Skip to content
Alshival.Ai

Privacy · Updated September 21, 2026

Your data.
Your choices.

This notice explains how Alshival.Ai LLC, a Texas limited liability company, handles information across our website, customer workspaces, external-agent connections, and phone, email, and SMS services.

1. Information we collect

  • Account and contact information: name, email, phone number, organization, role, identity-provider account information, and communication preferences.
  • Workspace content: projects, tasks, comments, support requests, services, resources, documents, uploaded files, and logs that you or authorized team members provide.
  • Connection information: authorized applications, approved scopes, token verification records, connection dates, and last-use/revocation records. API and OAuth credentials are used to authenticate requests.
  • Interaction information: messages, support correspondence, meeting requests, and phone/SMS metadata; recordings or transcripts where the applicable interaction collects them.
  • Operational information: request and security events, IP addresses, browser metadata, cookies/session identifiers, usage counts, and audit trails used to operate and protect the service.
  • Billing information: agreements, payment status, invoices, and payment-provider identifiers. Payment details entered in hosted checkout are processed by the payment provider.

2. How we use information

We use information to provide the services you request, authenticate accounts, enforce workspace access, execute authorized agent actions, provide support and meeting coordination, administer agreements and billing, troubleshoot failures, and protect the service. We also retain consent and other records needed to meet legal obligations and resolve disputes.

Essential cookies and local browser storage support sign-in, security, and interface preferences. Operational collection supports service delivery and security; avoid putting secrets or unrelated sensitive information in tool arguments, logs, or support messages.

3. When information is shared

We do not sell personal data. We share information with service providers needed to operate requested features, such as hosting and storage, identity providers, payment processing, email and scheduling, telephony/SMS, and AI processing. Depending on the feature, these include Microsoft, Stripe, Twilio, and OpenAI. Authorized workspace members and staff see information according to their permissions. We may disclose information when legally required or necessary to protect rights and safety.

When you connect an external agent such as ChatGPT or Claude, its provider receives the tool results and content you authorize the agent to retrieve, including relevant workspace records or temporary document links. Tool requests can contain the inputs that you or the agent send. The MCP connection does not automatically give Alshival your full conversation history.

The external provider processes information under its own terms, privacy policy, and account settings. Its retention and data-use controls are separate from ours. Disconnecting does not recall results already sent to that provider.

We do not share mobile phone numbers or SMS opt-in data with third parties or affiliates for marketing or promotional purposes.

4. Phone, SMS, and assistant interactions

Our phone and website assistants help respond to customer-initiated requests and existing business relationships. Interactions may generate transcripts, routing information, messages, or meeting details. The website requires email verification and explicit confirmation before sending a team message or booking a meeting.

SMS message frequency varies with account activity and settings. Reply STOP to opt out or HELP for assistance. You can also contact support to ask about phone or AI-assisted handling.

5. Retention and deletion

  • Workspace and account records: retained while needed to provide the account and contracted service. Closing a workspace is not a deletion request. Project history, agreements, billing records, and audit trails may remain for operational, contractual, security, or legal purposes.
  • Documents: trashed workspace documents have a 30-day recovery period. A file may remain while another retained version or record references it. Document audit and approval metadata can remain after file removal. Abandoned document uploads expire after 24 hours.
  • Chat files: retained until deleted; deletion schedules file cleanup. Copies independently saved to workspace Documents follow document retention instead.
  • Customer resource logs: follow the workspace’s configured retention period and scheduled cleanup. Security, application, and audit logs are separate records.
  • OAuth: access tokens expire after 15 minutes; refresh tokens expire after 30 days unless renewed through rotation. Revocation blocks further use. Expired credential records are cleaned periodically; connection and audit records can remain.
  • Support, communications, and audit records: no single automatic time-based deletion schedule currently applies to these categories. Retention is reviewed in relation to the request, service, security needs, and applicable obligations.
  • Backups: deleted information may remain in retained operational backups until those backups are removed. Backups currently have no universal automatic deletion deadline.

Contact us for information about a particular record or to request deletion. We will explain applicable retention needs and limitations rather than promise a deletion date that the service does not enforce.

6. Your rights and controls

You can choose connection permissions, revoke API keys, disconnect apps in Account Settings → API & MCP, and manage available notification preferences. Workspace managers control membership and workspace credentials; staff administer service access. Removing a permission or connection prevents future authorized access but does not undo completed actions.

Depending on your location and relationship to the workspace, you may request access, correction, deletion, or restrictions on processing. Send requests to support@alshival.ai. We may need to verify your identity and consult the organization responsible for workspace records. Legal or contractual duties may limit deletion.

7. Security and notice updates

We use HTTPS, access controls, scoped credentials, and operational monitoring. No system is risk-free; keep credentials private and review agent permissions before connecting. We will post revisions here with an updated date and notify active customers of material changes as appropriate.

Questions: contact Alshival support or email support@alshival.ai. Alshival.Ai LLC · 204 E Cano St, Edinburg, TX 78539, United States.