Privacy Policy

Last updated: 2026-07-27

1. Who we are

DDP Frontdesk v2.0 ("the Service", "we", "us") is operated by Bruce Svenson, a sole trader trading as Digital Destiny Pro (ABN 75 231 460 248), based in Brisbane, Queensland, Australia. We also trade as The Washing Club under the same ABN. The Service is a multi-tenant SaaS portal that helps small service businesses manage customer conversations, leads, appointments, and Google Business Profile activity.

The short version, which the rest of this policy spells out: your data belongs to you, we use it only to run your service, we never sell it to anyone for any purpose, and you can ask us to delete it at any time.

Questions about this policy or your data: support@digitaldestinypro.com.

2. What data we collect

Account data

  • Email address (required for sign-in)
  • Full name (optional)
  • Phone number (optional — used for owner SMS controls)
  • Role and permissions within your business workspace

Business workspace data

  • Contacts you create or import (name, phone, email, custom fields you define)
  • Conversation history (SMS, voice transcripts, email, webchat) between your business and your customers
  • Pipeline deals, appointments, tags, notes
  • Business configuration (hours, AI tone, templates)

Google Business Profile data (only if you connect)

When you OAuth into the Service with your Google account and grant the business.manage scope, we access only the Google Business Profile data needed to provide the features you use:

  • Your business profile information (name, address, hours, description, categories, photos) — used for the profile audit
  • Reviews left on your business — used for the reviews inbox + AI-drafted replies
  • Google Posts you create through the Service — used to publish to your profile on your behalf
  • 30-day performance metrics (impressions, calls, clicks) — used for the dashboard

We do not access your Gmail, Drive, YouTube, or any other Google service data. We do not share, sell, or transfer Google user data to anyone for advertising, sale, or profiling.

Google Calendar data (only if you connect)

Connecting a Google Calendar is optional and is used for one purpose: running your bookings. If you connect one and grant the calendar.readonly and calendar.events scopes, we use them as follows.

  • Reading availability — we query Google's free/busy service for your primary calendar so times you are already busy are hidden from your public booking page. This returns busy time ranges only: we do not read, receive or store the titles, descriptions, locations, guests or any other content of your existing events.
  • Writing your bookings — when a customer books, we create that appointment on your calendar and request a Google Meet link for it. We update that event if the booking is rescheduled and remove it if it is cancelled. We only ever modify events this Service created; events you created yourself are never changed or deleted.

From your calendar we store only what is needed to keep the booking and the event in step: the Google event ID and the generated Meet link, saved against that booking. Your OAuth tokens are encrypted at rest. Disconnecting removes the connection and its tokens, and we stop accessing your calendar immediately; events already created remain on your calendar for you to keep or delete.

Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Google user data is never used to train generalised AI models.

Usage telemetry

  • Per-feature usage counts (AI calls, SMS sent, transcripts generated) for billing + plan management
  • Server logs (request paths, response codes, error traces)
  • We do not use third-party analytics, ad networks, or session-replay tools.

3. How we use your data

  • To operate the Service for your business workspace
  • To process customer conversations through our AI providers (DeepSeek for replies and drafts, OpenAI for voice transcription and text embeddings) so we can return suggested replies and drafts to you
  • To send transactional communications (sign-in links, alerts, digests you've opted into)
  • To bill for usage above your plan's included quota
  • To investigate abuse or security incidents

We do not train AI models on your data, and we never sell your data or your customers' data to anyone, for any purpose. Our AI providers process the requests we send them only to generate the response, under each provider's API data terms.

4. Third parties that process your data

The Service relies on the following providers, each contracted with appropriate data-processing terms:

ProviderPurposeData sent
SupabaseDatabase, authentication, file storageAll workspace data
VercelApplication hostingIn-flight requests + server logs
DeepSeekAI replies, drafts, classificationConversation context for the AI to reply to
Anthropic (Claude)Admin-side content research tools onlyBusiness/topic text — no customer conversations
OpenAIVoicemail transcription, text embeddingsAudio files + text passages
TwilioSMS + voice callsPhone numbers + message content
ResendTransactional emailRecipient email + message body
Google (Business Profile & Calendar)Reviews, posts, profile management; booking availability and calendar eventsOnly via OAuth, only when you connect
Cal.comAppointment bookingOnly when you connect a Cal.com account

5. Where your data is stored

Workspace data is stored in Supabase Postgres databases hosted in Sydney (ap-southeast-2) for Australian businesses. Audio files (voicemails, greetings) are stored in Supabase Storage in the same region. All data is encrypted at rest using AES-256.

AI processing requests may transit to our AI providers' servers outside Australia (DeepSeek and OpenAI; Anthropic for the admin research tools). Twilio routes traffic through its global network. Google data stays on Google's infrastructure.

6. How long we keep your data

  • Active workspace data: kept as long as your account is active.
  • After you disconnect a Google account: OAuth tokens deleted within 24 hours. Cached reviews and posts deleted within 7 days.
  • After you close your account: request an export of your contacts and conversation history within 30 days; workspace data is deleted 90 days after closure unless legal retention applies (e.g. billing records, fraud investigation).
  • On request at any time: ask us to delete your content or data and we'll do it promptly — deleting information the service relies on may limit what the AI can do, and anything the law requires us to keep is kept only as long as the law requires.
  • Server logs: 90 days, then automatically purged.

7. Your rights

Under Australian Privacy Principles (and GDPR if applicable), you have the right to:

  • Access the personal data we hold about you
  • Correct inaccurate data
  • Delete your data (subject to legal retention)
  • Export your data in a portable format
  • Withdraw consent for processing
  • Disconnect any third-party integration (Google, Cal.com, etc.) at any time from your portal settings
  • Lodge a complaint with the Office of the Australian Information Commissioner

To exercise any of these rights, email support@digitaldestinypro.com and we'll respond within 30 days.

8. Google API Services User Data Policy compliance

Our use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:

  • We only access Google user data necessary to provide the features the user has explicitly opted into.
  • We do not transfer Google user data to third parties except as needed to provide the Service.
  • We do not use Google user data for advertising purposes or to train AI models.
  • Humans only access Google user data with explicit consent for support, security, or legal reasons.

9. Security

  • HTTPS-only transport (TLS 1.3 where supported)
  • Row-level security in Supabase isolates each workspace from every other
  • OAuth tokens encrypted at rest
  • Server-side keys never exposed to the browser
  • Regular dependency updates + security patching

No system is perfectly secure. If you become aware of a vulnerability or breach, please email support@digitaldestinypro.com immediately.

10. Children

The Service is for business use and is not directed to children under 16. We do not knowingly collect data from minors.

11. Cookies + tracking

We use a session cookie for authentication only. We do not use advertising cookies, third-party trackers, or analytics services that profile users across sites.

12. Changes to this policy

We may update this policy as the Service evolves. Material changes will be notified by email to the account owner and shown on first login. Continued use after notice constitutes acceptance.

13. Governing law

This policy is governed by the laws of Queensland, Australia.