1. Introduction
MonetaPoint ("we," "us," or "our") is committed to protecting the privacy and security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard information when you use our platform, website, and related services (collectively, the "Service").
By using the Service, you consent to the practices described in this Privacy Policy. If you do not agree with this policy, please do not use the Service.
2. Information We Collect
2.1 Information You Provide Directly
- Account Information: Name, email address, phone number, password, business name, industry, and timezone when you create an account.
- Business Information: Service categories, average job values, business hours, booking links, team member information, and communication tone preferences.
- Payment Information: Billing address and payment method details. Payment information is processed and stored by our third-party payment processor and is not stored on our servers.
- Communications: Messages, support requests, and feedback you send to us.
2.2 Lead and Customer Data
When you use the Service, we process data about your leads and customers on your behalf, including:
- Names, phone numbers, and email addresses of your leads
- SMS message content (inbound and outbound)
- Lead source information and service inquiries
- Appointment and booking information
- Lead status and pipeline progression data
With respect to this lead and customer data, we act as a data processor on your behalf. You remain the data controller and are responsible for ensuring you have proper authority and consent to share this data with us for processing.
2.3 Information Collected Automatically
- Usage Data: Pages visited, features used, actions taken, time and date of visits, and other diagnostic data.
- Device Data: IP address, browser type, operating system, device identifiers, and screen resolution.
- Cookies: We use essential cookies for authentication and session management. We do not use third-party advertising or tracking cookies.
3. How We Use Your Information
We use the information we collect for the following purposes:
- Provide the Service: Process leads, generate AI responses, send SMS messages, manage follow-up sequences, and display analytics on your dashboard.
- Account Management: Create and manage your account, process payments, and provide customer support.
- Service Improvement: Analyze usage patterns to improve the Service, develop new features, and optimize AI response quality.
- Communication: Send service notifications, billing reminders, security alerts, and updates about the Service.
- Security: Detect, prevent, and address fraud, abuse, and security issues.
- Legal Compliance: Comply with applicable laws, regulations, and legal obligations.
4. How We Share Your Information
We do not sell your personal information or your lead/customer data to third parties. We share information only in the following circumstances:
- Service Providers: We share data with third-party providers who help us deliver the Service, including Twilio (SMS delivery and phone services), Anthropic (AI message generation), cloud hosting providers, and payment processors. These providers are contractually obligated to use your data only to provide services to us and to maintain appropriate security measures.
- Legal Requirements: We may disclose information if required by law, court order, subpoena, or governmental regulation, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
- Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the transaction. We will notify you of any such transfer and any changes to this Privacy Policy.
- With Your Consent: We may share information with third parties when you have given us explicit consent to do so.
5. AI and Automated Processing
The Service uses artificial intelligence (AI) to generate SMS responses and follow-up messages on behalf of your business. In the course of this processing:
- Lead information (name, service inquiry, message content) is sent to our AI provider (Anthropic) to generate contextually relevant responses.
- Your business information (name, services, tone preferences) is used to customize AI-generated messages.
- AI-generated messages are stored in our database and associated with the relevant lead record.
- We do not use your data to train AI models. Your data is used solely for generating responses within the Service.
6. Data Security
We implement industry-standard technical and organizational security measures to protect your information, including:
- Encryption of data in transit (TLS/SSL) and at rest
- Multi-tenant data isolation at the database level, ensuring your data is never accessible to other clients
- Secure authentication using encrypted JWT tokens
- Regular security monitoring and access controls
- Password hashing using bcrypt with appropriate salt rounds
While we take reasonable precautions, no method of transmission or storage is 100% secure. We cannot guarantee absolute security of your data.
7. Data Retention
We retain your information for as long as your account is active or as needed to provide the Service. Specific retention periods:
- Account data: Retained for the duration of your subscription and 90 days following account termination.
- Lead and message data: Retained for the duration of your subscription and 90 days following account termination, then permanently deleted.
- Audit logs: Retained for 2 years for compliance and security purposes.
- Payment records: Retained as required by applicable tax and accounting laws (typically 7 years).
- SMS opt-out records: Retained indefinitely to ensure compliance with TCPA requirements.
8. Your Rights
Depending on your location, you may have the following rights regarding your personal information:
- Access: Request a copy of the personal information we hold about you.
- Correction: Request correction of inaccurate or incomplete information.
- Deletion: Request deletion of your personal information, subject to legal retention requirements.
- Portability: Request a copy of your data in a machine-readable format.
- Opt-Out: Opt out of non-essential communications at any time.
- Restrict Processing: Request that we limit how we process your information in certain circumstances.
To exercise any of these rights, contact us at privacy@monetapoint.com. We will respond to your request within 30 days.
9. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- The right to know what personal information we collect, use, and disclose about you.
- The right to delete your personal information, subject to certain exceptions.
- The right to opt out of the sale of your personal information. We do not sell personal information.
- The right to non-discrimination for exercising your CCPA rights.
To submit a CCPA request, contact us at privacy@monetapoint.com or call us at the number listed below. We will verify your identity before processing your request.
10. Children's Privacy
The Service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information promptly.
11. International Data Transfers
Our Service is hosted and operated in the United States. If you access the Service from outside the United States, you acknowledge that your information will be transferred to, stored, and processed in the United States, where data protection laws may differ from those in your jurisdiction.
12. Third-Party Links
The Service may contain links to third-party websites or services that are not operated by us. We are not responsible for the privacy practices of third-party sites. We encourage you to review the privacy policies of any third-party site you visit.
13. SMS and Text Messaging
MonetaPoint sends SMS text messages on behalf of our business clients and for our own business communications. By providing a phone number to MonetaPoint or to one of our client businesses, you consent to receive SMS messages including:
- Responses to service inquiries you initiated
- Appointment confirmations and reminders
- Follow-up messages related to your inquiry
- Business-to-business communications about our services
Opt-Out: You may opt out of SMS messages at any time by replying STOP to any message. You may also text HELP for assistance. Message and data rates may apply. Message frequency varies based on your interactions.
Carriers: Messages are sent via Twilio. Supported carriers include AT&T, T-Mobile, Verizon, and all major US carriers. Carriers are not liable for delayed or undelivered messages.
We do not share your phone number or SMS opt-in data with third parties for marketing purposes. Phone numbers are used solely for the purpose of delivering the Service.
14. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on our website with a new "Last updated" date and, where appropriate, by sending notice to the email address associated with your account. Your continued use of the Service after any changes constitutes acceptance of the updated policy.
15. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:
MonetaPoint
Email: privacy@monetapoint.com