Privacy Policy
Version 2
Effective Date: May 11, 2026
centerleap — Privacy Policy
Effective date: May 3, 2026 Last updated: May 11, 2026
GENERAL SOFTWARE COMPANY LLC ("centerleap," "we," "us," or "our"), doing business as centerleap.com, respects your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard personal information when you use our Services — the web application at app.centerleap.com, the marketing site at centerleap.com, and all centerleap mobile applications.
This Policy is incorporated into and forms part of our Terms of Service. Capitalized terms not defined here have the meanings given in the Terms of Service. By using the Services, you consent to the practices described in this Policy. If you do not agree, do not use the Services.
1. Information we collect
We collect information in the following categories.
1.1 Information you provide
- Account and organization information — business name, contact details, billing information.
- Customer Content — messages, calls, texts, emails, documents, contracts, HR records, CRM data, routing information, contacts, and any other content you upload, create, or transmit.
- AI / RAG inputs — documents or queries you choose to send to AI features. You may exclude specific documents or folders at any time.
- Support communications and feedback.
1.2 Automatically collected information
- Usage data — IP address, device type, browser / OS, app version, interactions with features.
- Analytics and performance data — e.g., which features are used, error logs.
- Phone / text / route features — call and SMS metadata, routing / ETA data, and location data when you enable it for dispatch features (we use providers such as HERE and LocationIQ).
- Audit logs for shared email accounts — who opened, read, replied to, or deleted messages. Required for the accountability features of centerleap mail.
1.3 Information from third parties
- Subprocessors and business tools (e.g., payment processors).
- Public sources or data you direct us to import (e.g., CRM contacts).
AI training. We do not fine-tune AI models on your Customer Content. Third-party AI providers (Anthropic, Google Gemini, etc.) are instructed not to retain or train on your data.
2. How we use your information
We use the information to:
- Provide, operate, secure, and improve the Services — including AI assistance, routing, email / chat / phone functionality, document generation, and RAG search.
- Process payments and manage subscriptions (base + usage-based billing).
- Communicate with you (support, billing, legal notices, product updates).
- Generate audit trails and accountability logs (especially for shared email accounts).
- Comply with legal obligations and enforce our Terms.
- Perform internal analytics and product improvement, aggregated or anonymized where possible.
We do not sell your personal information. AI processing occurs only on content you choose to include — you control exclusions.
3. Sharing and disclosure
We may share information with:
- Subprocessors (listed at
centerleap.com/legal/subprocessors) — including Cloudflare, Vultr, RamNode, Supabase, Telnyx, Deepgram, ElevenLabs, Anthropic, Google Gemini, HERE, LocationIQ, Brave Search, GitHub, Meta, Apple, Google, and others as updated. We maintain contracts that require them to protect your data and use it only for the services they provide to us. - Your organization members — as controlled by your admins (e.g., shared email accounts and audit logs).
- Service providers — payment processors, analytics tools, etc., under strict confidentiality.
- Legal compliance and safety — when required by law, subpoena, or to protect rights, safety, or the Services.
- Business transfers — in the event of a merger, acquisition, or sale of assets.
We do not share Customer Content with third parties for their own marketing or advertising purposes.
End-to-end encrypted content. For E2EE email and certain chat content, we hold only ciphertext. We cannot access the plaintext if you properly manage your keys.
4. Data retention
We retain information as long as needed to provide the Services, comply with legal obligations, resolve disputes, and enforce agreements. You may request deletion of your account and data via the in-product account-deletion flow (centerleap.com/legal/data-deletion or in-app equivalent).
Upon deletion:
- We will delete or anonymize Customer Content within the timeframe stated in our data-deletion process.
- Backups and certain logs may be retained for a limited additional period for security, fraud prevention, and legal compliance.
- End-to-end encrypted content may be purged immediately upon account closure.
5. Your rights and choices
5.1 For all users
- Access, correct, or delete your information (subject to legal exceptions).
- Opt out of certain marketing communications.
- Control AI / RAG inclusion by excluding documents or folders.
5.2 CCPA / California residents
You have rights to know, delete, correct, and opt out of the sale or sharing of personal information. We do not sell personal information. Submit requests to privacy@generalsoftwarecompany.com. We will verify your identity and respond within the required timeframe. You may designate an authorized agent.
5.3 GDPR / EEA, UK, and similar laws
If we process your personal data as a processor on behalf of your organization, your organization is the controller and you should direct rights requests to them. Where we act as controller, you have rights to access, rectification, erasure, restriction, portability, and objection. Contact privacy@generalsoftwarecompany.com.
We rely on legitimate interests, contract necessity, and consent (where applicable) as legal bases.
We respond to verified requests promptly and without charge unless the request is excessive.
6. Security
We implement administrative, technical, and physical safeguards designed to protect your information. However, no system is completely secure. You are responsible for maintaining the confidentiality of your account credentials and encryption keys.
7. Children's privacy
The Services are not directed at children under 13 (or 16 in the EEA / UK). We do not knowingly collect personal information from children. If we learn we have collected such data, we will delete it. Contact privacy@generalsoftwarecompany.com if you believe we hold information about a child.
8. International data transfers
Our primary operations are in the United States. When we transfer data outside your jurisdiction, we use appropriate safeguards such as the EU Standard Contractual Clauses, the UK International Data Transfer Addendum, or other approved mechanisms. Our DPA provides additional details.
9. Third-party services
The Services integrate with or rely on third parties (listed in our Subprocessor list at centerleap.com/legal/subprocessors). Their privacy practices are governed by their own policies. We are not responsible for their practices.
10. Mobile messaging (SMS) consent
If you provide a mobile phone number and consent to receive SMS messages from centerleap (for example, by ticking the SMS opt-in checkbox on a centerleap.com form), we use that phone number solely to communicate with you about the centerleap Services you have signed up for or inquired about. Message types may include account alerts, verification codes, appointment reminders, support replies, delivery notifications, and occasional service updates. Message frequency varies based on your activity.
We will not sell or share your SMS opt-in or mobile phone number with any third party for purposes unrelated to providing you with the centerleap Services for which you opted in. Our subprocessors (listed at centerleap.com/legal/subprocessors) may receive your phone number only to the extent necessary to deliver the messages on our behalf (for example, Telnyx as our SMS carrier).
You may opt out of SMS at any time by replying STOP to any message. Reply HELP for help, or contact us at support@centerleap.com or +1 (888) 852-0069. Standard message and data rates from your wireless carrier may apply.
When you opt in to SMS, we record the time of your consent, the page on which consent was given, your IP address, and the exact consent language presented. This audit trail is retained for the duration of your subscription plus the period required by applicable telecommunications regulations (currently 4 years under FCC / TCPA recordkeeping standards).
11. Changes to this Privacy Policy
We may update this Policy. Material changes will be notified by email and / or in-product notice at least 30 days in advance (or as required by law). Continued use after the effective date constitutes acceptance. We encourage you to review the Policy periodically.
12. Contact us
- Privacy inquiries:
privacy@generalsoftwarecompany.com - Support:
support@generalsoftwarecompany.com - Legal:
legal@generalsoftwarecompany.com - Mail: GENERAL SOFTWARE COMPANY LLC, Attn: Privacy, 32 N Gould St., Sheridan, WY 82801, USA.
You may also contact your organization's administrator for questions about data processed on their behalf.