Describes present public practices
Privacy and cookie notices must match implemented data flows and visitor controls.
Legal, privacy & trust center
Public notices, responsible-use rules, customer contracting frameworks, privacy controls, security boundaries, provider disclosures, and document history—kept separate so each one does the job it is meant to do.
Core documents
These cover the public website, information handling, cookies, and the customer contracting framework. Supporting documents below add operational detail rather than overloading one policy.
Controller and processor roles, collected information, sources, uses, disclosures, website tools, service data, communications, retention, security, transfers, and rights.
Read documentA technology-level inventory covering consent storage, Google Analytics, Turnstile, session attribution, third-party features, duration, withdrawal, and Global Privacy Control.
Read documentAcceptance, eligibility, demos, accounts, permitted use, customer materials, AI limits, regulated uses, third parties, ownership, suspension, disclaimers, liability, and disputes.
Read documentOrder Forms, implementation, customer duties, AI controls, communications consent, fees, data protection, security, confidentiality, ownership, warranties, indemnity, liability, and termination.
Read documentPrivacy
How to change cookie preferences, opt out of optional analytics, request access or deletion, and raise a privacy concern.
Read documentSupplemental disclosures for individuals whose local law grants additional privacy rights, without assuming a law applies solely because of residence.
Read documentWebsite use
Customer terms
Operational boundaries for AI-generated interactions, voice, SMS, email, recording, consent, human escalation, and customer-controlled communications.
Read documentA controller–processor framework covering instructions, confidentiality, security, subprocessors, rights requests, incidents, transfers, deletion, and audit cooperation.
Read documentTrust
A fact-limited explanation of LumiTalk’s security responsibilities, customer controls, incident cooperation, third-party dependencies, and assurance boundaries.
Read documentA transparent distinction between verified website providers, customer-selected integrations, and production subprocessors that must be identified contractually.
Read documentRules for good-faith security research, safe testing boundaries, responsible reporting, prohibited activity, and coordinated disclosure.
Read documentRecords
How to read the status labels
Privacy and cookie notices must match implemented data flows and visitor controls.
DPAs, service terms, liability allocation, SLAs, and regulated-use terms require the correct parties and valid acceptance.
Security and provider pages disclose responsibilities and known facts without claiming an audit or compliance status.
Requests and contracting
Use the contact page to request the current execution set, identify the customer and use case, and confirm legal-entity, data, jurisdiction, security, and commercial details. Do not send credentials or private keys.
AI ReceptionistWhat Is an AI Receptionist? A Plain-English Guide7 min read
Real EstateSpeed to Lead: Why the First 5 Minutes Decide the Deal8 min read
SubscriptionAI Customer Service for Subscription Ecommerce8 min read
Property ManagementAI Assistant for Property Managers: A Buyer’s Guide8 min read
Med SpaHow to Reduce Med Spa No-Shows Without Nagging Clients8 min read
Estate PlanningAnswering Service for Estate Planning Attorneys8 min read