Privacy Policy
Effective date: July 29, 2026
Moseby, by alami (“Moseby,” “we,” “us”) provides an AI phone-receptionist and booking-coordination service to participating businesses (the “Service”). This policy explains what we collect, how we use it, and the choices available to businesses and to the people who call them. By using the Service you agree to this policy and our Terms of Service.
1. Our role
Moseby acts on behalf of the business you contacted. For information about that business’s customers, the business is the party responsible for the data (the “controller”) and Moseby processes it as the business’s service provider, under the business’s instructions and this policy. Each business is responsible for its own privacy practices and for obtaining any consents the law requires.
2. Information we collect
From businesses (at enrollment and in the portal): owner and staff names, business name, phone numbers, address, hours, services and prices, policies, the configuration that tells the AI what it may do, and billing details. From callers and customers of the business: name, mobile number, and booking details (service, date, time, party size, notes). Calls & messages: recordings, transcripts, and the content and metadata of calls and text messages handled by the Service. Payments: processed by a third-party processor (Stripe); we receive confirmations and limited details, never full card numbers. Automatically: device, browser, IP address, pages viewed, and similar usage data via standard technologies.
3. How we use information
To operate the Service: answer calls as the business, quote from the business’s configuration, capture and coordinate bookings, text the owner to approve and the caller to confirm, recognize returning callers by phone number, send reminders and follow-ups the business enables, process authorized payments, provide support, prevent fraud and abuse, secure the Service, comply with law, and improve our configurations and features. Automated processing of calls and messages is performed by us and by service providers (including AI/LLM providers) acting on our behalf.
4. SMS / text messaging
By providing a mobile number, you consent to receive text messages related to bookings and the account. Message frequency varies. Message and data rates may apply. Reply STOP to opt out at any time, or HELP for assistance.
No mobile information will be shared with third parties or affiliates for marketing or promotional purposes. Text-messaging originator opt-in data and consent will not be shared with any third parties, excluding aggregators and service providers acting solely on our behalf to deliver text messages.
5. How we share information
We share information only: with the business a caller is booking with; with service providers acting on our behalf, each bound to use it only to provide services to us — telephony and messaging (e.g., Twilio), voice AI (e.g., Vapi), AI/LLM processing (e.g., Anthropic), payments (Stripe), and cloud hosting and database (Supabase, Render); in a merger, acquisition, financing, or sale of assets (with notice where required); and to comply with law, enforce our Terms, or protect rights, safety, and the integrity of the Service. We do not sell personal information, and we do not share it for cross-context behavioral advertising.
6. Data retention
We retain booking records, consent records, and communications for as long as needed to provide the Service to the business, resolve disputes, meet carrier and legal requirements, and keep business records, then delete or de-identify them. Call recordings and transcripts are kept for a limited operational period unless needed for disputes, safety, or legal compliance, or unless a business directs otherwise.
7. Security
We use reasonable technical and organizational safeguards appropriate to the data we handle. No system is perfectly secure; you use the Service at your own risk, and we encourage callers not to share sensitive information over phone or text beyond what a booking needs.
8. Regulated & health information
The Service is not intended to collect protected health information, and Moseby is not a HIPAA “business associate” unless we have signed a Business Associate Agreement with you. Businesses in healthcare, dental, or other regulated fields are responsible for configuring the Service appropriately and for their own compliance.
9. Your choices & rights
Texts: reply STOP anytime. Access, correction, deletion: email hello@themoseby.com and we will honor verified requests as required by applicable law, including (for California residents) the rights to know, correct, and delete personal information and not to receive discriminatory treatment for exercising them. We do not sell or share personal information as those terms are defined by the California Consumer Privacy Act. Requests about a specific business’s customer records may be directed to that business, for whom we act as service provider.
10. Do Not Track & children
Like most services, we do not respond to browser “Do Not Track” signals. The Service is for businesses and is not directed to children under 13; we do not knowingly collect their information.
11. United States service
The Service is operated in and directed to the United States. If you use it from elsewhere, you understand your information is processed in the U.S.
12. Changes & contact
We may update this policy; the effective date above reflects the latest version, and material changes will be reasonably highlighted. Questions: hello@themoseby.com.
Moseby, by alami — hello@themoseby.com