Security & GDPR
Your callers trust you. You can trust us.
Phone calls carry personal information. Recepteca is designed around the GDPR (RGPD) from day one, with EU hosting and full control over every recording.
EU data hosting
Call data, transcripts and recordings are stored in data centres in the European Union.
Encryption everywhere
Data is encrypted in transit with TLS and at rest with AES-256.
Data Processing Agreement
Every customer gets a GDPR-compliant DPA. You remain the data controller.
Recording controls
Turn recording on or off, play a consent message and set retention per phone number.
Access controls
Role-based permissions, two-factor authentication and a full audit log.
Right to erasure
Delete a caller's data in one click to answer requests from data subjects.
Transparent AI, by design
Recepteca tells callers they're speaking with an AI assistant, in line with the transparency obligations of the EU AI Act. Your call data is never used to train models for other customers.
Data controls
- Call recordingOn · consent message
- Keep recordings for90 days
- Data regionEuropean Union
- Use data to train modelsNever
Frequently asked questions
Where is my data stored?
In data centres located in the European Union. We only use sub-processors that meet GDPR requirements, and the full list is available on request.
Are calls recorded?
Only if you choose so. You can disable recording completely, keep transcripts only, or record with a consent message played at the start of the call.
Is my data used to train AI models?
No. Your calls and business information are used only to provide the service to you.
How do I handle a data subject request?
Find the caller by number or name and export or delete their data in one step. Our team can also help you respond.
Have a security questionnaire?
Our team will walk you through hosting, data processing and our DPA.