On this page
1. Scope
What this policy covers — and what it leaves to third parties.
This Privacy Policy explains how Chivox, Inc. ("Chivox," "we") collects, uses, and shares personal data when you use the Chivox MCP developer console, websites, APIs, and support channels (the "Service"). It does not cover third-party sites you link to from the Service.
2. Data we collect
The four buckets of data we handle: account, usage/billing, content you submit, and technical signals.
Account data: name, email, authentication identifiers, organization details, and preferences.
Usage and billing data: API call metadata, timestamps, project/key identifiers, wallet balances, invoices, and payment references (processed by payment providers; we do not store full card numbers).
Content you submit: audio, text, or other inputs sent to evaluation endpoints, solely to provide the Service and as described below.
Technical data: IP address, device/browser type, logs, and security signals.
3. How we use data
We use data to run and secure the Service — never to sell it or train public models without your opt-in.
We use personal data to provide and secure the Service, authenticate users, meter usage, process payments, send transactional and product communications, comply with law, and improve reliability (including aggregated analytics and model quality evaluation).
We do not sell your personal data. We do not use your evaluation content to train public models unless you opt in to a separate program disclosed in the console.
4. Legal bases (EEA/UK)
The GDPR grounds we rely on when EEA/UK law applies.
Where GDPR applies, we rely on contract performance (providing the Service), legitimate interests (security, fraud prevention, product improvement), legal obligation, and consent where required (e.g., marketing emails).
6. International transfers
Data may cross borders, protected by safeguards like Standard Contractual Clauses.
We may process data in the United States and other countries. Where required, we use Standard Contractual Clauses or equivalent mechanisms for transfers from the EEA/UK.
7. Retention
We keep data only as long as needed, then delete or aggregate it.
We retain account and billing records while your account is active and for a reasonable period afterward for legal, tax, and dispute resolution purposes. Evaluation content is retained only as long as needed to provide the Service and configured retention settings, then deleted or aggregated.
8. Security
We protect data with encryption and access controls — though no system is ever 100% secure.
We implement administrative, technical, and organizational measures appropriate to the risk, including encryption in transit, access controls, and monitoring. No method of transmission or storage is 100% secure.
9. Your rights
Access, correct, delete, or port your data — contact us, or your local regulator.
Depending on your location, you may have rights to access, correct, delete, restrict, or port your data, and to object to certain processing. Contact privacy@chivox.com. You may lodge a complaint with your local supervisory authority.
10. Children
The Service isn’t for under-16s, and we don’t knowingly collect their data.
The Service is not directed to children under 16. We do not knowingly collect their personal data. Contact us to request deletion if you believe we have.
11. Changes
Updates get a fresh “last updated” date and extra notice when required.
We may update this Policy. We will post the revised version with a new "Last updated" date and, where required, provide additional notice.
12. Contact
How to reach us about privacy or your data rights.
Privacy inquiries: privacy@chivox.com. Data protection contact: Chivox, Inc., United States.
Reach our team and we’ll usually reply within two business days.
© 2026 Chivox, Inc. · Last updated June 1, 2026