Contents
- Who this policy is for
- Terms used in this policy
- Our role and yours
- Business information we collect
- Caller information we process for you
- How we use information
- What we do not do
- Service providers
- Disclosure to others
- What we can see ourselves
- How information is protected
- How long information is kept
- If you stop using the service
- Payment information
- Your responsibilities
- Your choices
- Changes to this policy
- How to contact us
1.Who this policy is for
This policy is for the home-service business using Missedly — the plumbing, heating, electrical or similar company whose missed calls the service answers. It sets out what we hold about your business, what we hold about your customers on your behalf, what we do with it, and what we will never do with it.
Your customers have their own, separate document: the privacy policy for callers. It is written for them, in their language, and you are welcome to link to it from your own website.
2.Terms used in this policy
- "you", "your business"
- the home-service business that holds an account with us and whose telephone line the service covers.
- "we", "us", "Missedly"
- Openwright LLC, a Virginia limited liability company trading as Missedly.
- "the service"
- the Missedly software: it texts back a caller whose call to you went unanswered, holds the conversation, records the job details, alerts the people you nominate, keeps your calendar, and shows you all of it on a dashboard.
- "a caller"
- a person who telephones your business and does not get through.
- "caller information"
- information about a caller that reaches the service — their telephone number, anything they tell the assistant, and the text conversation itself.
- "business information"
- information about your business, your settings, and the people you give logins to.
- "controller", "processor"
- the two roles data-protection law gives to the parties handling somebody's information. Section 3 sets out which of us is which, and why it matters.
3.Our role and yours
There are two parties handling a caller's information, and the law treats them differently.
You decide why your customers' information is collected and what happens to it. It is your business they called, your work being arranged, and your relationship with them. In data-protection language, you are the controller.
We hold and handle it for you, on your instructions, in order to run the service you are paying for. In the same language, we are the processor. We do not decide what your customer list is for, and we do not put it to any use of our own.
We are a controller in one narrow respect only: the information about your own account — your business details, your settings and your people's logins — which we hold in order to run the service and to bill for it.
In practice this means that if one of your customers asks what is held about them, or asks for it to be deleted, either of us can act on it — and we will tell you when we do. There is a page in your dashboard, Erase a caller, that does it by phone number: their conversation, every lead captured from it, any job in the calendar, and the alerts we sent you about them. It is the same page we use when a caller writes to us instead of to you, and every erasure done from it is listed there for you to see.
4.Business information we collect
| Information | Why |
|---|---|
| Your business name, trade, services and opening hours | So the assistant replies to callers as your business, and knows when you are closed |
| Your business phone number, and the number the assistant texts from | To recognize a missed call to you and to text the caller back |
| The owner's mobile number and email address | To send you alerts about new customer leads and emergencies, and the code you need to sign in |
| The names, mobile numbers and email addresses of the people at your business | So jobs can be assigned to the right person, alerts reach the right phone, and each person can sign in |
| A username and a scrambled version of the password for each person | So only your people can open your dashboard. We never store the password itself and cannot tell you what it is |
| When each person last signed in | So you can spot an account that should no longer be in use |
| Your settings — opening hours, blocked times, who gets alerted and when | So the service behaves the way you set it up, and keeps doing so after a restart |
If you asked us for a live demonstration through this website, we also hold the email address you gave and any address you asked us to copy in, so we can arrange the demonstration. Those addresses are used for that and nothing else.
5.Caller information we process for you
Only what a caller gives, plus what the phone network tells us about the call: their phone number, their name and service address if they give them, what needs fixing, when they are available, and the text conversation itself. The full detail is in the policy for callers.
We do not ask for, and the service has no use for, payment details, government identifiers or health information.
6.How we use information
We use it to run the service for you, and for nothing else: texting a caller back when you miss their call, holding the conversation, capturing the job details, alerting you and your team, keeping your calendar, showing your dashboard, and keeping the service working and secure.
7.What we do not do
- We do not sell your information or your customers' information.
- We do not share it for advertising.
- We do not market to your customers. Nobody is texted unless they called you first, and the only text they get is a reply to that call.
- We do not use one business's information for the benefit of another.
- We do not use your customers' conversations to train an AI model. Anthropic, whose model writes the replies, states in its published terms for business customers that material sent through it is not used to train their models either.
- We do not text any number that has not first called your business. There is no marketing sending, no bulk sending and no purchased lists.
8.Service providers
We use a small number of established providers to run the service. Each one only handles what it needs to:
- Telnyx — the telephone provider that connects the calls and delivers the text messages.
- Anthropic — provides the AI model that writes the replies. A conversation is sent to them for the sole purpose of producing the next reply.
- Render — hosts the software and stores the database.
Each of them handles your information on our instructions and for no purpose of their own, under terms at least as protective as those in this policy. If we change one of these providers we will tell you and update this list.
9.Disclosure to others
We may disclose information if the law requires it, or where the phone networks' own rules oblige us to answer a question about messages sent from your number. If we are ever asked for your information by anyone else, the answer is no.
10.What we can see ourselves
We write and run the software, so it is fair to ask what we can see of your business.
The people who run Missedly — keeping the service online, sending the sign-in codes, keeping these documents current — sign in with a platform admin account. It is designed to permit the upkeep of the service without permitting any view of your business.
- Your customers are not shown at all. No caller appears on the dashboard, no conversation of theirs can be opened, none of your appointments appear in the calendar, none of the alerts sent to your phone are listed, and the spreadsheet export contains none of your records.
- Of your business, the account sees your business name, your business telephone number and your opening hours — the details already published on your own website. Your services description, the owner's mobile number, your time zone and the notes on your blocked times are hidden.
- Of your people, the account sees the login rather than the person — the username, the role and the date they last signed in, because that is all administering a login calls for. Their names, mobile numbers and email addresses are hidden. The exception is another platform admin: those are our own staff, not yours, so their names are shown to each other.
- It cannot change anything of yours. It cannot message one of your customers, create, move or cancel an appointment, rename your business, or switch your assistant off. Each of those is refused by the server on every request, not merely omitted from the screen.
Only a platform admin can create another platform admin. An owner cannot — including you, on your own account — and the option does not appear at all when an owner, a representative or a technician adds a login. This is deliberate: it keeps control of who can administer the platform with us, rather than with any business using it.
The rule runs in both directions. A platform admin can create, reset and remove only other platform admins. They cannot give your login a new password, and they cannot remove it.
Any platform admin account appears on your own Logins page, identified as such, and cannot be removed by you. If you ever find one there that you were not told about, contact us and we will account for it or remove it.
What we can still do is reach the database itself, in the way any company can reach the systems it runs, when something is broken and there is no other way to fix it. We do that only when it is needed to keep the service working — never to read a conversation out of interest.
11.How information is protected
- Connections to your dashboard and between our systems are encrypted.
- A text message itself travels across the phone networks in the way those networks carry it, which is not something we control.
- Stored conversations, names, addresses and job details are encrypted where they are held. Phone numbers are stored in readable form, because they are what the system uses to find a conversation and honor a STOP.
- Your dashboard is password-protected, each person has their own login, and repeated failed attempts are locked out.
- Signing in needs a one-time code as well as a password. You can mark a device as trusted for two weeks so you are not asked every time.
- Each person sees only what their role allows. An owner sees everything; a representative can run the board but cannot change an owner's login; a technician sees the calendar and the jobs assigned to them, and nothing else. A platform admin — one of ours, not one of yours — is shown no customer details at all, as set out above.
- Requests that claim to come from the phone network are cryptographically verified before they are acted on.
No system is perfect, and we will not pretend otherwise. If something goes wrong that affects you or your customers, we will tell you, and we will tell you what we know rather than waiting until the picture is complete.
12.How long information is kept
- Conversations, captured job details, the alerts we sent you, and past appointments — deleted automatically 180 days after the last contact with that caller, or sooner if you choose a shorter period.
- Your business settings and your people's logins — kept for as long as you use the service, and removed when you close your account or take somebody off your list.
- A record that a caller replied STOP — kept indefinitely, deliberately. It is the only way to be certain that number is never texted again, and it holds nothing but the number and the fact that they opted out.
- A record that a caller rang you — the number and the date and time of the call, kept for four years. That call is the consent basis for every text we send on your behalf, and four years is how long a claim about a text message can be brought, so this is what lets you show the text was allowed. It holds nothing else — no name, no address, nothing about what was said — and it survives an erasure for the same reason the STOP record does.
- A record that somebody was erased — kept indefinitely, so you know a record was erased rather than lost. It holds the last four digits of their number, who did it and the date, and nothing else.
13.If you stop using the service
You can export your callers to a spreadsheet from the dashboard at any time, including before you leave, so nothing is held hostage. That export stays available to you even if an invoice is unpaid or in dispute. On request we delete your business's information from the service. The two records above — the STOP list and the note that somebody was erased — are what we keep, for the reasons given there.
14.Payment information
We do not hold card or bank details in the service. Anything to do with billing is handled separately, by a payment processor, and is not stored alongside your callers.
15.Your responsibilities
Some of this only works if both sides hold up their end:
- Add only the numbers of people who actually work for you, and take them off when they leave so their login goes with them.
- Tell your team that their name, mobile number and email address are held in the system, and why.
- Give each person their own login rather than sharing one. With a shared login there is no way to tell who replied to a customer or changed a booking.
- Publish a privacy policy for your own customers, or link to the caller policy above.
- Use the service for what it is: replying to people who called you. It is not a marketing tool, and using it as one would put your own phone number's reputation at risk as well as breaking the rules that govern business texting.
- Tell us if a customer asks you to delete their information and you would like us to handle it.
16.Your choices
- See what's held — most of it is on your own dashboard; ask us for the rest.
- Take a copy — export your callers to a spreadsheet from the dashboard whenever you like.
- Have it corrected — your business details, hours and team are yours to edit directly.
- Have it deleted — ask, and we will do it.
- Shorten how long it's kept — tell us the period you want and we will set it.
17.Changes to this policy
If this policy changes in a way that matters, we will update the date at the top and tell you directly rather than relying on you to check.
18.How to contact us
Missedly, operated by Openwright LLC
(757) 234-9425
contact@missedly.com
This policy describes how we handle information. It is not legal advice about your own obligations as a business — those depend on where you operate and what else you do with your customers' information.