← Back to Bolora

Privacy Policy

Last updated: June 14, 2026

1. Overview

Bolora Technologies ("Bolora", "we", "us", or "our") is committed to protecting the privacy of our Partners and the End Users served through Bolora-powered integrations. This Privacy Policy explains what data we collect, how we use it, how we protect it, and your rights with respect to it.

This policy applies to: (a) Bolora Partners — SaaS companies and developers who integrate our API; and (b) data processed on behalf of Partners' End Users through the Bolora platform.

2. Data We Collect

2.1 Partner Account Data

When you create a Bolora Partner account, we collect:

  • Name, email address, and company name
  • Billing information (processed via our payment processor — we do not store raw card numbers)
  • API usage logs and configuration settings
  • Communications you send us (support tickets, emails)

2.2 End User Voice Data (processed on behalf of Partners)

When End Users interact with AI Voice agents powered by Bolora, we process:

  • Audio recordings of voice conversations
  • Transcripts generated from those recordings
  • Metadata: call duration, timestamps, caller region, language detected
  • Sentiment analysis scores generated by our AI

This data is processed as a data processor on behalf of the Partner (data controller). Partners are responsible for obtaining End User consent before routing calls through Bolora.

2.3 Platform Usage Data

  • API call logs (endpoint, timestamp, response code, latency)
  • Dashboard usage analytics (pages visited, features used)
  • Error and diagnostic logs for infrastructure monitoring

3. How We Use Your Data

  • Service delivery: Process voice calls, generate transcripts, run AI inference, and return results through the API
  • Billing: Calculate and invoice usage-based charges
  • Product improvement: Analyze aggregated, anonymized usage patterns to improve our AI models and platform reliability (we do not use identifiable End User voice data to train models without explicit Partner consent)
  • Security: Detect fraud, abuse, and unauthorized access
  • Communication: Send service notifications, billing alerts, and (with consent) product updates
  • Legal compliance: Comply with applicable laws and respond to lawful requests from authorities

4. Data Retention

Call recordings and transcripts are retained for 90 days by default, after which they are automatically deleted from our systems. Partners may configure shorter retention windows via the Partner dashboard. Account data is retained for the duration of the partnership plus 3 years for legal and audit purposes. Billing records are retained for 7 years as required by financial regulations.

5. Data Sharing

We do not sell your data or your End Users' data. We share data only in the following circumstances:

  • Service providers: Infrastructure providers (cloud hosting, CDN, monitoring) who process data on our behalf under strict data processing agreements
  • Payment processors: To process billing transactions
  • Legal requirements: When required by applicable law, court order, or governmental authority
  • Business transfers: In the event of a merger, acquisition, or sale of assets, with advance notice to Partners

6. Security

Bolora implements industry-standard security measures to protect data, including:

  • TLS encryption for all data in transit
  • AES-256 encryption for data at rest
  • Access controls and least-privilege principles for internal access
  • Regular security audits and penetration testing
  • SOC 2 Type II compliance (in progress)

No system is perfectly secure. If you discover a security vulnerability, please report it responsibly to hello@bolora.in.

7. International Data Transfers

Bolora is based in India and operates infrastructure globally. If you or your End Users are located in the European Economic Area (EEA), United Kingdom, or other regions with data transfer restrictions, data may be transferred to and processed in India or other countries. We rely on Standard Contractual Clauses (SCCs) or equivalent mechanisms for such transfers. Contact hello@bolora.in to request a Data Processing Agreement.

8. Your Rights

Depending on your location, you may have the following rights with respect to your personal data:

  • Access: Request a copy of the personal data we hold about you
  • Correction: Request correction of inaccurate data
  • Deletion: Request deletion of your data (subject to legal retention obligations)
  • Portability: Receive your data in a portable format
  • Objection: Object to certain processing activities
  • Restriction: Request restriction of processing in certain circumstances

To exercise any of these rights, email hello@bolora.in. We will respond within 30 days.

For End User data rights: End Users should contact the Partner (the SaaS company they interact with), as Bolora processes this data on the Partner's behalf.

9. Cookies and Tracking

Our website (bolora.in) uses cookies and similar technologies for: session management, analytics (aggregated and anonymized), and preference storage. You can control cookie settings through your browser. We do not use third-party advertising cookies.

10. Changes to this Policy

We may update this Privacy Policy from time to time. We will notify Partners via email or dashboard notice at least 14 days before material changes take effect. The "Last updated" date at the top of this page reflects the most recent revision.

11. Contact

For privacy questions, data requests, or to request a Data Processing Agreement:

Data Protection Contact
hello@bolora.in
Bolora Technologies
hello@bolora.in