Last Updated: October 23, 2025
Company: Temptera Limited (Registration No. 654313/ Record No. 39296537)
This Privacy Policy describes how Temptera Limited ("we," "us," or "our") collects, uses, and discloses information when you ("Customer" or "you") access our website, platform, and services (collectively, the "Services").
1. Our Role: Data Controller vs. Data Processor
Our role in processing personal data depends on the context.
As a Data Controller
We act as a Data Controller when we collect and process personal data for our own purposes. This includes:
- Account Information: Your name, email address, phone number, company name, and user credentials.
- Billing and Payment Information: Your billing address, credit card details, and payment history.
- Support and Communication Data: Information you provide when you contact our support team or communicate with us, including support tickets and email correspondence.
- Platform and Website Usage Data: Technical data, IP addresses, and analytics on how you interact with our website and account portal.
As a Data Processor
We act as a Data Processor when we process personal data on your behalf as part of your use of our Services. You are the Data Controller for this data, and you are solely responsible for its legality, security, and for obtaining all necessary end-user consents and permissions. The data we process on your behalf includes:
- Customer Content: The content of communications sent or received through our Services, such as the body of SMS messages or voice call recordings (if you enable this feature).
- Communications Metadata: Information about the communications, including originating and destination phone numbers, Sender IDs, timestamps, call duration, pricing information, delivery receipts (DLRs), and routing information.
- Data Submitted to AI Services: Any data, text, or content you provide as input to our AI Services for processing.
You, as the Data Controller, represent and warrant that you have obtained all necessary rights, permissions, and explicit consents from your end-users to process their data and to authorize us to process their data on your behalf in accordance with this Policy and our Terms of Use.
2. Data Processed for Specific Services
We process specific data to provide, bill for, and secure our Services.
Voice (DID Numbers & SIP Trunking)
To route calls, ensure quality, and bill for usage, we process:
- Call Detail Records (CDRs): Metadata including origination and destination numbers, timestamps, call duration, routing data, and pricing information.
- Voice Recordings: If you enable and use our call recording feature, we will process and store the audio recordings of your calls on your behalf and at your direction. You are solely responsible for obtaining all necessary consents for call recording under applicable laws.
We process this data to route calls through our network and the networks of our downstream carriers, to bill you for service usage, and to detect and prevent fraudulent activity.
SMS (OTP, Transactional, Promotional)
To send, receive, and deliver text messages, we process:
- Message Content: The text and media content of the messages you send or receive.
- Message Metadata: End-user phone numbers, Sender IDs, timestamps, delivery receipts (DLRs), and carrier routing information.
AI Services
Our AI Services (such as speech-to-text, sentiment analysis, or bot interactions) may be used to analyze, transcribe, or generate content based on your inputs.
- Data Ownership: You retain all right, title, and interest in and to all data, content, or information you provide to the AI Services ("Customer Data").
- Purpose Limitation: We will process Customer Data provided to our AI Services solely for the purpose of providing the AI Service to you.
- No Model Training: We will not use your Customer Data (such as SMS content, call transcriptions, or other inputs) to train or improve our own or any third-party general artificial intelligence models.
- Use of Customer Data for any purpose other than providing the contracted service to you is explicitly prohibited, unless you provide us with separate, explicit, and written consent to do so.
3. Data Sharing and Subprocessors
We do not sell your personal data. We only share data in the following limited circumstances:
- Downstream Carriers and Network Operators: We must share communications data (such as phone numbers, message content, and routing information) with third-party telecommunications providers, network operators, and SIP providers to terminate calls and deliver messages on your behalf.
- Service Providers (Subprocessors): We use third-party service providers to assist in our operations (e.g., payment processors, cloud hosting providers, customer support platforms).
- AI Subprocessors: Some of our AI Services may be powered by third-party AI providers. We will be transparent about the use of such providers and will ensure they are bound by contractual obligations consistent with this Policy, including the "No Model Training" clause.
- Legal Compliance: We may disclose information if required by law, subpoena, or other legal process, or to protect against fraud and to protect the safety and integrity of our platform.
We maintain an up-to-date list of our key subprocessors, which is available upon request or in your account portal. We will provide notice of any new subprocessors in accordance with our Data Processing Addendum (DPA).
4. Data Security and Retention
Security
We implement robust technical and organizational security measures to protect the data we process, including encryption in transit and at rest, network firewalls, and strict access controls.
Retention
We retain data for as long as necessary to provide the Services, comply with our legal obligations, resolve disputes, and enforce our agreements. Message content and call recordings are typically retained for a limited, defined period, after which they are securely deleted. Customers may be able to configure their own retention settings within the platform.