Last updated: 2026-05-02 · DRAFT (pending legal review)
Privacy Policy
1. Who we are
BlastDial, Inc. ("BlastDial", "we", "us") operates the BlastDial dialer platform at getblastdial.com and app.getblastdial.com. We are a software-as-a-service vendor; for personal data of consumers your agency contacts (debtors), you are the data controller and we are a data processor.
2. What we collect
- Account data: name, email, role, hashed password.
- Tenant data: agency name, billing address, payment method (handled by Stripe — we never see card numbers).
- Operational data: campaigns, contact lists, call records, recordings, dispositions, audit log.
- Usage data: IP, browser, pages visited, feature interactions.
3. How we use it
Provide the service, prevent abuse, comply with TCPA/FDCPA recordkeeping requirements, send service emails, improve the product through aggregated analytics. We do not sell personal data.
4. Subprocessors
We use AWS (US-East), Cloudflare, Stripe, Resend, Deepgram, OpenAI, and SIP carrier partners (Twilio/Telnyx/Bandwidth) under data-processing agreements. Current list available at getblastdial.com/security.
5. Data retention
Active tenants: data retained while the account is active. After cancellation: 30-day soft delete then permanent erasure. Compliance audit logs may be retained up to 7 years to satisfy regulator inquiries (this is required for collections operations).
6. Your rights
Access, correction, deletion, portability — submit requests to privacy@getblastdial.com. We respond within 30 days. CCPA + GDPR-equivalent rights honored where applicable.
7. Security
Encryption in transit (TLS 1.2+) and at rest (AES-256). Tenant isolation via row-level enforcement. SOC 2 Type II audit in progress; report available under NDA.
8. Contact
privacy@getblastdial.com · BlastDial, Inc. — mailing address listed in customer agreement.