remobridge

Legal

Privacy Policy

Last updated: June 10, 2026

Overview

RemoBridge processes account, billing, scheduling, call, message, and workspace configuration data to provide AI voice, communications, and scheduling services. This Privacy Policy describes how we collect, use, share, and protect your information.

Healthcare Data

Customers should not submit protected health information until a signed business associate agreement and required account safeguards are in place. Healthcare workflows may require additional contractual, administrative, and security controls.

Data We Process

Data may include names, email addresses, phone numbers, appointment details, call metadata, transcripts, recordings, SMS messages, support tickets, knowledge base content, billing records, device/browser information, and security logs.

Data Retention & Deletion

We retain customer data only as long as necessary to provide our services and meet legal obligations. Our retention practices include:

  • Active account data is retained for the duration of the customer relationship.
  • Call recordings and transcripts are retained according to configured workspace and deployment retention settings.
  • Billing and transaction records are retained for 7 years to comply with financial regulations.
  • Security and audit logs are retained according to configured audit retention policy and applicable legal obligations.
  • Upon approved account deletion, customer data is removed from production systems subject to legal retention, backup, and legal-hold constraints.

Subprocessors & Third-Party Services

RemoBridge uses carefully selected third-party services to deliver its platform. Key subprocessors include:

  • Telnyx — Voice and messaging infrastructure.
  • OpenAI — AI language model processing for voice agents.
  • Vercel — Application hosting and edge delivery.
  • Paddle — Subscription billing and payment processing.
  • Cloud infrastructure providers — Database hosting, object storage, and compute.

We evaluate the security posture of every subprocessor and require appropriate data protection commitments. Customers will be notified of material changes to our subprocessor list.

Business Associate Agreements

RemoBridge offers Business Associate Agreements (BAAs) to customers who use the platform for healthcare-related workflows involving protected health information (PHI). A signed BAA must be in place before any PHI is transmitted through RemoBridge services. To request a BAA, contact us at legal@remobridge.com.

Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal data:

  • Access — Request a copy of the personal data we hold about you.
  • Correction — Request correction of inaccurate or incomplete data.
  • Deletion — Request deletion of your personal data, subject to legal retention requirements.
  • Portability — Request an export of your data in a structured, machine-readable format.
  • Restriction — Request that we limit processing of your data in certain circumstances.
  • Objection — Object to processing based on legitimate interests.

To exercise any of these rights, contact us at legal@remobridge.com. We will respond within 30 days.

Breach Notification

In the event of a confirmed data breach involving personal data, RemoBridge will notify affected customers according to applicable legal, contractual, and regulatory requirements. Notifications will include the nature of the breach, categories of data affected, likely consequences, and measures taken to mitigate harm where required. For customers covered under a BAA, breach notifications will comply with HIPAA Breach Notification Rule requirements under 45 CFR §§ 164.400–414.

Cookies & Tracking

RemoBridge uses a minimal set of cookies and similar technologies:

  • Essential cookies — Required for authentication, session management, and security. These cannot be disabled.
  • Functional cookies — Used to remember user preferences and workspace settings.

We do not use third-party advertising trackers or sell personal information. Analytics, where used, rely on privacy-respecting, cookieless approaches.

Security

We use access controls, authenticated sessions, transport security, private object storage patterns, and audit-oriented logging to protect customer data. Security controls continue to evolve as the product is hardened for regulated use. For more details, see our Security page.

Contact

Privacy questions can be sent to legal@remobridge.com.