Privacy Policy
Last Updated: September 27, 2025
This Privacy Policy describes how Inverse Collective LLC ("Inverse Collective," "we," "our," or "us") collects, uses, discloses, and protects personal information when you use our AI phone companion service and caregiver/facility dashboard (the "Service"). The Service is intended for customers in the United States only.
By using the Service, you agree to this Privacy Policy and our Terms of Service.
1. Information We Collect
Account & Profile Data. Name, email, role (family, caregiver, admin), organization, phone numbers for seniors and caregivers, preferences, schedules.
Call Data. Call metadata (time, duration, outcome), call recordings and transcripts (not viewable by humans), and AI‑generated embeddings/signals for personalization.
Communications. SMS reminders (service‑only), support requests, feedback.
Payment Data. Billing contacts, plan details, and limited payment information via Stripe (we do not store full card numbers).
Technical Data. Log files, device/browser data, IP addresses, cookies, and analytics events via Google Analytics.
Sensitive Data. The Service is not a medical or HIPAA service and is not intended to collect protected health information (PHI). If you choose to input health‑related notes, we handle them with heightened safeguards; do not upload PHI.
2. How We Use Information
- Provide, operate, and secure the Service (including scheduling, placing calls, transcribing, and personalization);
- Send service messages (verifications, password resets, billing notices) and SMS reminders;
- Monitor performance, debug, and prevent fraud/abuse;
- Improve and develop features, including using de‑identified/aggregated data and model quality signals;
- Comply with legal obligations and enforce our Terms.
No Selling / No Cross‑Context Behavioral Ads. We do not sell personal information and do not use personal information for cross‑context behavioral advertising.
3. Sharing and Disclosure
We share personal information with:
- Processors/Service Providers acting on our behalf, including Twilio (telephony), OpenAI (AI processing), Stripe (payments), SendGrid (email), and Google Analytics (analytics), under contracts that limit use to our instructions;
- Legal/Compliance recipients where required by law or to protect rights, safety, and security;
- Business Transfers in connection with a merger, acquisition, or asset sale.
We do not permit providers to use personal information for their own marketing.
4. Data Access & Visibility
No Human Access to Call Content. Call recordings and transcripts are not viewable by anyone, including customers and Inverse Collective personnel, except where disclosure is legally required. We apply technical and policy controls to enforce this.
Customer Access. Customers may view limited metadata (e.g., call attempt, success/failure, schedule) but not transcript content.
5. Data Retention
We retain personal information for as long as needed to provide the Service and for legitimate business purposes (e.g., accounting, security), then delete or de‑identify it. Call recordings/transcripts are retained for 90 days by default, unless law or active disputes require longer retention.
6. Your Choices & Rights
Account Controls. Update account details and settings in the dashboard.
SMS Opt‑Out. Inverse Collective LLC sends SMS for one‑time verification codes (OTP) to verify your identity (one message per request) and for account notifications and service‑related communications. Message and data rates may apply. To opt out of SMS messages, reply STOP to any message; for help, reply HELP. You may also contact us at hello@inversecollective.com or by mail at:
Inverse Collective LLC
5900 Balcones Drive, Suite 16274
Austin, TX 78731
Privacy Rights. Where applicable under U.S. state privacy laws (e.g., California), you may request access, deletion, or correction. Submit requests to hello@eldervoice.com. We will verify your identity before responding.
7. Security
We use administrative, technical, and physical safeguards designed to protect personal information, including encryption in transit and at rest, access control, and monitoring. No system is 100% secure; please use strong, unique passwords and keep them confidential.
8. Cookies & Tracking
We use cookies and similar technologies for authentication, preferences, and analytics via Google Analytics. You can control cookies through your browser settings. Some features may not function properly without certain cookies.
9. Children's Privacy
The Service is not directed to children under 13 and we do not knowingly collect personal information from them. If we learn we have collected such data, we will delete it.
10. International Users
The Service is intended for use in the United States only. If you access the Service from outside the U.S., you consent to processing in the U.S. and understand that the Service may be unavailable or limited.
11. State‑Specific Disclosures (U.S.)
We honor rights provided by applicable state privacy laws. We do not sell personal information. We do not share for cross‑context behavioral advertising. Authorized agent requests will be honored consistent with law.
12. Data Processing Addendum (DPA)
For business customers needing a DPA, contact us at hello@eldervoice.com. The DPA will describe roles (customer = controller; Inverse Collective = processor), security measures, and subprocessors (Twilio, OpenAI, Stripe, SendGrid, Google Analytics). We are not a HIPAA‑covered entity and do not offer BAAs unless separately agreed in writing.
13. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of material changes (e.g., by email or in‑product). Your continued use after changes become effective signifies your acceptance.
14. How to Contact Us
Questions about privacy? Reach us at hello@eldervoice.com or by mail at the address above.
Inverse Collective LLC
5900 Balcones Drive, Suite 16274
Austin, TX 78731
Data Processing Addendum (Outline)
- Parties & Roles (Controller/Processor)
- Processing Details (subject matter, duration, nature, purpose)
- Security Measures (encryption, access controls, logging, vulnerability management)
- Subprocessors (Twilio, OpenAI, Stripe, SendGrid, Google Analytics)
- U.S. State Law Addendum (CPRA‑style definitions & rights)
- Audit & Assistance; Incident Notice; Deletion/Return at end of term