VelocityVELOCITY
[ COMPLIANCE PROTOCOL ]

Privacy Policy

Last updated: June 2, 2026

We protect clinical and operational data with a narrow, purpose-built privacy posture. Velocity only processes the information needed to recover missed opportunities, support patient communication workflows, and keep partners in control of their records. We do not sell customer data, and we keep processing boundaries tightly scoped to the services our clients authorize.

1. Data Collection

Velocity collects only the operational data required to run the platform. That includes Lead phone strings, SMS transaction histories, call recordings, call metadata, appointment status updates, and user-authored configuration fields that help route and recover missed interactions.

In practice, these inputs are used to identify missed-call events, generate follow-up actions, track delivery outcomes, and preserve the audit trail our clinical partners need for internal review and compliance checks. We keep the collection scope limited to the smallest useful data set for the workflow in use.

2. AI & Data Processing

Our AI engines process customer data within secure, isolated execution loops. Internal Knowledge Documents and semantic chunk vectors are analyzed only to support retrieval, routing, and message generation functions that belong to the service you have enabled.

We do not allow unrestricted model access to raw systems data. Instead, data is segmented, scoped, and handled inside controlled privacy boundaries so the system can respond intelligently without broad exposure of unrelated records. Access to these loops is restricted, logged, and evaluated against service necessity.

When AI outputs are generated, they are constrained by the source documents, workflow rules, and tenant-level permissions associated with the customer environment. This helps ensure the system stays operationally useful while preserving the confidentiality of partner data.

3. Data Retention

Retention is driven by compliance preservation variables, account status, operational necessity, and contractual obligations. We retain records only as long as required to deliver the service, support customer workflows, satisfy legal duties, or maintain traceability for regulated operations.

When a tenant requests deletion or offboarding, we follow controlled disposal procedures aligned to the data type involved, preserving only what must remain for security logs, dispute resolution, or legal hold. Backup cycles, deletion queues, and retention windows are reviewed to keep disposal consistent with privacy and compliance commitments.

Questions about this policy can be directed to your Velocity account representative or the privacy contact listed in your service agreement.