Privacy Policy
Last updated: 2026-08-12. Effective from: 2026-08-12.
1. Who We Are
The Service is operated by ФОП Даценко А.В. (A.V. Datsenko, sole proprietor registered in Ukraine), РНОКПП 3339403456 ("CallPing", "we", "us", "our"). Mailing address: Plytkova str. 65/106, Kharkiv, Kharkivska oblast, 61047, Ukraine. For privacy matters, write to [email protected] or [email protected] marked "Privacy request"; full contact details are in §14. The Service is reachable at callping.app and its subdomains.
For the purposes of the EU/UK General Data Protection Regulation (GDPR), CallPing acts as a data controller for account-level personal data (e.g., your email and login records) and as a data processor for the webhook payloads and phone numbers you submit through the Service for routing.
For the purposes of the Law of Ukraine "On the Protection of Personal Data" (Закон України «Про захист персональних даних»), CallPing is the data owner (володілець персональних даних) for account-level data and a data processor (розпорядник) for webhook payload content submitted through the Service.
2. What Data We Collect
2.1 Data you provide directly
- Account data — email address, password (stored as a PBKDF2 hash, never in plaintext), display name (optional), phone number(s) you configure as alerting destinations (E.164 format).
- Organization data — organization name, optional timezone, team-member email addresses (when you invite them).
- TOTP/2FA data — if you enable two-factor authentication, we store your time-based one-time password (TOTP) secret. The QR code containing this secret is generated client-side; the secret is never sent to a third-party rendering service.
- Support correspondence — any email or message you send us (delivered via Resend, our transactional email provider, and routed to our support workflow).
- Interest-form submissions — if you use the interest form on our marketing site, we collect the email address you enter, the monthly amount and currency you indicate the product would be worth to you, and any optional message you write. We also record limited attribution data accompanying the submission — the referring URL, any campaign (UTM) parameters in the link you followed, and your browser's user-agent string — so that we can tell "nobody submitted" apart from "nobody visited". Your IP address is used transiently to rate-limit the form against abuse and is not stored on the submission record.
Interest form — where it goes. Submissions are stored in CallPing's own database; a copy is emailed to the operator via Resend, our transactional email provider, and raises an internal alert call to the operator. No call audio or message content is transmitted to any telephone carrier — see §2.2. Interest-form data is not sent to Airtable, which is scoped to support-ticket triage only (§6).
Interest form — what we use it for, and what we do not. We use interest-form data only to reply to you about your enquiry and to inform our pricing and product decisions. We do not use it for marketing, we do not add you to any mailing list, we do not sell or share it, and we do not use it for profiling or automated decision-making. If we ever want to send you marketing, we will ask for your separate consent first. Retention is set out in §7; you can have it deleted at any time — see §8 and the deletion route below.
Interest form — legal basis. Legitimate interests (GDPR Article 6(1)(f)) — responding to a person who has contacted us about our product, and understanding demand and price expectations before launch. You may object at any time under Article 21, and you may ask us to delete your submission at any time by emailing [email protected]; we will do so without needing a reason.
2.2 Data we collect automatically
- Webhook payloads — the body and metadata of any HTTP request you direct to your webhook endpoints. We parse these payloads to extract severity and message content for routing. Payloads are stored in the
incoming_requeststable.
Webhook payload content is submitted by you and processed by CallPing solely to operate the Service on your behalf. For the content of your webhook payloads, CallPing acts as a data processor; you are the data controller. You are responsible for the lawful basis for any personal data included in the payloads you send to CallPing (for example, an end-user's name appearing in an incident description routed through the Service). We strongly recommend avoiding the inclusion of personal data, credentials, secrets, or sensitive information in webhook payloads wherever the underlying alert can be conveyed without it; payloads should describe the type of incident, not enumerate affected individuals.
Recipient phone numbers (GDPR Article 14 indirect collection). Where you (the Customer) configure CallPing to call a phone number that does not belong to you, the recipient of the call is an indirect Data Subject from CallPing's perspective. CallPing processes that recipient's phone number under Article 6(1)(b) (performance of contract — placing the alert call you authorised) and Article 6(1)(f) (legitimate interest — billing reconciliation, fraud prevention, abuse handling). The source of the phone number is you, the Customer, who represents under Terms §8 that you have a lawful basis and any required consent (TCPA / ePrivacy / CASL / CRTC) to direct the Service to call that number. Because CallPing has no direct relationship with the recipient, the Article 14 individual-notification obligation is engaged but is treated as disproportionate effort under Article 14(5)(b) — CallPing relies on the Customer's representation to satisfy the substantive lawfulness condition, and on this Privacy Policy as the publicly-available description of the processing per Article 14(5)(b). Recipients who become aware that they were called by CallPing on a Customer's behalf may exercise their rights under §8 of this Policy by contacting [email protected]; we will route the request to the relevant Customer where appropriate.
- Call logs — for every call we attempt on your behalf, we store: the destination phone number (E.164), call status (initiated, placed, answered, no-answer, failed, etc.), call duration, the PBX server that handled the call, the SIP trunk used, and the underlying Asterisk REST Interface (ARI) response codes for diagnostics.
No call audio is recorded. CallPing does not record, store, or have access to the audio content of any phone call placed through the Service. Calls are placed via third-party SIP trunks (see §5) and the only call data we retain is the metadata listed above. If this ever changes, this Policy will be updated and existing users will be notified before any audio recording is enabled.
- Authentication metadata — IP address, user-agent string, and last-seen timestamp for each active session, recorded in the
sessionstable. - Audit log — user-facing actions that affect account or organization state (organization switching, joining/leaving an organization, project deletion, phone-number toggling, and similar). Stored in the
audit_logtable. - Website measurement (marketing site only) — the public marketing site at callping.app uses Cloudflare Web Analytics, a cookieless measurement script served and processed by Cloudflare (our hosting provider, see §6). It collects aggregate page views and page-performance metrics (for example load times) without cookies, without localStorage, and without fingerprinting or persistent identifiers — we cannot identify or single out individual visitors from it. Legal basis: Article 6(1)(f) (legitimate interest — understanding whether the site is visited at all), which does not require consent because nothing is stored on or read from your device. See the Cookie Policy for the same disclosure in the cookie context.
2.3 Data we do not collect, and how payment data is handled
- No third-party analytics, tracking pixels, advertising networks, heatmap providers, or session-replay tools. As of the current version of this Policy, CallPing does not deploy any such tooling in the core application. If we ever introduce any of these (for example, to support conversion measurement, billing analytics, or fraud prevention), this Policy and the Cookie Policy will be updated before the tool is deployed, and active users will be notified by email or in-app banner with a reasonable opportunity to review the change.
- Payment data — none collected. The Service is currently provided free of charge. Nothing is for sale, no checkout is reachable from any CallPing page, and CallPing collects, stores, and processes no payment data of any kind — no card number, no CVV, no expiry, no billing address, and no payment-processor metadata. See Terms of Service §2 and §7a.
If paid plans are introduced in future, payments would be handled by a third-party merchant of record on its own checkout domain, so full card details would never traverse CallPing infrastructure; CallPing would receive only limited transactional metadata (card last-4, expiry month/year, card brand, billing country and postal code, VAT/tax ID where applicable, subscription status, and processor transaction identifiers) for invoicing, fraud-prevention, tax determination, and dispute-handling. The merchant of record would be an independent data controller for the payment data it processes and CallPing the controller for the limited metadata returned to it. This Policy, the Cookie Policy, and the sub-processor register in §6 will be updated, and active users notified under §13, before any payment processing begins.
- We do not collect government-issued ID numbers, full financial account numbers (beyond the card metadata noted above), health data, biometric data, or other special-category personal data under GDPR Article 9.
3. How We Use Your Data
We use your data to:
- Operate the Service — authenticate you, evaluate your routing rules, deliver phone calls to the destinations you configure, and display call history and status to you.
- Maintain security and prevent abuse — detect suspicious sign-in patterns, enforce rate limits and per-phone cooldowns, block emergency-services and premium-rate numbers, and investigate AUP violations.
- Communicate with you — send transactional email (account verification, password reset, security notices), respond to support requests, and (rarely) notify you of material changes to the Service.
- Respond to enquiries and gauge demand — where you contact us or submit the interest form on our marketing site, we use what you send us solely to reply to you and to inform our pricing and product decisions. We do not use it to market to you, do not add you to a mailing list, and do not disclose it to anyone outside CallPing (§2.1).
- Comply with legal obligations — preserve records or respond to lawful requests from competent authorities where required, including but not limited to tax authorities (such as the Ukrainian State Tax Service / ДПС), financial-intelligence units, telecommunications regulators, and law enforcement, in Ukraine or in any other jurisdiction in which we operate or in which the data is held.
We do not sell your personal data and we do not share it for cross-context behavioral advertising as those terms are defined under the California Consumer Privacy Act (CCPA), the California Privacy Rights Act (CPRA), and equivalent U.S. state privacy laws. We do not share your data with advertisers and we do not use it for advertising or profiling.
4. Legal Basis for Processing (GDPR / UK GDPR)
We process your personal data on the following legal bases:
- Performance of a contract (Article 6(1)(b)) — processing necessary to provide the Service to you, including authentication, routing, and call delivery.
- Legitimate interests (Article 6(1)(f)) — processing necessary for fraud prevention, abuse detection, security monitoring, product diagnostics, storage of
call_logsfor billing reconciliation, support, and dispute handling, and responding to enquiries and interest-form submissions and assessing demand and price expectations before launch (§2.1). You may object to legitimate-interests processing under Article 21. We have conducted a Legitimate Interests Assessment (LIA) for these activities, which is available on request to [email protected]. - Legal obligation (Article 6(1)(c)) — processing required to comply with applicable law or lawful authority requests, including Ukrainian tax-record retention obligations and applicable telecommunications law.
- Consent (Article 6(1)(a)) — where you have explicitly opted in (e.g., for any future analytics or marketing communications, none of which exist today).
5. Data Location and International Transfers
CallPing runs on Cloudflare's global edge network. Specifically:
- The application logic runs in Cloudflare Workers, which execute in data centers worldwide depending on the user's network location.
- Persistent data is stored in Cloudflare D1 (SQLite). D1 has a regional primary location; replicas may exist closer to the edge.
- Caches, rate limits, and short-lived state are stored in Cloudflare KV, distributed globally.
- Call delivery is performed by third-party SIP trunk providers — currently including, but not limited to, Zadarma, Intertelecom, Twilio, and Telnyx — each operating in their own respective regions. The phone number you direct us to call is sent to the SIP trunk that handles the call. The current sub-processor list is maintained in §6 below; if a provider is added, removed, or substituted, this Policy's §6 will be updated accordingly.
Cross-border transfers. If you access the Service from the European Economic Area, the United Kingdom, Switzerland, or another jurisdiction with cross-border transfer restrictions, your data may be transferred to and processed in countries other than your own. Where required for an EU/UK transfer, we rely on the following transfer mechanisms with each recipient:
- Cloudflare, Inc. (US) — Cloudflare's published Data Processing Addendum incorporates the EU Standard Contractual Clauses (Module 2 / Module 3 as applicable) and the UK International Data Transfer Addendum. Cloudflare is also self-certified under the EU-US Data Privacy Framework (DPF).
- Resend (US) — Resend's published Data Processing Addendum incorporates the EU SCCs.
- Twilio (US) — Twilio is self-certified under the EU-US Data Privacy Framework; SCCs are also available in Twilio's published DPA.
- Telnyx (US) — Telnyx publishes a DPA incorporating the EU SCCs.
- Payment processing — no transfer occurs. CallPing takes no payments and transfers no payment data to anyone (see §2.3). If paid plans are introduced, the merchant of record's own published transfer mechanisms (EU SCCs / UK IDTA) would apply to its independent processing, and this section would be updated first.
- Zadarma operates two SIP trunks: one restricted to Ukrainian (+380) destinations only, and a second ("Zadarma-UK") configured to accept any destination except Ukraine — making it a live route for EU/UK and other international call destinations, not Ukrainian ones only. Intertelecom LLC (Ukraine) carries a single trunk restricted to Ukrainian (+380) destinations only. The PBX selection layer enforces these per-trunk constraints at call time via each trunk's
route_countriesallowlist andexclude_countriesdenylist — seesrc/services/pbx-registry.ts(trunkAcceptsPhonefilter insidegetHealthyTrunk) and the corresponding tests insrc/services/pbx-registry.test.ts. EU-resident phone numbers may therefore be routed through Zadarma, Twilio (US, EU SCCs Module 2 + EU-US Data Privacy Framework), or Telnyx (US, EU SCCs in published DPA), selected by trunk health and round-robin at call time. Because Intertelecom's trunk carries Ukrainian destinations exclusively, no EU/UK personal data flows through Intertelecom in normal operation, and the GDPR Article 28(3) requirement of a written sub-processor agreement is not engaged with respect to EU/UK personal data and that trunk. On Zadarma's identity: Zadarma operates through a multi-entity corporate group rather than a single named legal entity — per its own published Terms of Use and Privacy Policy, the group includes EU-registered entities in Bulgaria and Spain, alongside UK, Kazakhstan, and US entities. Which group entity is CallPing's actual contracting counterparty has not yet been confirmed; see §6 below. We are pursuing an executed Data Processing Addendum with the confirmed Zadarma group entity (covering its EU/UK-facing trunk) and with Intertelecom (covering Ukrainian-resident call recipients) as a belt-and-braces backstop.
6. Sharing With Third Parties (Sub-Processors and Independent Controllers)
We share limited personal data with the following categories of recipients, only as necessary to operate the Service:
| Service | Provider | Country | Purpose | Data Shared |
|---|---|---|---|---|
| Workers / D1 / KV / Queues / Pages | Cloudflare, Inc. | USA | Infrastructure, edge compute, database, caching, static hosting | Webhook payloads, user account data, call metadata, session data |
| Asterisk PBX (self-hosted) | Immido (ФОП Даценко А.В.) | EU (PBX-1/2), USA (PBX-3/4), Korea (PBX-5) | Outbound call delivery | Destination phone number, call-control metadata |
| PBX cloud hosting (PBX-1/2) | Oracle Cloud Infrastructure | EU regions | VPS hosting for PBX-1 and PBX-2 | Destination phone number, call-control metadata in transit |
| PBX cloud hosting (PBX-3) | Amazon Web Services | USA (us-east-1) | VPS hosting for PBX-3 | Destination phone number, call-control metadata in transit |
| PBX cloud hosting (PBX-4) | Google Cloud Platform | USA (us-east1) | VPS hosting for PBX-4 | Destination phone number, call-control metadata in transit |
| PBX cloud hosting (PBX-5) | Microsoft Azure | Korea Central | VPS hosting for PBX-5 | Destination phone number, call-control metadata in transit |
| SIP trunk — EU/UA calls | Zadarma (contracting group entity unconfirmed — see note below) | Bulgaria / Spain (Zadarma's published EU group entities); exact contracting entity not yet confirmed | SIP trunk for EU and Ukrainian destination numbers | Destination phone number |
| SIP trunk — US calls | Twilio Inc. | USA | SIP trunk for US destination numbers | Destination phone number |
| SIP trunk — backup | Telnyx LLC | USA | SIP trunk (backup / failover) | Destination phone number |
| SIP trunk — UA calls | Intertelecom LLC | Ukraine — no EU adequacy decision; covered by contractual safeguards and architectural +380-only geo-fence (see §5) | SIP trunk for Ukrainian destination numbers only | Destination phone number |
| Transactional and operational email | Resend Inc. | USA | Account verification, password reset, support notifications, and internal operational notifications (including notifying the operator of an interest-form submission) | Email address, display name; for an interest-form notification, the submitted email address, indicated price, and optional message |
| Internal support workflow (optional) | Airtable Inc. | USA | Support ticket triage and workflow only. Interest-form submissions are not sent to Airtable (§2.1). | Email address, support message content |
| Lawful authorities | Competent regulators / courts | Various | Response to valid legal process | As required by applicable law |
No payment processor is currently engaged or listed as a sub-processor. Nothing is for sale and CallPing takes no payments (§2.3). If paid plans are introduced, the payment processor engaged as merchant of record will be added to this table and disclosed here, together with its transfer mechanism, before any paid plans launch.
Cloudflare, Oracle Cloud, AWS, Google Cloud, and Microsoft Azure each publish a Data Processing Addendum incorporating EU Standard Contractual Clauses (Module 2 where applicable); Cloudflare, Twilio, and Oracle Cloud are additionally self-certified under the EU-US Data Privacy Framework. Resend and Telnyx publish DPAs incorporating EU SCCs. Airtable publishes a DPA incorporating EU SCCs and is self-certified under the EU-US Data Privacy Framework.
Note on Zadarma's identity. Zadarma operates through a multi-entity corporate group rather than a single named legal entity. Per Zadarma's own published Terms of Use and Privacy Policy, that group includes EU-registered entities in Bulgaria and Spain, alongside UK, Kazakhstan, and US entities. CallPing has not yet confirmed which group entity is the contracting counterparty for its SIP trunk account, and has not executed a DPA with Zadarma pending that confirmation. This table will be updated with the confirmed entity name, jurisdiction, and transfer mechanism once verified directly with Zadarma.
We do not sell, rent, or otherwise share your personal data for advertising or marketing purposes.
7. Data Retention
| Data category | Retention |
|---|---|
| Account data (email, password hash, phones) | Retained while your account is active. Deleted on account closure, subject to backup-cycle delays. |
Webhook payloads (incoming_requests) | 90 days from the date the payload is received, then automatically purged. You may request earlier deletion of a specific payload via [email protected]; the standard data-export tool also returns your stored payloads in machine-readable form. |
Call logs (call_logs) | 12 months of granular per-call records (request ID, status, duration, PBX, trunk) from the call-initiation timestamp, then automatically purged. No billing records are generated at present, because the Service is provided free of charge and CallPing takes no payments (§2.3). Where the operator does hold primary documents and tax records, ФОП Даценко А.В. retains them for the 1,095 days (3 years) required by Article 44.3 of the Tax Code of Ukraine; the 12-month window applies only to the granular operational per-call data, not to any such tax record. Customers holding a separate written agreement may negotiate longer retention under that agreement. |
Interest-form submissions (interest_leads) and related correspondence | 24 months from the date of submission, or until you ask us to delete it — whichever comes first. We keep it that long because the whole point of the data is to inform a pricing and launch decision that plays out over more than one cycle; we do not keep it beyond that, and we do not need a reason from you to delete it sooner. Email [email protected] to have your submission and any related correspondence erased — see §8. |
Audit log (audit_log) | Rows older than 90 days are deleted by an automated cron job. |
Sessions (sessions) | Active sessions persist up to 24 hours by default, or 7 days if "Stay logged in" is selected, with a hard cap of 90 days based on the session's creation timestamp. |
Status check history (status_checks) | Retained for the public uptime page; aggregated over time. |
Backups and replicas may persist data for short periods after deletion to support disaster recovery.
The operational retention periods above (webhook payloads, call logs, audit log, sessions) are enforced by an automated cron job that runs every 5 minutes; once a record crosses the stated cutoff it is removed within the next cron pass. Interest-form submissions are not on that automated cutoff — they are purged on a periodic manual review against the 24-month limit above, and immediately on request. The retention periods are the maximum any single record will be retained absent a specific legal hold; on a verified deletion request via [email protected], records belonging to the requester are removed without waiting for the routine cutoff.
8. Your Rights
Under GDPR / UK GDPR, if you are in the EU/UK or your data is processed in connection with EU/UK activities, you have the right to:
- Access — request a copy of the personal data we hold about you.
- Rectification — correct inaccurate or incomplete data.
- Erasure ("right to be forgotten") — request deletion of your personal data, subject to legal retention requirements.
- Restriction — request that we limit processing in certain circumstances.
- Portability — receive your data in a machine-readable format.
- Object — object to processing based on legitimate interests.
- Object to direct marketing — absolute right (GDPR Art. 21(2)). No balancing test applies. CallPing currently conducts no direct-marketing communications, but this right subsists and you may exercise it at any time at [email protected].
- Withdraw consent — where processing is based on your consent.
- Lodge a complaint with your local data-protection supervisory authority (for EU users, the supervisory authority of your country of residence; for UK users, the Information Commissioner's Office (ICO) at
ico.org.uk).
Under the Law of Ukraine "On the Protection of Personal Data", if you are located in Ukraine, you have the right to access, correct, and delete your personal data and to limit its processing. The supervisory authority in Ukraine is the Ukrainian Parliament Commissioner for Human Rights (Уповноважений Верховної Ради України з прав людини) at ombudsman.gov.ua.
Under CCPA / CPRA, if you are a California resident, you have the right to:
- Know what personal information we collect, use, disclose, and (if applicable) sell or share.
- Delete your personal information, subject to permitted exceptions.
- Opt out of the sale or sharing of personal information. CallPing does not sell or share personal information for cross-context behavioral advertising.
- Correct inaccurate personal information.
- Limit the use of sensitive personal information. We do not collect sensitive personal information as defined by CPRA in the ordinary course of operating the Service.
- Non-discrimination — we will not discriminate against you for exercising your rights.
How to exercise these rights. Email [email protected] (or [email protected] marked "Privacy request"). We will:
- Acknowledge receipt within 5 business days.
- Verify your identity before fulfilling any rights request — we may ask you to confirm details we already hold (e.g., email of record, organization slug, recent login timestamp). For deletion or data-portability requests, identity verification is mandatory.
- Respond substantively within 30 days (under GDPR / UK GDPR / Ukrainian law) or 45 days (under CCPA / CPRA), extendable by a further 60 days for complex or numerous requests, in which case we will notify you of the extension and the reasons.
- Provide our response in writing, in the same language as your request where reasonably practicable, otherwise in English.
We may decline a request that is manifestly unfounded, excessive, or where applicable law permits or requires us to retain the data (for example, tax-record retention obligations).
9. Cookies and Local Storage
See the Cookie Policy for details. In summary:
- CallPing's own cookies and local storage. We set strictly-necessary authentication cookies (
__Host-cp_session,__Host-cp_admin_session) and a small number of functionallocalStoragekeys (see Cookie Policy) for UX state. We do not set CallPing-controlled tracking cookies. You may opt out of thecache:*localStorageentries by emailing [email protected]; we will honour the request within 5 business days. A richer in-product opt-out toggle is queued for v1.3. Thecp_cookie_consentlocalStoragekey currently records only your acknowledgement of the Cookie Policy notice; if non-strictly-necessary cookie categories are introduced in future, that key will be expanded to record per-category consent choices under GDPR Art. 6(1)(a). - No checkout cookies; one lazily-loaded third-party script on the interest form. There is no checkout, so no payment-processor cookies are set (§2.3). The interest form on our marketing site posts to CallPing's own API and sets no cookies of its own, but it does load Cloudflare Turnstile, a third-party bot-check script, the first time you open the interest modal (not on ordinary page loads). Turnstile issues a one-time-use verification token that our server checks with Cloudflare; in the default mode we use, it does not set a cookie on your browser. See the Cookie Policy for the full disclosure. If a hosted payment flow is introduced in future, it would set its own strictly-necessary cookies on the processor's domain; the Cookie Policy and this section would be updated before that goes live.
10. Children
CallPing is not intended for users under 18, and we do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact us and we will delete it.
11. Security Measures
We protect your data using:
- TLS encryption for all data in transit.
- Cloudflare D1 at-rest encryption for stored data.
- PBKDF2 for password hashing (no salted plaintext, no reversible encoding).
- Custom HMAC-SHA256 JWTs stored in
HttpOnlycookies, with CSRF protection. - Optional TOTP-based two-factor authentication with brute-force protection (5-attempt limit, time-step tolerance ±1).
- Step-up reauthentication required for destructive operations (password change, member removal, project deletion, phone-number changes, etc.).
- Rate limiting on authentication, refresh, password reset, email change, and team-mutation endpoints.
- Phone-number safety net that blocks emergency-service, premium-rate, toll-free, and short-code numbers across 30+ countries.
- Audit logging for sensitive actions.
We require our sub-processors — including SIP trunk providers, Cloudflare, Resend, and Airtable — to maintain appropriate technical and organisational security measures under their respective contractual agreements with us (typically covered in each provider's Data Processing Addendum and security addenda). We monitor sub-processor security advisories and breach notifications and will incorporate vendor-side incidents into our own breach-handling under §12 where they affect personal data we have entrusted to that sub-processor.
12. Data Breach Notification
If we become aware of a data breach affecting your personal data, we will:
- Conduct an initial impact assessment within 24 hours of detection (internal target).
- Notify the competent supervisory authority within 72 hours of becoming aware, where required by GDPR Article 33.
- Notify affected users without undue delay where the breach is likely to result in a high risk to their rights and freedoms (GDPR Article 34) or where applicable law otherwise requires.
Relevant supervisory authorities for notification include:
- For users in EU member states — the lead supervisory authority of the member state in which the affected users are located, or the relevant EU Member State Data Protection Authority.
- For users in the United Kingdom — the Information Commissioner's Office (ICO) at
ico.org.uk. - For users in Ukraine — the Ukrainian Parliament Commissioner for Human Rights at
ombudsman.gov.ua. - For US state-level breaches — notifications under each applicable state's breach-notification statute (Cal. Civ. Code §1798.82 et seq., NY Gen. Bus. Law §899-aa, and equivalents) where the affected user is resident in that state.
We coordinate with our sub-processors (Cloudflare, Resend, SIP trunk providers, Airtable) on incidents originating with them; sub-processors are contractually required to notify CallPing without undue delay so we can meet our own notification deadlines.
13. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date and, for material changes, notify active users by email or in-app notice. Your continued use of the Service after changes take effect constitutes acceptance of the updated policy.
14. Contact
Operator and contact details.
- Legal entity: ФОП Даценко А.В. (A.V. Datsenko, sole proprietor registered in Ukraine)
- Taxpayer identifier: РНОКПП 3339403456
- Country of registration: Ukraine
- Mailing address: Plytkova str. 65/106, Kharkiv, Kharkivska oblast, 61047, Ukraine
- Data-protection contact: Anton Datsenko ([email protected]) acts as the named individual responsible for data-protection matters and is the point of contact for regulatory inquiries and data-subject requests.
- Privacy contact (preferred): [email protected]
- General contact: [email protected] — mark "Privacy request" for privacy-specific inquiries
- Security reports: [email protected]
Data Protection Officer. No formal DPO has been appointed. We have assessed CallPing's processing under GDPR Article 37 (criteria: public-authority status, large-scale regular and systematic monitoring of data subjects, large-scale processing of special-category data) and concluded that none of the mandatory triggers apply at the current scale. The assessment is documented internally and is available on request to [email protected]. The privacy contact addresses listed above are the equivalent point of contact for data-protection inquiries.