Security and Data Practices
Security begins with collecting less information, limiting access and clearly defining how each assistant should be used.
1. Service boundaries
Dendryte provides managed configuration and may rely on third-party AI, hosting, email, analytics or integration providers.
2. Data minimization
Configured assistants should collect only information reasonably needed for the approved workflow.
3. Information visitors should not submit
- Complete payment-card numbers
- Bank-account or routing credentials
- Account passwords
- Social Security numbers
- Government identification numbers
- Detailed medical records
- Authentication codes
- Private cryptographic keys
- Other unnecessary sensitive information
4. Customer content
Customers are responsible for having the authority to provide or approve content used in the assistant.
5. Access and review
Access should be limited to people and providers who require it for service delivery, support or legal obligations.
6. Third-party services
Hosted infrastructure and database providers process form records and limited technical logs. Resend processes the email address and message content needed to deliver inquiry and cancellation notifications. Other providers process information only when their service is used and according to their own agreements and privacy terms.
7. Retention
Contact and cancellation records are retained until they are no longer reasonably needed for response, account administration, recordkeeping, dispute prevention, security or applicable obligations. Technical-log retention follows the operational settings of the hosting and infrastructure providers.
8. Transmission and storage
Website forms use server-side validation, request-size limits, content-type and origin checks, rate limiting, automated-submission controls and duplicate protection. Credentials remain on the server, and structured application logs omit submitted form contents.
9. Incident reporting
To report a suspected security or privacy concern, please contact us:
Important limitation
No internet-based service can guarantee absolute security. Security practices must be reviewed as the service, providers and risks change.