00 Privacy Policy
What we know about you, in plain words.
Two groups of people appear in this document: customers, who hold an account with us, and callers, who ring a business that uses TringTring. Both are covered, and the difference matters — so it is spelled out rather than blurred.
01Who we are
TringTring is an AI Front Desk for businesses, operated by GlobalVox. When you hold an account with us, we are the data fiduciary for your account data. When your customers call your business and our agent answers, you are the data fiduciary for that call and we are your data processor — we handle it on your instructions and for no purpose of our own.
That split is the whole document in one paragraph. Everything below follows from it.
02What we collect
When you create an account: your phone number, your name, and optionally an email address and company size. Your password is never stored — only a scrypt hash of it, which cannot be reversed into the password you chose.
When you use the product: the description of your business you record during onboarding, the agent built from it, and the calls that agent takes — audio, transcript, and an AI-written summary.
When you ask us to contact you — through the ROI calculator, the callback form, or the demo: your name, an email address or a phone number, your business, and, if you used the calculator, the figures you entered into it. That last part matters, so it is said plainly: your call volume, what a customer is worth to you, and what the calculator worked out you are losing are stored with your enquiry and are visible to our sales team. We use them to have a useful conversation with you and for nothing else.
Automatically: your IP address and browser user-agent at sign-in, kept against the session so you can see and revoke your own logins. We run no analytics, no advertising pixels, and no third-party trackers on this site.
03Callers, and call recording
If you have called a business that uses TringTring, this section is about you.
The call is recorded and transcribed. The business you called decides that — it is their record of their customer conversation, and they control it. We hold it for them.
India is a one-party-consent jurisdiction, meaning a participant in a conversation may lawfully record it. That settles whether recording is legal; it does not settle data protection. A voice identifies a person, so a recording is personal data, and under the DPDP Act you are entitled to notice of why it is being collected and to have it erased when that purpose is served.
We require every deployment to announce that the call is handled by an AI assistant and is recorded. If you want a recording of your own call deleted, contact the business you rang — and if you cannot reach them, contact our Grievance Officer and we will route it.
04Why we process it
| Purpose | Basis |
|---|---|
| Running your account and authenticating you | Performance of our contract with you |
| Building and running your agent | Performance of our contract with you |
| Recording, transcribing and summarising calls | On your instructions, as your processor |
| Rate limiting, abuse prevention, security logging | Our legitimate interest in a working service |
| Responding to you when you contact us | Your consent |
We do not sell personal data. We do not share it with advertisers. There is no advertising business here to feed.
05AI processing
Two things go to a large language model: the description of your business recorded during onboarding, which becomes your agent's instructions; and call transcripts, which become the summaries in your dashboard.
We do not train models on your data, and we do not permit our model providers to. Full detail — which models, what they see, what they may retain — is on the LLM Policy page rather than buried here.
06Who we share it with
Named sub-processors, and no one else. The current list, what each one does, and what it can see is published on the Security page — we will not describe them in the abstract when we can name them.
We will disclose data where a law compels it. Where we are permitted to tell you that has happened, we will.
07How long we keep it
Retention is set out per artefact in the Security page's retention table. The short version: sessions expire after 30 days; rate-limit counters expire after an hour; call recordings, transcripts and summaries stay until you delete them or close the account.
Archiving an agent deliberately does not delete its call history — the record of what was said to your customers outlives the agent that said it.
08Your rights
Under India's Digital Personal Data Protection Act, 2023 and its 2025 Rules, you may ask us for:
- Access — a summary of the personal data we hold about you and who it has been shared with.
- Correction — of anything inaccurate, incomplete or out of date.
- Erasure — of data whose purpose has been served, unless a law requires us to keep it.
- Withdrawal of consent — as easily as you gave it.
- Nomination — of someone to exercise these rights if you die or become incapacitated.
- Grievance redressal — below, before you escalate to the Data Protection Board.
Most of this you can do yourself, right now, without asking us. Your account page carries a one-click export of everything we hold — profile, agents, transcripts, summaries and a link to each recording — and a close-account action that erases all of it permanently. It also lists every live session and lets you end any of them, and archiving an agent is one click.
We would rather build the button than make you email us for a right you already have.
The DPDP Act's substantive obligations commence in phases to mid-May 2027. We are not waiting for the deadline to honour these requests.
09Security
Described honestly and at length on the Security page, including the certifications we do not hold. If you found a vulnerability, the disclosure route is there too.
10Cookies and storage
This marketing site sets no cookies at all — no analytics, no advertising, no consent banner to dismiss because there is nothing to consent to. The signed-in app sets exactly one cookie, the session cookie that keeps you logged in, which is strictly necessary and cannot be switched off without logging you out.
What is stored, and how to clear it, is on the Cookies & Preferences page.
11Children
TringTring is a business product and is not directed at anyone under 18. We do not knowingly create accounts for children. If you believe a child's personal data has reached us, tell the Grievance Officer and we will delete it.
12Grievance Officer
Required of every Indian intermediary by rule 3(2) of the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021. Most of our competitors do not publish one. Ours is named here.
Grievance Officer
- Name
- To be appointed before launch
- ai@globalvoxinc.com
- Acknowledge
- Within 24 hours of receipt
- Resolve
- Within 15 days of receipt
If we have not resolved your complaint to your satisfaction, you may escalate to the Data Protection Board of India.
Changes to this policy
If we change something that materially affects you, we will say so — by email where we hold one, and by moving the effective date at the top of this page. We will not quietly redate it.