Privacy Policy
Last updated: March 2026
Sockly ("we," "us," or "our") operates the Sockly AI receptionist platform and related services (collectively, the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at sockly.ai or use our Service. Please read this policy carefully. By using the Service, you consent to the practices described herein.
1. Information We Collect
Account & Contact Information. When you sign up or request a demo, we collect your name, email address, phone number, business name, and billing information.
Call Data. Our AI phone agents process inbound and outbound calls on your behalf. We collect call recordings, transcriptions, caller phone numbers, call duration, and metadata necessary to deliver the Service.
Protected Health Information (PHI). If you operate in a healthcare-adjacent industry (e.g., dental, medical, chiropractic, med spa), call data may include PHI. We handle all PHI in accordance with HIPAA requirements and only as directed under a signed Business Associate Agreement (BAA).
Usage & Device Data. We automatically collect IP addresses, browser type, operating system, referring URLs, pages visited, and interaction data through standard web technologies.
Integrations. If you connect third-party tools (e.g., CRM, scheduling, or EHR systems), we may receive data from those platforms as needed to fulfill your call handling instructions.
2. How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain the Service, including AI call handling, appointment scheduling, and message delivery.
- Process payments and manage your account.
- Improve and train our AI models — only on de-identified, aggregated data unless you explicitly opt in to sharing identifiable data for model improvement.
- Communicate with you about service updates, support requests, and promotional offers (you may opt out of marketing at any time).
- Detect and prevent fraud, abuse, or security incidents.
- Comply with legal obligations, including HIPAA and state data-protection laws.
3. Data Sharing & Disclosure
We do not sell your personal information. We may share data only in the following circumstances:
- Service Providers. Trusted vendors who assist us in operating the Service (telephony, cloud hosting, payment processing). All vendors are bound by data-protection agreements and, where applicable, BAAs.
- At Your Direction. When you connect integrations or instruct our AI to relay information to third parties (e.g., forwarding call summaries to your CRM).
- Legal Requirements. If required by law, regulation, subpoena, or court order.
- Business Transfers. In connection with a merger, acquisition, or sale of assets, with notice to affected users.
4. HIPAA Compliance
Sockly may act as a Business Associate under the Health Insurance Portability and Accountability Act (HIPAA) when processing PHI on behalf of Covered Entities. We maintain administrative, physical, and technical safeguards as required by the HIPAA Security Rule, including:
- Encryption of PHI in transit (TLS 1.2+) and at rest (AES-256).
- Role-based access controls limiting PHI access to authorized personnel.
- Audit logging of all access to PHI.
- Incident response procedures and breach notification within required timeframes.
- Workforce training on HIPAA obligations.
If your use of Sockly involves PHI, we will execute a BAA with you prior to processing any protected data. Contact us at hello@sockly.ai to request a BAA.
5. Data Security
We implement industry-standard security measures to protect your data, including encryption, firewalls, secure cloud infrastructure, and regular vulnerability assessments. While no method of electronic transmission or storage is 100% secure, we strive to use commercially reasonable means to protect your information. In the event of a data breach, we will notify affected users and relevant authorities as required by applicable law.
6. Cookies & Tracking Technologies
We use cookies and similar technologies for essential site functionality, analytics, and marketing. Specifically:
- Essential Cookies. Required for site operation (e.g., session management, security tokens).
- Analytics Cookies. Help us understand how visitors interact with our site (e.g., Google Analytics, PostHog). These may be de-identified or anonymized.
- Marketing Cookies. Used to deliver relevant ads and measure campaign performance (e.g., Meta Pixel, Google Ads). You may opt out via your browser settings or our cookie banner.
You can control cookie preferences through your browser settings. Disabling certain cookies may affect site functionality.
7. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access & Portability. Request a copy of the personal data we hold about you.
- Correction. Request correction of inaccurate or incomplete data.
- Deletion. Request deletion of your personal data, subject to legal retention obligations.
- Opt-Out. Unsubscribe from marketing communications at any time via the link in our emails or by contacting us.
- Restrict Processing. Request that we limit how we use your data in certain circumstances.
To exercise any of these rights, contact us at hello@sockly.ai. We will respond within 30 days (or as required by applicable law).
8. Data Retention
We retain your personal data for as long as your account is active or as needed to provide the Service. Call recordings and transcripts are retained for the period specified in your service agreement (typically 90 days unless otherwise configured). We may retain certain data longer as required by law, for audit purposes, or to resolve disputes.
9. Children's Privacy
The Service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If we learn that we have collected data from a child, we will delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page and updating the "Last updated" date. Your continued use of the Service after changes constitutes acceptance of the revised policy.
11. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us:
Sockly
Email: hello@sockly.ai
Website: sockly.ai