Privacy policy

How A2P Desk handles account, client, and evidence data.

This policy explains the information A2P Desk collects to provide A2P 10DLC preflight workflow, evidence organization, reporting, billing, and support.

Last updated: May 26, 2026

Information we collect

  • Account and workspace details such as name, email, agency name, authentication state, plan status, and basic product activity.
  • Client and campaign information entered by agency users or client intake links, including business profile details, website links, opt-in evidence, sample messages, rejection context, and submission-pack notes.
  • Evidence files and captured page snapshots uploaded or generated inside the product, including file metadata, hashes, source URLs, timestamps, and status labels.
  • Billing identifiers and checkout status from Stripe. A2P Desk does not store full payment card numbers.
  • Technical data such as IP address, user agent, device/browser details, logs, analytics events, and security audit metadata.

How we use information

  • Provide the workspace, scanner, intake links, evidence vault, reports, billing, email notifications, and support workflows.
  • Detect abuse, enforce plan limits, secure accounts, troubleshoot errors, and improve product reliability.
  • Send product, billing, lifecycle, activation, password reset, and support communications.
  • Generate draft-only A2P remediation assistance when enabled. Raw consent PII is not sent to AI providers, and pasted rejection text is redacted before AI use.

SMS and consent data

A2P Desk is designed for agencies preparing A2P evidence. It is not an SMS sending platform. When SMS consent records or mobile numbers are stored for evidence purposes, they are treated as sensitive workflow data.

  • A2P Desk does not sell personal information.
  • A2P Desk does not share SMS consent data, mobile numbers, or text-message opt-in data with third parties for their independent marketing.
  • Agencies are responsible for ensuring they have appropriate rights to upload client evidence and use A2P Desk for their client workflows.

Service providers

A2P Desk uses service providers to operate the product. These providers process data only as needed for hosting, database, authentication, storage, email, billing, analytics, observability, and optional AI assistance.

  • Current provider categories include hosting, database/auth/storage, transactional email, payment processing, product analytics, error monitoring, and AI drafting when configured.
  • HighLevel or Twilio-related data is used only when an agency connects or enters provider workflow information.

Security and retention

  • Workspace data is scoped by agency, and private evidence is stored behind authorization controls.
  • A2P Desk keeps data while needed to provide the service, meet billing/security obligations, resolve disputes, or preserve evidence history requested by the agency.
  • Signed-in agency owners and admins can create tracked access, correction, export, or deletion requests from the dashboard Trust & Data section. Some records may be retained where needed for security, legal, billing, or audit reasons.

Your choices

  • Agency owners can manage workspace data, revoke report links, and control what evidence is uploaded.
  • You can request access, correction, export, or deletion through the dashboard Trust & Data section or the support page if you cannot sign in.
  • If you do not want certain client evidence processed by A2P Desk, do not upload it or include it in intake submissions.