’s final privacy policy.