Privacy Policy
Effective date: to be set (draft)
DrawBridge ("Drawbridge," "we," "us") is a family scam-protection service. This policy explains what information flows through the service, how we use it, who we share it with, and the choices available. Contact us at support@example.com.
1. Who this policy covers
Three groups of people have data that flows through the service:
- The account holder ("Guardian") — the paying customer who sets up and manages protection.
- The protected person ("Parent") — the individual whose phone line is protected. A Guardian sets up protection on the Parent's behalf and must have the Parent's consent to do so.
- Callers and texters — people who call or text a protected line from a number that is not saved in the Parent's phone and is not already trusted, and therefore interact with our screener.
2. Information we collect
Account and billing. Guardian name, email, and login credentials (authentication is handled by Supabase; we do not store your password). Billing is handled by Stripe; we receive a customer identifier and subscription status but do not store full payment-card numbers.
Protected-line setup. The protected phone number(s), carrier, time zone, the Guardian's call-routing preference, an optional "safe word" (stored only as a one-way hash, never in the clear), and a list of trusted contacts.
Call screening data. For calls from unknown numbers that reach the screener: audio recordings (recording begins only after a spoken disclosure — see §4), transcripts of the caller's response, the AI classifier's verdict and reasoning, the caller's number, call timing and outcome, and any voicemail. Calls from the Parent's saved phone contacts do not reach us at all; calls from numbers already on the trusted list are not screened and are sent to voicemail (recorded only if the caller leaves a message).
Text-filtering data. For filtered texts we store a redacted snippet and a classification — never the full message body — and a one-way hash of the sender's number.
"Check This For Me" submissions. The text, screenshots, or images submitted to be checked, and the verdict returned.
Support and sales interactions. Messages sent to our website chat and support assistants, and any contact details provided (which may be stored as a sales lead).
Device and usage data. Push-notification tokens, product analytics events (PostHog), and error/performance data (Sentry).
3. How we use information
- To operate the service: screen calls, filter texts, run "Check This For Me," power the Guardian dashboard, and send alerts and digests.
- To process billing and provide customer support.
- To maintain, secure, and improve the service — including evaluating and improving our screening classifier using call and text data.
- To detect abuse, enforce our Terms, and comply with legal obligations.
4. Call recording and disclosure
Recording of a screened call never begins before a greeting that discloses the call is being handled by an automated screening service and may be recorded. Robocalls and calls stopped at the initial gate are not recorded. Recording laws vary by jurisdiction; the Guardian is responsible for ensuring they have the authority and consent to enable screening on the Parent's line (see the Terms of Service).
5. AI and automated processing
Screening is performed by automated systems. To classify a call we send the caller's audio to a speech-to-text provider (Deepgram) and the resulting transcript to a large-language- model provider (Anthropic); "Check This For Me" content is likewise processed by these providers. Under our agreements they process the data to return a result to us and are not permitted to use it to train their own models. Screening decisions are automated and imperfect — see the Terms of Service for the important limitations.
6. How we share information
We do not sell personal information. We share it with vendors strictly to operate the service:
| Provider | Purpose |
|---|---|
| Twilio (primary), Telnyx (backup) | Telephony — carrying and controlling calls/SMS |
| Deepgram | Speech-to-text on screened calls |
| Anthropic | AI classification of transcripts and check submissions |
| Supabase | Database, authentication, file storage |
| Stripe | Billing |
| Resend | Transactional email and digests |
| PostHog · Sentry | Product analytics · error monitoring |
| Railway | Application hosting |
| Expo · Apple · Google | Mobile push notifications |
We may also disclose information to comply with law, protect our rights and users' safety, or in connection with a corporate transaction, subject to this policy.
7. Data retention
Call recordings are automatically deleted after 90 days. Other data is retained while the account is active and as needed to provide the service, then deleted or de-identified within a reasonable period, except where longer retention is required by law. On account deletion, we purge the family's data, including recordings.
8. The Parent's information and consent
A Guardian sets up protection on the Parent's behalf and represents that they have the Parent's informed consent to route and screen the Parent's calls and to handle the data described here. The Parent may contact us to exercise rights regarding their own information.
9. Your choices and rights
Depending on where you live, you may have rights to access, correct, delete, or port your personal information, and to opt out of certain processing. Guardians can view and manage much of their data in the app; a full-account deletion removes the family's records and recordings. To make a request, contact support@example.com. We will verify requests and respond as required by applicable law (including, as applicable, the Texas Data Privacy and Security Act and other state privacy laws).
10. Security
We use safeguards including encryption in transit, database row-level-security isolation, time-limited signed URLs for recordings, hashing of phone numbers in application logs, and one-way hashing of safe words. No system is perfectly secure, and we cannot guarantee absolute security.
11. Children
The service is intended for adults (18+) protecting adult family members. It is not directed to children, and we do not knowingly collect personal information from children under 13.
12. Changes and governing law
We may update this policy and will post the updated version with a new effective date. This policy is governed by the laws of the State of Texas, except where a mandatory privacy law of another jurisdiction applies.