Legal

Privacy Policy

Last updated May 9, 2026

SecondDesk provides operational missed-call recovery and service follow-up infrastructure for service businesses. This policy describes what we collect, why we collect it, and how we handle it. We aim to keep this short and direct.

Information we collect

We collect only what is needed to operate the service:

  • Account data — business name, operator email, login credentials, brand settings, and notification preferences.
  • Phone numbers — your business phone number and the phone numbers of customers who contact your business.
  • Service request data — the contents of customer text replies, intake answers, scheduling notes, and operator responses.
  • Uploaded photos and attachments — files customers add to a service request to help your team respond.
  • Browser and device information — IP address, browser type, device type, and basic session metadata used for security and debugging.
  • Operational analytics — anonymized usage patterns (e.g. delivery success, response timing) used to keep coverage reliable.

How we use information

  • To deliver missed-call recovery messages on your behalf.
  • To route customer replies into your operator inbox.
  • To preserve continuity across follow-up communication.
  • To maintain reliability, security, and audit trails.
  • To provide customer support to operators.

Communication providers

SecondDesk uses regulated telecommunications providers (such as Twilio) to deliver SMS messages. Phone numbers and message content are transmitted solely as necessary to deliver operational service-related messages and are subject to provider carrier and privacy obligations.

Mobile information sharing

Mobile information will not be shared with third parties or affiliates for marketing or promotional purposes.

Text messaging originator opt-in data, consent records, and mobile numbers collected for messaging purposes will not be shared, sold, rented, or transferred to third parties except as required to deliver the messaging service (for example, through regulated telecommunications providers such as Twilio).

Message frequency varies based on customer interaction with the business. Message and data rates may apply.

Customers may reply STOP to opt out at any time or HELP for assistance.

No sale of personal information

We do not sell personal information. We do not rent, trade, or repackage customer phone numbers, message contents, or service request data for advertising or lead generation.

Data retention

Operational data is retained only as long as needed to provide the service and meet legal obligations. Operators can request deletion of their account and associated business data at any time. Customer message records may be retained for a limited operational window to support continuity and dispute resolution.

Cookies and sessions

We use a small number of strictly necessary cookies to keep operators signed in and to protect accounts. We do not use third-party advertising cookies.

Security

Account data is stored on managed cloud infrastructure with encryption in transit and at rest. Access is limited to authorized personnel and scoped via role-based controls. We monitor for abuse and respond promptly to incidents.

Your choices

  • Customers can reply STOP to opt out of further messages from a business at any time, or HELP for assistance.
  • Operators can disable coverage, change rollout settings, or delete their account from within the product.

Requesting deletion

To request deletion of your account or a specific customer record, email notifications@seconddesk.io from the email associated with your account. We will confirm and complete the request within a reasonable period.

Changes

We may update this policy as the product evolves. Material changes will be communicated to active operators.

Contact

Questions? Email notifications@seconddesk.io.