Skip to content
Menu

Privacy policy

The plain-language version lives at /trust. This page is the complete version it points to.

What we collect

  • Your assessment answers. The free text you type and the options you select while completing the assessment, plus the facts our AI derives from them (e.g. how often a task happens). This exists anonymously — nothing here requires your name or email.
  • Your report. If you choose to save your findings, the generated report is stored so you (and, if you share it, whoever holds the link) can come back to it.
  • Contact details. Only if you choose to save a report or book time with us: name, email, and optionally company. We ask for these at that point and nowhere earlier.
  • Delivery and access records. When we email a report, we record that an attempt happened and whether it succeeded — not the message content. Report links are single-use secret tokens; we store a cryptographic hash of a token, never the token itself, and never log it.

Why we collect it

Your answers exist to produce your findings — nothing else. We don’t use them to train AI models, and we don’t use them for advertising, ours or anyone else’s. Contact details exist only to deliver the report you asked for, or to follow up if you book time with us.

How AI is involved

Understanding your answers and drafting your findings uses a third-party AI provider (OpenAI). We send it the assessment content needed to do that and configure the request so the provider does not retain it for their own training. A person — Jose — sees your details only in the report you choose to save or send, or when you book a call.

Who else touches your data

We use a small number of processors to run the service, each limited to what their job requires:

  • OpenAI — processes assessment content to generate findings, as described above.
  • Brevo — sends transactional email (your report link, booking confirmations) when you ask us to. It sees the recipient address and the email content, not your assessment answers.

As of this launch we don’t run advertising pixels, ad networks, or third-party analytics trackers on this site.

How long we keep things

  • An assessment you don’t finish or save is deleted automatically after 30 days of inactivity — free text and all. There is nothing to ask us to delete in that case; it goes on its own.
  • A saved report and its contact details are kept until you ask us to delete them. We don’t auto-expire a report you chose to keep.
  • Emailed or shared report links stop working after 30 days, or sooner if revoked. An expired or revoked link gives no indication of whether it ever existed.
  • Internal records of who on our team accessed what are kept indefinitely for security accountability. They record an action and who took it — never assessment content.

Deletion, on request

One email to hello@callitaday.com is all it takes. Tell us you’d like your data removed and, if you have it, the email address the assessment or report is under. We will erase the associated contact record and reports; anonymous assessment content tied only to a browser session that already expired has nothing left to erase.

Security, briefly

Report links are random, hashed at rest, and never appear in logs. Our internal tools require an authenticated, individually identified team member and record every access attempt, successful or not.

This page describes how Call It A Day actually operates. It is internal documentation made public, not a substitute for legal advice — if you need a formal legal opinion about how this applies to you, please consult your own counsel.