Privacy policy
How Caspira Solutions LLC handles personal data in Caspira Live, both for our own customers and for the visitors who chat with them.
Last updated: September 2026
Caspira Live is a customer communication platform operated by Caspira Solutions LLC. This policy explains what we collect, why, and what you can ask us to do about it.
Two different roles
The distinction matters for who is responsible for what:
- As a controller, for the account data of the businesses that sign up for Caspira Live — names, work email addresses, workspace settings, and billing details.
- As a processor, for the conversation data our customers collect from their own website visitors. That data belongs to the customer, and we process it on their instructions in order to run the service.
If you chatted with a business that uses Caspira Live and want your data removed, contact that business first. They control the record and can act on it directly.
What we collect
Account data
- Name, email address, and hashed password for each user
- Workspace name, timezone, role assignments, and plan
- Session records tied to sign-in, which an owner can revoke
- Audit entries recording sign-ins and changes to customers, tickets, and conversations
Conversation data processed for our customers
- Message content, including any images or files sent in a chat
- Customer profile fields such as name, contact details, tags, and order number
- Internal notes written by agents
- Satisfaction ratings and quality-assurance scores
- Technical metadata needed to deliver the chat, such as the originating page and timestamps
Knowledge base and AI processing
Documents a customer adds to their knowledge base are split into passages and indexed so the AI agent can retrieve them when drafting a reply. Message content and retrieved passages are sent to the AI model provider configured for that workspace in order to generate a response. We do not sell conversation data, and we do not use our customers' conversation content to train our own models.
Why we process it
- To provide the service our customers have signed up for
- To authenticate users and keep accounts secure
- To generate the reporting shown in a customer's own workspace
- To detect and limit abuse, including rate limiting and blacklisting
- To bill for paid plans and meet our own record-keeping obligations
Who we share it with
We share data with service providers that are necessary to run Caspira Live — hosting, storage, the AI model provider used for automated replies, and payment processing for paid plans. Providers act on our instructions and are not permitted to use the data for their own purposes. We also disclose data where we are legally required to.
Where a customer configures an outbound webhook, conversation events are sent to the endpoint that customer nominates. What happens to the data after it reaches that endpoint is their responsibility.
Retention
Conversation and customer records are retained for as long as the workspace exists, because they are the customer's working history. Customers can export their conversation data at any time, and can ask us to delete a workspace, after which we remove the data within a reasonable period except where we are required to retain records for legal or accounting purposes.
Security
Passwords are stored as bcrypt hashes, sessions use signed http-only cookies backed by revocable server-side records, and every API route checks role-based permissions. Outbound webhooks carry an HMAC signature. The security overview describes these controls in full, including the certifications we do not currently hold.
Your rights
Depending on where you live, you may have the right to access, correct, export, or delete personal data we hold about you, and to object to certain processing. Contact us at support@caspirasolutions.com and we will respond. If your request concerns data we process on behalf of one of our customers, we will refer you to that customer or act on their instruction.
Cookies
Cookie use is described separately in the cookie policy.
Changes
We will update this page when our practices change and revise the date at the top. Material changes affecting our customers will be communicated directly.
Contact
Questions about this document can be sent to support@caspirasolutions.com, addressed to Caspira Solutions LLC.