Privacy Policy
Last updated: 30 September 2026
1. Information processed
The service may process account information, user names, email addresses, phone numbers, login/session information, lead/customer contact data uploaded by authorized customers, notes, follow-up data, call metadata, attendance data, reports, audit records and billing/payment references.
2. Why information is used
Information is used to authenticate users, operate the CRM, manage leads and teams, provide reports, maintain security and audit logs, administer subscriptions, process or reconcile payments and provide support.
3. Customer responsibility for lead data
Organizations using CallNexaCRM are responsible for ensuring they have a lawful basis and any required consent or authorization to upload, contact and process their leads or customers, including compliance with applicable telemarketing, messaging, privacy and do-not-disturb requirements.
4. Sharing
Data may be processed by service providers needed to host or operate the service and by third-party integrations explicitly enabled by an authorized customer, such as telephony, messaging or payment providers. Their own terms and privacy policies may apply.
5. Retention
Operational data may be retained while an account is active and for a reasonable period afterward for legal, security, backup or support needs. Specific retention periods should be configured and documented before production launch.
6. Security
Reasonable technical and organizational safeguards should be used, including access controls, HTTPS, secure credential storage, backups and monitoring. No system can guarantee absolute security.
7. Access, correction and deletion requests
Users should contact the organization controlling their account or the configured privacy contact for applicable requests. Before launch, add the actual request process and response timeline required in your jurisdiction.
8. Contact
Privacy contact: privacy@yourdomain.example — replace before production.