Privacy Policy

Effective date: May 29, 2026

1. Who We Are

EverSend is a product of The Moderate Genius (operating as SFWP Inc.), incorporated in Ontario, Canada. EverSend provides AI-driven SMS conversations, follow-up automation, and CRM integrations for sales teams operating Dialer.io, Twilio, HubSpot, GoHighLevel, and Close CRM.

Contact: eversend@themoderategenius.com

2. Information We Collect

2.1 Account Information

  • Email address (required for account creation)
  • First and last name
  • Organization / company name
  • Timezone preferences
  • Profile picture (optional)

2.2 Integration Data

  • Dialer.io API keys (encrypted and stored securely)
  • Twilio account credentials (encrypted and stored securely)
  • HubSpot, GoHighLevel, and Close OAuth tokens (encrypted and stored securely)
  • Calendar provider OAuth tokens (Google, Outlook, Calendly, HubSpot, GHL, OnceHub)
  • Integration configuration settings
  • Connection status and health monitoring data

2.3 Conversation & Messaging Data

Contact records processed on your behalf: name, phone number, email, and any custom fields you send to EverSend.

  • Message content for inbound and outbound SMS / MMS, AI agent responses, and conversation status
  • Basic delivery metadata (stored indefinitely): message timestamps, delivery state, carrier disposition, conversation outcome
  • Detailed debug payloads (auto-deleted after 30 days): full message and webhook payloads retained only for troubleshooting

2.4 Usage and Technical Data

  • System activity logs (for security and troubleshooting)
  • IP addresses and browser information
  • Feature usage analytics

3. How We Use Your Information

  • Service delivery: to send and receive SMS, run AI agents, sync data with your CRM, and book appointments.
  • Account management: to maintain your account and provide customer support.
  • Communication: transactional emails and important product updates (no marketing emails without consent).
  • Troubleshooting: to diagnose and resolve technical issues.
  • Legal compliance: to meet our obligations and protect our rights.

4. Information Sharing

4.1 Third-Party Service Providers

  • Supabase: database hosting and authentication (encrypted storage)
  • Twilio: SMS and MMS delivery (required for service functionality)
  • Dialer.io: call event integration
  • HubSpot, GoHighLevel, Close: CRM integration (as part of the service functionality)
  • Calendar providers: Google, Outlook, Calendly, OnceHub for AI booking
  • Vercel: web hosting and application deployment

4.2 Legal Requirements

We may disclose your information if required by law or to protect our rights, users, or the public.

4.3 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.

5. Data Retention and Deletion

  • Account data: retained while your account is active and for legal compliance periods after deletion.
  • Message metadata: basic delivery and conversation records retained indefinitely for service functionality.
  • Detailed message payloads: automatically purged after 30 days.
  • Audit logs: retained for security and compliance purposes.

6. Your Rights

6.1 All Users

  • Access and download your account information
  • Correct inaccurate information
  • Delete your account and associated data
  • Opt out of non-essential communications

6.2 EU Users (GDPR)

  • Data portability (receive your data in a machine-readable format)
  • Object to processing based on legitimate interests
  • Restrict processing in certain circumstances
  • Lodge a complaint with your data protection authority

6.3 California Users (CCPA)

  • Know what personal information we collect and how it's used
  • Request deletion of your personal information
  • Opt out of the sale of personal information (we don't sell your data)
  • Non-discrimination for exercising your privacy rights

7. Data Security

We implement industry-standard security measures including encryption at rest and in transit, access controls, and regular security assessments. API keys and OAuth tokens are stored using Supabase Vault with envelope encryption.

8. Contact Us

If you have questions about this Privacy Policy or want to exercise your rights, contact:

The Moderate Genius (SFWP Inc.)
Email: eversend@themoderategenius.com