TX Stacks Privacy Policy
Effective date: October 16, 2025
Who we are and scope
- TX Stacks LLC (“TX Stacks,” “we,” “us,” “our”) provides AI voice agents and SMS workflows for home service businesses and for TX Stacks’ own sales/demos.
- This Policy describes how we collect, use, share, and protect personal information from:
- Callers and texters interacting with our AI agents on behalf of our clients.
- Prospects and customers who interact with TX Stacks (e.g., demos, website, forms).
- If you are a customer of one of our client businesses, that business is typically the controller of your data and TX Stacks acts as its processor/service provider.
Roles and how we operate
- When we provide AI and messaging services to a client: the client is the data controller; TX Stacks is the processor/service provider acting under the client’s instructions and data processing agreement (DPA). GoHighLevel (GHL) serves as our primary platform/processor.
- When you interact directly with TX Stacks (e.g., request a demo): TX Stacks is the controller of your data.
Information we collect
Depending on your interaction, we may collect:
- Identifiers and contact details: name, phone numbers (including mobile), email, company, role, address, service location and access notes.
- Communications and content: call audio, call recordings, voicemail, AI-generated transcripts/summaries, SMS/MMS messages and any photos/videos you send.
- Service details: issue descriptions, urgency level, appointment preferences, and related job information.
- Technical/usage data: timestamps, call/SMS metadata, IP address, device/connection info, browser type, referral pages, and cookie/tracking data on our website.
- Preferences and consents: SMS opt-in/opt-out, language preferences.
- Sensitive data: We do not seek sensitive personal information. Do not share payment card details, health, or government IDs by voice/SMS. We do not create or store biometric identifiers from voice.
- How we collect information
- Directly from you during calls/SMS, forms, or emails.
- From our clients who engage us to contact or respond to you.
- Automatically via our systems and service providers (e.g., telephony, logging, cookies/analytics).
How we use information
We use personal information to:
- Provide and operate AI voice and messaging services, qualify leads, route emergencies, schedule or confirm appointments, and deliver notifications.
- Send transactional SMS or emails (e.g., confirmations, reminders, photo requests, links, updates).
- Improve quality, security, and performance of our services (including testing, troubleshooting, analytics, de‑identified training and tuning).
- Comply with legal obligations and enforce terms, prevent fraud and abuse, and protect our users and clients.
Legal bases under GDPR (where applicable): performance of a contract, legitimate interests (e.g., service improvement, fraud prevention), consent (e.g., SMS opt‑in), and legal obligations.
SMS/A2P 10DLC disclosures
- Message frequency varies; Msg&Data rates may apply.
- Opt‑in: You may consent on a website form, by texting us first, or verbally during a recorded call (“Is it okay if we text you updates?”).
- Opt‑out: Reply STOP (or STOPALL, UNSUBSCRIBE, END, QUIT, CANCEL) to end messages. We will send a one‑time confirmation and honor your opt‑out. Text HELP for help.
- Links: We use branded domains. We do not use public link shorteners in regulated campaigns.
- No mobile sharing for marketing: We do not sell or share mobile subscriber information (phone numbers, consent status, message content) with third parties for their marketing purposes. Mobile numbers are used only to deliver our services and are disclosed only to processors necessary to transmit messages (e.g., carriers, messaging platforms) or as required by law.
How we share information
We do not sell personal information. We share:
- With client businesses (as controllers) when our agent interacts on their behalf, so they can respond to your request, schedule service, or dispatch.
- With processors/service providers under contract, including:
- GoHighLevel (GHL) as our primary CRM/AI platform and processor.
- Telecommunications carriers and messaging aggregators for call/SMS delivery.
- Cloud hosting, email, calendar, analytics, and support tools.
- Speech-to-text/AI providers used to transcribe and summarize calls (as processors).
- With affiliates or professional advisors as needed for operations, audits, or legal compliance.
- For legal reasons: to comply with law, lawful requests, protect rights/safety, or in a merger/acquisition. Any transfer will follow this Policy.
Cookies and website tracking
- We use essential cookies for site operation and may use analytics cookies to understand traffic and improve our site.
- You can control cookies in your browser and, where provided, via our cookie banner.
- “Do Not Track” signals: We do not respond to DNT signals at this time.
Data retention
- We retain personal information only as long as necessary for the purposes described above or as required by law.
- Typical retention: call recordings and transcripts up to 12 months; logs up to 24 months; account and contract records per legal requirements. Clients may request shorter retention as part of their DPA.
Security
- We implement administrative, technical, and physical safeguards including encrypted transport, encryption at rest where supported, role‑based access controls, MFA for staff, least‑privilege access, and regular reviews.
- No method of transmission or storage is 100% secure. If we discover a security incident affecting your data, we will notify impacted parties as required by law and contract.
Your privacy rights
Depending on your location, you may have rights to:
- Access/know: Request a copy of the personal information we hold about you.
- Correct: Ask us to correct inaccurate or incomplete information.
- Delete: Request deletion of your personal information (subject to legal/contractual limits).
- Portability: Receive your information in a portable format.
- Restrict/opt‑out: Object to or restrict certain processing; opt out of non‑essential cookies.
- Opt‑out of “sale”/“sharing”: Under CCPA/CPRA, opt out of the sale or sharing of personal information for cross‑context behavioral advertising. TX Stacks does not sell personal information and does not share mobile numbers for marketing; limited analytics cookies may constitute “sharing” under CPRA—use our cookie controls to opt out.
- Limit use of sensitive information: We do not use sensitive personal information to infer characteristics.
- Non‑discrimination: We will not discriminate against you for exercising your rights.
How to exercise your rights
- Email info@txstacks.com with your request. Specify whether you are contacting us as a TX Stacks prospect/customer or as a customer of one of our client businesses (include the client’s name, if known).
- We may need to verify your identity and request additional details. We aim to respond within 30 days (GDPR) or 45 days (CCPA/CPRA).
- Authorized agents (California): You may designate an authorized agent to submit a request; we may require proof of authorization.
- International data transfers
- We are based in the United States. If you are outside the U.S., your data may be transferred to and processed in the U.S. and other countries, which may have different data protection laws.
- Where required, we use appropriate safeguards (e.g., Standard Contractual Clauses) for cross‑border transfers.
Children’s privacy
- Our services are not directed to children under 13, and we do not knowingly collect personal information from them. If you believe a child has provided us information, contact info@txstacks.com and we will delete it.
- Controller/processor disclosures and GHL
- For client projects, TX Stacks acts as a processor/service provider to the client (controller). GHL acts as our platform/processor (and sub‑processor in client projects). Each is bound by a DPA and confidentiality obligations. A current list of key processors is available on request.
Your choices
- SMS: Reply STOP to opt out; HELP for help. You can also email info@txstacks.com to update preferences.
- Email: Use unsubscribe links in our emails or contact us.
- Calls/recordings: Tell the agent if you do not want to proceed; we will provide non‑recorded channels where feasible.
- Cookies: Use browser settings and our cookie banner to manage preferences.
Changes to this policy
- We may update this Policy from time to time. Changes will be posted with a new effective date. Material changes will be highlighted or communicated where appropriate.
Contact us
- Email: info@txstacks.com
- Mailing address: [Add mailing address, Austin, TX or your official business address]
- If you are in the EEA/UK, you may also lodge a complaint with your local data protection authority.
- State-specific notices (U.S.)
- California (CCPA/CPRA): TX Stacks is a “service provider” when acting for clients and a “business” when dealing with our own prospects/customers. We do not sell personal information and do not share mobile numbers for marketing. You may exercise CPRA rights as described above.
- Virginia/Colorado/Connecticut/Utah and similar laws: We honor applicable state rights to access, correct, delete, and appeal. Submit requests to info@txstacks.com.
Summary of A2P and TCPA practices
- Consent: We capture explicit consent for SMS via forms, inbound texts, or recorded verbal consent on calls.
- Content: Primarily transactional (confirmations, reminders, updates, links, photo requests). Any promotional content is sent only with appropriate consent.
- Opt-out/Help: STOP/HELP keywords are supported; we send opt-out confirmations and maintain suppression lists.
- No mobile sharing for marketing: Mobile subscriber data is not sold or shared with third parties for their marketing.
- Recordings: We provide call‑recording disclosures and comply with applicable consent laws.
Note: This Policy is provided for transparency and does not limit agreements between TX Stacks and its clients. Where client instructions conflict, we will follow the client’s lawful instructions as processor and this Policy’s baseline commitments.