Privacy Policy
Last updated: 2026
Welcome to https://telosa.cx/ (the Site).We understand that privacy online is important to users of our Site, especially when conducting business.This statement governs our privacy policies with respect to those users of the Site (Visitors) who visit without transacting business and Visitors who register to transact business on the Site and make use of the various services offered by This APP (collectively, Services) (Authorized Customers).
Personally Identifiable Information
refers to any information that identifies or can be used to identify, contact, or locate the person to whom such information pertains, including, but not limited to, name, address, phone number, fax number, email address, financial profiles, social security number, and credit card information. Personally Identifiable Information does not include information that is collected anonymously (that is, without identification of the individual user) or demographic information not connected to an identified individual.
What Personally Identifiable Information is collected?
We may collect basic user profile information from all of our Visitors. We collect the following additional information from our Authorized Customers: the names, addresses, phone numbers and email addresses of Authorized Customers, the nature and size of the business, and the nature and size of the advertising inventory that the Authorized Customer intends to purchase or sell.
What organizations are collecting the information?
In addition to our direct collection of information, our third party service vendors (such as credit card companies, clearinghouses and banks) who may provide such services as credit, insurance, and escrow services may collect this information from our Visitors and Authorized Customers. We do not control how these third parties use such information, but we do ask them to disclose how they use personal information provided to them from Visitors and Authorized Customers. Some of these third parties may be intermediaries that act solely as links in the distribution chain, and do not store, retain, or use the information given to them.
How does the Site use Personally Identifiable Information?
We use Personally Identifiable Information to customize the Site, to make appropriate service offerings, and to fulfill buying and selling requests on the Site. We may email Visitors and Authorized Customers about research or purchase and selling opportunities on the Site or information related to the subject matter of the Site. We may also use Personally Identifiable Information to contact Visitors and Authorized Customers in response to specific inquiries, or to provide requested information.
With whom may the information may be shared?
Personally Identifiable Information about Authorized Customers may be shared with other Authorized Customers who wish to evaluate potential transactions with other Authorized Customers. We may share aggregated information about our Visitors, including the demographics of our Visitors and Authorized Customers, with our affiliated agencies and third party vendors. We also offer the opportunity to ‘opt out’ of receiving information or being contacted by us or by any agency acting on our behalf.
How is Personally Identifiable Information stored?
Personally Identifiable Information collected by This APP is securely stored and is not accessible to third parties or employees of This APP except for use as indicated above.
What choices are available to Visitors regarding collection, use and distribution of the information?
Visitors and Authorized Customers may opt out of receiving unsolicited information from or being contacted by us and/or our vendors and affiliated agencies by responding to emails as instructed, or by contacting us at [email protected]
Are Cookies Used on the Site?
Cookies are used for a variety of reasons. We use Cookies to obtain information about the preferences of our Visitors and the services they select. We also use Cookies for security purposes to protect our Authorized Customers. For example, if an Authorized Customer is logged on and the site is unused, system may automatically log the Authorized Customer off.
How does This APP use login information?
This APP uses login information, including, but not limited to, IP addresses, ISPs, and browser types, to analyze trends, administer the Site, track a user’s movement and use, and gather broad demographic information.
What partners or service providers have access to Personally Identifiable Information from Visitors and/or Authorized Customers on the Site?
This APP has entered into and will continue to enter into partnerships and other affiliations with a number of vendors.Such vendors may have access to certain Personally Identifiable Information on a need to know basis for evaluating Authorized Customers for service eligibility. Our privacy policy does not cover their collection or use of this information. Disclosure of Personally Identifiable Information to comply with law. We will disclose Personally Identifiable Information in order to comply with a court order or subpoena or a request from a law enforcement agency to release information. We will also disclose Personally Identifiable Information when reasonably necessary to protect the safety of our Visitors and Authorized Customers.
How does the Site keep Personally Identifiable Information secure?
All of our employees are familiar with our security policy and practices. The Personally Identifiable Information of our Visitors and Authorized Customers is only accessible to a limited number of qualified employees who are given a password in order to gain access to the information. We audit our security systems and processes on a regular basis. Sensitive information, such as credit card numbers or social security numbers, is protected by encryption protocols, in place to protect information sent over the Internet. While we take commercially reasonable measures to maintain a secure site, electronic communications and databases are subject to errors, tampering and break-ins, and we cannot guarantee or warrant that such events will not take place and we will not be liable to Visitors or Authorized Customers for any such occurrences.
How can Visitors correct any inaccuracies in Personally Identifiable Information?
Visitors and Authorized Customers may contact us to update Personally Identifiable Information about them or to correct any inaccuracies by emailing us at [email protected]
Can a Visitor delete or deactivate Personally Identifiable Information collected by the Site?
We provide Visitors and Authorized Customers with a mechanism to delete/deactivate Personally Identifiable Information from the Site’s database by contacting [email protected]. However, because of backups and records of deletions, it may be impossible to delete a Visitor’s entry without retaining some residual information. An individual who requests to have Personally Identifiable Information deactivated will have this information functionally deleted, and we will not sell, transfer, or use Personally Identifiable Information relating to that individual in any way moving forward.
What happens if the Privacy Policy Changes?
We will let our Visitors and Authorized Customers know about changes to our privacy policy by posting such changes on the Site. However, if we are changing our privacy policy in a manner that might cause disclosure of Personally Identifiable Information that a Visitor or Authorized Customer has previously requested not be disclosed, we will contact such Visitor or Authorized Customer to allow such Visitor or Authorized Customer to prevent such disclosure.
Links:
https://telosa.cx/ contains links to other web sites. Please note that when you click on one of these links, you are moving to another web site. We encourage you to read the privacy statements of these linked sites as their privacy policies may differ from ours.
Google API Services User Data
Telosa uses Google APIs — specifically the Gmail API and the YouTube Data API v3 — to power the customer-communication features described on our homepage. When you (a business admin) connect a Gmail account or YouTube channel to Telosa through Google's OAuth 2.0 flow, we access, use, protect, retain, and delete the resulting data as follows.
What Google user data we access.
- Gmail: message metadata (message ID, thread ID, historyId), message content (subject, sender, recipients, body, attachments), inbox and label state via the Gmail History API, and the connected account's profile email address. We use
gmail.readonlyfor read operations,gmail.sendfor sending replies,gmail.modifyexclusively for theusers.watchandusers.stopendpoints that register Google Cloud Pub/Sub push notifications so incoming customer email reaches you in real time, anduserinfo.emailfor displaying the connected account address to the business admin. Telosa does not modify, label, or delete any Gmail message; thegmail.modifyscope is the minimum Google requires for thewatch/stopendpoints even when no message state is changed. - YouTube: connected channel identity and metadata, uploaded video metadata and statistics, comment threads and individual comments on the connected channel's videos, and commenter profile enrichment (subscriber count, handle, description, avatar) via
youtube.force-ssl.
How we use Google user data.
- Render the connected mailboxes and channels inside Telosa's Unified Inbox so business teams can see and manage customer conversations in one place.
- Generate AI-drafted reply suggestions for human agents to review before sending. Drafts are generated at inference time per message; Google user data is not retained in any training corpus or model weight update.
- Deliver approved replies via
users.messages.send(Gmail) andcommentThreads.insert(YouTube). - Subscribe to real-time push notifications via
users.watch(Gmail) and WebSub (YouTube) so incoming customer messages surface in Telosa within seconds.
How we share Google user data.
Telosa does not sell Google user data and does not transfer it to third parties for advertising, retargeting, or any commercial purpose outside operating the service. We share Google user data only with sub-processors strictly required to run Telosa, under written Data Processing Agreements: our cloud hosting provider (Amazon Web Services), and the AI inference providers we use for reply drafting (Amazon Bedrock — Anthropic Claude; Google Vertex AI). Each of those providers is contractually forbidden from using submitted content to train their foundation models.
How we protect Google user data.
Encryption in transit via TLS 1.2 or higher; encryption at rest via AES-256; OAuth refresh tokens are stored under envelope encryption; role-based access controls limit which Telosa personnel can view any Google user data (and, in practice, no Telosa personnel access customer message content in the course of ordinary support); every access event is audit-logged; the service undergoes independent security review at least annually.
How long we retain Google user data, and how we delete it.
Connected-account tokens and cached Google user data (messages, comments, metadata) are retained for the duration of the business's active service term. When a business admin disconnects a Gmail account, Telosa calls users.stop to unsubscribe the Pub/Sub watch, revokes the stored refresh token, and deletes cached content within 30 days. When a business admin disconnects a YouTube channel, Telosa revokes the stored refresh token and deletes cached content within 30 days. Businesses may request accelerated deletion by writing to [email protected]; requests are actioned within 30 days.
Limited Use.
Telosa's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- Google user data is used only to provide or improve user-facing features that are prominent in the Telosa application's user interface.
- Google user data is not transferred to others unless necessary to provide or improve those user-facing features, comply with applicable law, or as part of a merger, acquisition, or sale of assets with notice to affected users.
- Google user data is not used or transferred for serving advertisements — including retargeting, personalised, or interest-based advertising.
- Google Workspace and YouTube user data is not used to develop, improve, or train generalised AI/ML models, and is not transferred to third-party AI/ML services for such training. AI-generated reply drafts are produced at inference time on a per-request basis and are not retained in any training corpus.
- No human at Telosa reads Google user data unless (a) the affected user has given affirmative agreement, (b) it is necessary for security purposes (e.g. investigating abuse), (c) it is necessary to comply with applicable law, or (d) the data is aggregated and used for internal operations in accordance with applicable privacy law.
Questions about this section can be directed to [email protected].
