Privacy Policy
Last updated: August 24, 2026
Our commitment to your privacy
Saidee is operated by Lokd Technologies Ltd., a corporation registered in Nova Scotia and federally in Canada. We build an AI scheduling assistant for tradespeople and service professionals: thoughtful, intuitive software that makes people's lives more productive. We take the privacy of your business and your clients very seriously.
This policy explains what information we collect, how we use it, who we share it with, and the rights you have over your data. It applies to saidee.ai, the Saidee web app at app.saidee.ai, the Saidee mobile app, and our backend services.
We comply with the Personal Information Protection and Electronic Documents Act (PIPEDA) of Canada, Quebec's Act respecting the protection of personal information in the private sector (Law 25), Canada's Anti-Spam Legislation (CASL), and equivalent provincial frameworks in Alberta and British Columbia.
Information we collect
We collect only what we need to run your scheduling assistant:
- Account data: your name, business name, email address, phone number, profession, timezone, and the assigned Saidee phone number.
- Calendar data: events, attendees, locations, and availability from Google Calendar, accessed via OAuth.
- SMS messages: the content, sender, recipient, and timestamps of text messages sent to and from your Saidee number.
- Voice call data: caller phone number, call duration, AI-generated call summaries and transcripts, the outcome of the call (booked, lead, spam, etc.), and audio recordings of calls handled by the Saidee voice AI, including voicemail messages callers leave. Recordings of very short calls are not kept, and calls from numbers we have already identified as spam are blocked before they are answered, so they are never recorded.
- Customer contact data: names and phone numbers of clients who text or call your Saidee number, so we can match future messages to the right contact.
- Imported contacts (optional): if you choose to import your phone's contacts, we collect the names, phone numbers, and photos of the contacts you import. We do not import emails, addresses, notes, or any other contact field. Imported names and photos are used to recognize callers and texters who are already saved in your phone, even if they have never contacted your Saidee number before. You can remove all imported contact data at any time in the app under Settings → Imported Contacts.
- Billing data: if you purchase a paid plan, payment is processed by our payment processor (web) or Apple (in-app). We receive your plan status only, never your card number.
- Technical and log data: when you use our website or app, our servers and our hosting and rate-limiting providers receive your IP address, along with basic request information such as the date and time and your browser or device type. We use this only to keep the service available and secure: to apply rate limits, to block abuse and fraud, and to diagnose faults. It is not used to advertise to you, to build a profile of you, or to follow you between apps and websites. Where we record that a form was submitted or a limit was applied, we store a salted, one-way hash of the IP address rather than the address itself.
- Device permissions (iOS): when you use the iOS app, we request access to Calendar and Notifications, and, only if you choose to import your phone contacts, Contacts. You can revoke any permission at any time in iOS Settings.
How we use your information
- To run your AI scheduling assistant: reading your calendar, sending and receiving SMS, and answering calls on your behalf.
- To detect and respond to caller intent, identify spam, and book appointments accurately.
- To improve reliability, fix bugs, and protect against fraud and abuse.
- To bill you for paid plans and send you essential service notifications.
- To comply with applicable law and respond to lawful requests.
We do not use your data to train AI models. Your calendar, messages, transcripts, and customer contacts are never used to train Saidee's models or any third-party model. We do not sell or rent your personal information, and we do not “sell” or “share” personal information as those terms are defined under the California Consumer Privacy Act (CCPA/CPRA) or other comparable laws.
Service providers
We rely on a small set of vetted service providers to operate Saidee. Each is bound by a data processing agreement that limits use of your data to providing services to us, and we share only the data a provider needs to perform its function. They fall into these categories:
- AI processing: providers that interpret your calls and messages, transcribe audio into text, and synthesize the spoken voice your callers hear. This category also includes the platform that runs our voice assistant during a live call. None of these providers use your data to train, retrain, or improve their models. Each one processes your data only to return a result to us in the moment, under API terms that prohibit training on what we send. We also use a text-extraction service to read your own public business website when you ask us to import it; it receives only that public address.
- Telephony and messaging: providers that place and receive calls and send and receive messages on your behalf.
- Calendar and scheduling integrations: providers you choose to connect, such as Google Calendar and Google Places. These are used only when you connect the relevant account.
- Cloud infrastructure and security: hosting, database, authentication, caching, and rate-limiting providers that keep the service running and secure.
- Diagnostics and crash reporting: a provider that receives automatic crash reports from the Saidee mobile app so we can find and fix what breaks it. See “Diagnostics and problem reports” below for exactly what those reports contain.
- Payments and billing: our payment processor for web plans and the Apple App Store for in-app purchases, along with the services that validate those purchases and deliver app notifications.
Most of these providers are based in the United States. We do not sell your personal information, and we do not share it with third parties for their own marketing.
Limited Use of Google user data
Saidee's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, we do not:
- use Google user data for serving advertisements;
- allow humans to read this data, unless (a) we have your affirmative consent for specific messages, (b) it is necessary for security purposes (e.g., investigating abuse), (c) it is required to comply with applicable law, or (d) the data is aggregated and anonymized and used to improve the Services;
- use or transfer Google user data for purposes other than providing or improving Saidee's calendar and scheduling features; or
- sell Google user data.
The use of raw or derived user data received from Google Workspace APIs will adhere to the Google User Data Policy, including the Limited Use requirements. Google Workspace user data — raw, aggregated, anonymized, or derived — is never used to create, train, or improve any foundational or generalized machine learning or artificial intelligence model, whether our own or a third party's. Where calendar data is sent to an AI provider, it is sent only to serve your own request in that moment, under terms that prohibit the provider from training on it. Saidee operates no self-hosted or offline AI models.
Third-party AI processing and your consent
Saidee uses a third-party large-language-model (LLM) provider to interpret your SMS messages and call transcripts, draft replies, schedule appointments, summarize calls, classify intent, and detect spam. On eligible plans, Saidee additionally uses a third-party speech-to-text provider to turn audio into text. This includes recordings of calls answered by the Saidee voice AI and voice memos texted to your Saidee number. A texted voice memo is processed transiently and is not retained by us or the provider. A call recording is different: it is stored and kept for 90 days, as described in “Voice calls and recordings” below. To deliver these features, we send the following categories of your personal data to these providers on a data-processor basis:
- The text of SMS messages sent to and from your Saidee number.
- A voice memo texted to your Saidee number, transiently, for transcription. The resulting transcript is stored in your account; that audio is discarded.
- Audio of calls answered by the Saidee voice AI, for transcription. Unlike a texted voice memo, this audio is retained for 90 days, as described in “Voice calls and recordings” below.
- Call transcripts, for summarization and classification.
- Relevant calendar context (event titles, times, attendees) needed to answer scheduling questions.
- Customer contact details (name, phone number) needed to address replies and bookings correctly.
- The words your assistant is about to say out loud, sent to a voice-synthesis provider so it can be spoken in a natural voice. When you call your own line and ask about your own schedule, that text can include one of your own event titles.
- Names of contacts you choose to import from your phone, so the AI assistant can recognize a caller or texter already saved in your contacts — including someone who has never contacted your Saidee number before. Imported contact photos are never sent to our AI provider.
Before any of your personal data is sent to our AI provider for the first time, we ask for your explicit, affirmative consent on a dedicated in-app screen that identifies the provider and lists the categories of data above. This screen is presented during onboarding and cannot be skipped. Speech-to-text transcription is additionally gated by your separate, explicit affirmation when you provision a Voice AI number. These providers do not use your data to train their models when it is sent through their APIs.
You may withdraw your consent at any time by deleting your Saidee account in-app (Settings → Delete Account) or by emailing support@saidee.ai. Withdrawing consent will stop the AI features that depend on these providers from functioning.
AI accuracy — Saidee may make mistakes
Saidee's replies, summaries, intent classifications, and other AI-generated output are produced automatically and may be incorrect, incomplete, or misleading. You are responsible for reviewing AI output before acting on it. Every action Saidee takes on your behalf is recorded and visible in your account so you can review, override, or undo it. You can also pause Saidee at any time so that no automated actions are taken on your behalf.
Cross-border data transfers
Saidee's primary database and most of our service providers are located in the United States. This means your personal information is transferred to and stored outside Canada, where it may be subject to the laws of the destination country. By using Saidee you consent to this transfer. We use vendors that contractually commit to industry-standard safeguards (encryption in transit and at rest, access controls, and data processing agreements), and we evaluate our cross-border transfers as required by Quebec Law 25.
Diagnostics and problem reports
To keep the app working we collect two kinds of diagnostic information. Neither is used to advertise to you, to build a profile of you, or to follow you between apps and websites.
Automatic crash reports. When the Saidee mobile app hits an error it cannot recover from, it sends a report to our crash-reporting provider. That report carries the error message and the stack trace, a short trail of the screens you opened and the network requests the app made just before the failure, your device model, your operating-system version, the app version and build number, and an opaque account identifier that lets us tell one affected account from another without naming you. The app also reports that a session started, so we can measure how many sessions are crash-free. We do not enable performance tracing, profiling, session replay, screen recording, or screenshots.
Before a crash report leaves your device we run it through a scrubber. It removes query strings and replaces the identifiers in web addresses with placeholders, deletes request headers, cookies, and request bodies, drops the server name, keeps only a short allowlist of labels, and finds and redacts phone numbers, email addresses, and street addresses anywhere in the text.
What the scrubber cannot remove. A phone number, an email address, and a street address each have a recognizable shape, which is how we find and remove them. A person's name does not. If a customer's name has been written into an error message by the app, that name can reach our crash-reporting provider, and we would rather tell you that than claim these reports are anonymous. Separately, the scrubber runs inside the app, so it cannot run at all when the app crashes at the operating-system level. Some crash reports therefore include the name you gave your device, which on an iPhone is often a person's name.
Problem reports you send us. When you report a problem from inside the app, we store what you wrote, along with the app version and build number, your platform and operating-system version, your language and time zone, your plan, whether the device was online, the screen you were on with any query string removed, a list of the last 25 requests the app made (the method, a generalized path with identifiers replaced, the result, how long it took, and any error code), and a snapshot of the related activity in our own systems at the moment you filed. We never store the contents of those requests, their headers, their responses, or their query strings.
Crash reports and problem reports are held by providers and systems located in the United States, as described in “Cross-border data transfers” above. Crash reports are deleted after 30 days on our current plan. Problem reports are kept for 12 months.
How we keep your data safe
- We encrypt your data in transit and at rest.
- Access to our production systems is restricted to authorized personnel, protected by multi-factor authentication, and logged.
- If we ever experience a data breach that creates a real risk of significant harm, we will notify the Office of the Privacy Commissioner of Canada and affected users without unreasonable delay, as required by PIPEDA.
How long we keep your data
We retain your data for as long as your Saidee account is active. When you close your account, we delete your personal data from our production systems within 30 days, and from encrypted backups within 90 days, except where we are required by law to retain it longer (for example, billing records for tax purposes). You can request deletion of specific call logs, messages, or customer records at any time.
Imported contacts are retained until you remove them (in the app, Settings → Imported Contacts → “Forget my contacts”) or until you delete your account, whichever comes first. Removing them deletes the associated names and photos from our systems.
Problem reports you send us from inside the app are kept for 12 months. Automatic crash reports are deleted after 30 days on our current plan. Both are described in “Diagnostics and problem reports” above.
Deleting your account
You can delete your Saidee account at any time from inside the mobile app at Settings → Delete Account. You will be asked to re-verify your identity with a one-time code before deletion is scheduled.
We use a soft-delete followed by a hard-delete model:
- Your account is immediately marked for deletion and you are signed out of all devices.
- For thirty (30) days you can cancel deletion by signing back in — nothing is permanently destroyed during this window.
- After 30 days, your account, calendar data, SMS history, call transcripts, customer records, and your Saidee phone number are permanently deleted from production systems. Encrypted backups roll off within a further 60 days.
- App Store subscriptions are managed by Apple and are not cancelled by account deletion. Cancel them in Settings → Apple ID → Subscriptions on your device. Team subscriptions are cancelled as part of the deletion process: the app walks you through cancelling your plan before deletion is scheduled. You can manage your billing at any time at app.saidee.ai/billing.
- We may retain a minimal set of records that the law requires us to keep (for example, anonymized billing records for tax purposes, or anti-fraud signals such as a hashed phone number that has been associated with policy violations).
Voice calls and SMS
When a caller dials your Saidee number, our AI assistant answers in real time using our voice provider's AI, or takes a voicemail. Calls handled by the Saidee voice AI are recorded and transcribed, and any voicemail a caller leaves is recorded so it can be transcribed. Any recording, together with the transcript and AI-generated call summary, is stored in your account so you can review what happened, and the audio plays back only when you choose to open it. Recordings of very short calls are not kept, calls from numbers we have already identified as spam are blocked before they are answered so they are never recorded, and a voicemail our spam filter flags as junk is not saved to your account.
Recordings are held by our voice provider and streamed to you on demand through a fresh, short-lived link each time you open them — Saidee keeps a reference to each recording, not its own copy. Recordings are automatically deleted 90 days after the call, and are otherwise covered by the retention and deletion timelines described in “How long we keep your data” and “Deleting your account” above.
For SMS, texting a Saidee number constitutes consent to communicate by SMS for scheduling. Messages we send on your behalf comply with Canada's Anti-Spam Legislation (CASL): they identify the sender and let recipients opt out at any time (for example, by replying STOP).
Call records and SMS messages are accessible only to the business owner whose Saidee number received them, that owner's authorized team members, and Saidee personnel acting under confidentiality obligations.
Owner responsibility to inform callers. The Saidee Voice AI does not announce itself to callers on its own. Whether your greeting tells callers they are speaking with an AI is a setting you control, in the app under Voice Settings, “Announce Sadie as an AI assistant”, and it is off by default for most accounts. In a small number of regions it is on by default, but you should not rely on that default: check the setting yourself. A separate setting beside it announces that the call is recorded, and that one is off by default everywhere. If a caller asks whether they are speaking with a person or an AI, the assistant answers truthfully, but while these settings are off it makes no announcement of its own. Local laws (including, in the United States, federal and state two-party-consent statutes) may require that callers be told an AI is answering and that the call is recorded or transcribed. If you enable a Voice AI number on Saidee, you are solely responsible for determining what notice the law of your jurisdiction and the jurisdictions of your callers requires, for turning on the settings above where notice in the greeting is required, and for providing any further notice. Saidee does not give that notice on your behalf. When you provision a Voice AI number, we ask you to affirm in-app that you will do so.
Spam protection
To protect Saidee users from harassing, fraudulent, or abusive callers, we maintain an internal database of phone numbers flagged for spam or abusive behaviour. A flagged number is visible across Saidee accounts so that all users benefit from shared spam intelligence. We process this data on the basis of our legitimate interest in providing a safe service. No call content, customer identity, or other personal information is shared between accounts: only flagged phone numbers and a count of how often they have been reported.
Automated decision-making
Saidee uses AI to interpret what callers and texters want, draft replies, schedule appointments, and flag spam. These decisions are made automatically. You can review every action Saidee takes in your account, override any decision, and contact us for human review if you believe an automated decision was wrong. You can also pause Saidee at any time so that no automated actions are taken on your behalf.
Your privacy rights
Under PIPEDA, Quebec Law 25, and equivalent provincial laws, you have the right to:
- Access the personal information we hold about you.
- Correct information that is inaccurate or out of date.
- Withdraw your consent and close your account at any time.
- Receive your data in a portable, machine-readable format.
- Request deletion of your personal information, subject to legal retention obligations.
- Object to or restrict certain processing.
- Receive an explanation of any automated decision that significantly affects you.
To exercise any of these rights, email support@saidee.ai. We will respond within 30 days. If we cannot resolve your concern, you may file a complaint with the Office of the Privacy Commissioner of Canada, or with the Commission d'accès à l'information du Québec if you are a Quebec resident.
Notice to California residents
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA):
- The right to know what personal information we collect, the sources of that information, the purposes for which we use it, and the categories of third parties we share it with.
- The right to delete personal information we hold about you, subject to legal retention obligations.
- The right to correct inaccurate personal information.
- The right to opt out of the “sale” or “sharing” of personal information — we do neither, as described above.
- The right to limit the use and disclosure of sensitive personal information.
- The right not to be discriminated against for exercising any of these rights.
To exercise any of these rights, email support@saidee.ai. Under California’s “Shine the Light” law (Cal. Civ. Code § 1798.83), California customers may request information about our disclosure of personal information to third parties for those third parties’ direct marketing purposes — we do not make such disclosures, but you may direct any request to support@saidee.ai.
Cookies and tracking
Saidee's marketing website (saidee.ai) sets only the cookies strictly necessary to operate the site, such as a session cookie used by our authentication flow on saidee.ai/account. We do not use third-party analytics, advertising, or behavioural-tracking cookies. The Saidee iOS app does not use web cookies. It does send automatic crash reports, and the problem reports you choose to file, as described in “Diagnostics and problem reports” above. Those are diagnostic: they tell us what broke and they are never used to profile you, to follow you between apps or websites, or to target advertising. If we add analytics in the future, we will update this section, post notice on this page, and, where required by law (including Quebec Law 25, the CCPA/CPRA, and the EU ePrivacy framework), ask for your consent before activating them.
Children's privacy
Saidee is intended for adult business owners and is not offered to anyone under 17. We do not knowingly collect personal information from anyone under 13 (in compliance with the U.S. Children's Online Privacy Protection Act, COPPA) or from anyone under 14 in Quebec (section 4.1 of Law 25). If you believe a minor has provided personal information to us, please contact support@saidee.ai and we will delete it.
Changes to this policy
We may update this policy from time to time. When we do, we will change the "Last updated" date at the top and, for material changes, notify you by email or in-app before the change takes effect.
Contact us
For any privacy question, request, or complaint:
- Privacy Officer: Lokd Technologies Ltd.
- Email: support@saidee.ai
- Mailing address: Lokd Technologies Ltd., PO Box 44146, Bedford, NS B4A 3X5, Canada