Data Access
Clawt only accesses the tools and data required for the approved workflow. Access scope should match the business tasks, systems, and permissions agreed with the client.
Credential Handling
Sensitive credentials should be managed through secure methods, approved integrations, or client-controlled access wherever possible. We avoid requesting broader access than the workflow requires.
Human Approval
Important actions can include human review before messages are sent, records are updated, bookings are confirmed, or workflows are triggered. Approval logic is defined during implementation.
Data Retention and Deletion
Data retention depends on the client workflow, connected tools, and operating requirements. Retention and deletion expectations should be reviewed during onboarding and reflected in the agreed setup.
Call Recording and Consent
Voice workflows should follow local call recording, consent, disclosure, and customer communication rules. Clients remain responsible for confirming the rules that apply to their business and regions.
Third-Party Tools
Clawt may connect with third-party tools approved by the client, including CRM platforms, email systems, calendars, support software, and communication tools. Each tool may have its own data practices and security model.
Compliance
Clawt does not claim SOC 2, ISO, HIPAA, or GDPR certification unless confirmed in writing. Enterprise compliance requirements can be discussed before implementation.
Contact
For data or security questions, contact hello@clawtai.com.