Data & Security

Your business data stays your business data.

Vanset processes customer information to provide the service set up for your business. Different service providers may help deliver communications, processing, application functions, or website infrastructure. We do not assume that every provider receives every piece of information.

Data ownership

Your information and the Vanset platform are different things.

Your business keeps its rights to the customer data, business information, and customer-specific content it provides. Vanset processes that information to deliver the agreed service.

Vanset keeps its rights to the platform itself, including its software, reusable automation, generalized methods, architecture, and proprietary technology. Any different customer-specific ownership arrangement must be agreed in writing.

How data moves

Only the parts needed for a task should move to that part of the service.

The exact path depends on whether the interaction involves a call, message, appointment, AI processing, or dashboard activity.

  1. 01CustomerA person calls, texts, or shares information.
  2. 02CommunicationsA phone or messaging service carries the interaction.
  3. 03ProcessingRelevant context may be processed to understand and respond.
  4. 04Vanset applicationThe service follows the agreed customer-handling process.
  5. 05Application dataInformation needed for service delivery may be stored.
  6. 06Business accessAuthorized users can review applicable activity.

This is a conceptual overview. It does not mean every provider sees every category of data.

What Vanset may process

The information depends on the service being used.

Contact details

Names, phone numbers, email addresses, and other information supplied during an inquiry or conversation.

Communication details

SMS content, call metadata, conversation content, transcripts, or recordings when those features are enabled.

Appointments and leads

Appointment information, service needs, qualification details, lead status, and follow-up notes.

Business information

Services, hours, common questions, scheduling information, and customer-handling preferences supplied by the business.

Service activity

Information needed to operate integrations, diagnose errors, prevent abuse, and understand service reliability.

Why it is processed

To provide the service and keep it working.

Depending on the service, information may be processed to:

  • respond to customer inquiries;
  • collect details and qualify leads;
  • schedule or manage appointments;
  • send applicable confirmations or reminders;
  • show customer activity to the business;
  • operate integrations and diagnose errors;
  • prevent abuse, maintain security, and measure reliability.

AI and customer data

AI providers may process the context needed for an interaction.

When AI processing is part of a configured service, the relevant conversation or business context may be sent to the AI provider needed to produce a response. Voice infrastructure, communications providers, AI providers, application services, and storage services perform different jobs and should not be assumed to receive the same information.

Vanset does not publish a blanket statement about provider training or retention settings because those settings must be verified in the applicable production accounts. The Privacy Policy states that Vanset does not sell personal information.

Recordings & transcripts

Behavior can vary by service setup.

Calls may be recorded or transcribed when those features are enabled. Recording defaults, available controls, storage, and retention can depend on the service configured for a business.

Vanset does not publish one retention period where the applicable setting has not been established. Recording, transcription, and retention behavior should be documented for each customer setup. Call-recording notices and consent remain the responsibility of the business where required by law or agreement.

Your controls

Requests are handled directly, not hidden behind a feature that does not exist.

Vanset does not currently advertise automated self-service export or deletion.

Access

Ask what information Vanset has about you or your business.

Export

Ask whether applicable business information can be provided in a usable form.

Correction

Ask to correct information that is inaccurate or out of date.

Deletion

Request deletion, subject to legal, billing, security, and technical retention requirements.

Termination

Ask what information remains after service ends and why it may need to remain.

Send access, export, correction, or deletion requests to hello@vanset.co.

If you leave

Service cancellation does not mean every record disappears instantly.

Customer data and customer-specific information remain separate from the reusable Vanset platform and technology. Exact export, deletion, and customer-configuration handling must follow the applicable customer agreement and service setup.

Some information may need to remain for billing, fraud prevention, security, legal obligations, or dispute resolution. Vanset does not publish a fixed deletion deadline until the applicable retention rules and provider settings have been finalized.

Service providers

Infrastructure providers perform specific parts of the service.

This website is configured for deployment through Cloudflare Pages. Vanset is still verifying the production communications, voice, AI, application, and storage provider list, so those providers are not presented here as final.

Documented website infrastructure
ProviderPurposeInformation that may be processed
Cloudflare PagesPublic website hosting and network deliveryWebsite requests and ordinary network metadata when the site is deployed there

Providers may change as Vanset evolves. Material changes should be reflected here and in the Privacy Policy where appropriate.

Security principles

Clear limits are more useful than impressive promises.

Use what is needed

Different parts of the service should receive only the information needed to perform their function.

Keep credentials out of public code

The public website repository does not contain production provider credentials or database secrets.

Protect the public website

The deployment configuration requests restrictive content-type, referrer, framing, camera, microphone, and location headers.

Be honest about open questions

Vanset does not claim certifications, fixed retention, or provider settings that this repository cannot prove.

Questions about your setup?

Ask before you share customer information.

We can explain what is known, what depends on provider settings, and what should be written into the customer agreement.

Contact Vanset