Privacy Policy
Last updated: August 13, 2026
This policy explains how Code Slice LLC (“eComDesk”, “we”) handles personal data. Two roles matter: for the account data of people who sign up, we are the controller. For the support data our customers connect — their tickets, orders, callers (“End-Customer Data”) — we act as a processor/service provider on the customer’s instructions.
1. Data we collect
- Account data — name, email, password (handled by our authentication provider; we never see plaintext passwords), workspace membership and role.
- Workspace content — data you or your connected services provide: support tickets and messages, customer records, orders and shipments, phone-call recordings and transcripts, product catalogs, knowledge entries, and policies.
- Usage and billing data — feature usage, AI-run and call metering, audit logs, and subscription status. Card details are collected and stored by Stripe, not by us.
- Technical data — logs, IP addresses, and essential cookies used for authentication sessions. We do not use advertising trackers.
2. How we use data
- To provide the service: sync, analyze, draft, and resolve support conversations.
- To operate AI features (see section 3), billing, security, and support.
- To send service emails (invitations, notifications you configure).
- To improve reliability — using aggregate, de-identified usage metrics.
We do not sell personal data and we do not use it for third-party advertising.
3. AI processing
To analyze tickets and draft replies, relevant conversation and order context is sent to large-language-model providers (currently Anthropic, OpenAI, and Google) under agreements that prohibit using our API data to train their models. Phone calls are handled with ElevenLabs for speech; recordings and transcripts are stored in your workspace. AI output is verified against your own data before sending, and every AI action is recorded in an audit ledger.
4. Subprocessors
We use these providers to run the service:
- Vercel (application hosting) · Supabase (database, authentication, storage)
- Stripe (payments) · Resend (transactional email)
- Anthropic, OpenAI, Google (AI models) · ElevenLabs (voice AI)
- Services you connect yourself (e.g. Zendesk, ShipStation, Twilio) process data under your own agreements with them.
5. Voice calls
The phone agent answers calls on your number, and calls are recorded and transcribed to create support tickets. As the merchant, you are responsible for any caller-notification requirements that apply to you (the default greeting can disclose recording).
6. Security
Data is encrypted in transit (TLS) and at rest. Integration credentials are additionally encrypted with AES-256-GCM before storage. Access is role-based per workspace; immutable audit and action ledgers record sensitive operations.
7. Retention and deletion
Workspace content is retained while your workspace is active. Deleting a ticket, or your whole workspace, permanently removes the associated records from our database. On account termination we delete workspace data after a wind-down period (see Terms), except records we must keep for legal or billing purposes.
8. Your rights
Depending on where you live (including under GDPR and CCPA), you may have rights to access, correct, export, or delete your personal data, and to object to or restrict some processing. Email hello@codeslicellc.com and we will respond within 30 days. If you are an end customer of a store that uses eComDesk, please contact that store first — we will assist them with your request.
9. International transfers
We are a U.S. company and process data in the United States. Where required, transfers are protected by appropriate safeguards such as standard contractual clauses with our subprocessors.
10. Children
The service is for businesses and is not directed to children under 16.
11. Changes
We will post updates here and notify you of material changes by email or in the product.
12. Contact
Code Slice LLC · hello@codeslicellc.com · www.codeslicellc.com