Legal

Privacy Policy

Explains what SIPforge collects, how workspace data is used, when it is shared, and how enterprise customers can manage privacy requests.

Last updated July 8, 2026

Scope

This Privacy Policy applies to SIPforge accounts, workspaces, authentication flows, test configuration, call-test results, support interactions, and related platform telemetry. It is written for business and enterprise users who operate SIP, Twilio Voice, and AI Voice Agent testing workflows.

Information we process

  • Account information such as name, work email, authentication state, organization membership, role, and invitation status.
  • Workspace configuration such as SIP servers, test templates, schedules, alert rules, media references, voice-agent prompts, evaluation criteria, and provider configuration.
  • Testing data such as call attempts, statuses, timestamps, quality metrics, DTMF events, transcripts, provider callback metadata, error messages, exports, and reports.
  • Operational telemetry such as logs, browser and device metadata, IP address, session events, API errors, and security-relevant audit activity.
  • Support data that users or administrators submit when requesting help or troubleshooting a test.

How information is used

  • Operate, secure, and improve the SIPforge platform.
  • Authenticate users, enforce role-based access, and route users to the correct organization workspace.
  • Run tests, monitor live execution, calculate ASR and quality metrics, generate reports, and provide troubleshooting evidence.
  • Prevent abuse, detect unauthorized activity, investigate errors, and maintain platform reliability.
  • Communicate service, security, support, account, and administrative notices.

Sharing and subprocessors

SIPforge does not sell workspace data. Data may be shared with service providers only as needed to operate the platform, such as cloud hosting, email delivery, Twilio Voice, configured AI providers, logging, analytics, and support tooling. Enterprise customers are responsible for enabling and governing any third-party provider they connect to their workspace.

Customer content and call data

Customer content remains controlled by the organization that submits it. Call recordings, transcripts, prompts, media, phone numbers, and provider events may contain sensitive business or personal information. Customers should only upload or test with data they are authorized to process.

Retention

SIPforge retains account, workspace, test, report, and audit data for as long as needed to provide the service, meet security and legal obligations, resolve disputes, and maintain business records. Customers may request deletion or export through their administrator or support process, subject to contractual, legal, backup, and security limits.

Privacy rights

Depending on location and contract terms, users may have rights to access, correct, export, restrict, or delete personal information. Enterprise users should usually submit requests through their organization administrator because the organization controls workspace data.

International processing

SIPforge and connected providers may process data in locations where they operate. Enterprise customers should review their provider choices, data residency needs, and contractual requirements before running production or regulated workloads.

Questions about this policy can go to your organization administrator or to hello@sipforge.com. You can also contact SIPforge.