Atlas Privacy Policy

Atlas supplement effective September 30, 2026

Atlas on your Mac

Atlas is a Teleperson, Inc. desktop application. This Atlas notice supplements Teleperson’s Privacy Policy. It describes the current v1.0.20 desktop implementation; features and connected providers depend on the version and settings you use. The Atlas-specific descriptions here control where they are more specific than the general policy.

Local workspace and security

Tasks, projects, companies, financial records, imported transactions, synced mail metadata, meetings, chat history and connected WhatsApp text are stored in your local Atlas profile. The workspace database is not encrypted by Atlas itself. Use macOS FileVault, a protected login and secure backups. Provider keys, OAuth caches and supported integration credentials are separately protected with macOS Keychain-backed encryption. Installing Atlas does not upload the entire workspace to Teleperson or enable cloud backup.

AI and connected services

When you choose a cloud AI provider and use an AI feature, your request and relevant workspace context are sent to that provider. Supported connections include OpenAI, Anthropic, Google Gemini and OpenRouter; combined mode can send context to both Anthropic and OpenAI. Relevant context can include tasks, meeting details, financial information and recent WhatsApp text. Provider retention and data use depend on your account, provider terms and settings. OpenAI response storage is disabled by the current application, but that is not a promise of zero provider retention.

Microsoft, banking and browser access

Authorized Microsoft connections read mail metadata and calendar events. The current implementation saves Focused Inbox metadata and cached meetings; it does not send email or write calendar changes. Bank connections use TelepersonLens and Plaid with your authorization; requested transaction snapshots and matched vendors can be imported locally. Bank sign-in is handled through the provider’s consent flow. Chrome assistance can read requested page information and perform reviewed actions using your Mac’s permissions. Page context used for cloud assistance may be sent to the selected service. Do not share passwords, verification codes or payment credentials in AI prompts.

Voice, avatars and permissions

Optional wake listening and dictation use macOS on-device speech recognition when available and require permission. Wake listening is disabled by default and may remain active while Atlas runs in the menu bar. Voice transcripts can be retained in local chat history; Atlas does not persist raw microphone audio in its workspace. Cloud voice sessions transmit audio to the configured provider. Optional Tavus avatar calls transmit audio/video to Tavus, and a task/meeting summary is shared only when you enable that option. Closing a window is not the same as quitting Atlas.

Retention, deletion and choices

Local records remain until you remove them or delete your local profile. Disconnecting Microsoft removes its local token cache and synced mail/meetings; revoke remote consent through Microsoft separately. Disconnecting a provider or deleting local data does not delete copies already held by that provider. Uninstalling the application may leave its profile and backups on your Mac. You can export workspace data, but exports contain personal information and should be protected. Atlas does not currently provide an import/restore interface. Contact privacy@teleperson.com for requests involving information held by Teleperson; provider-held information is subject to the provider’s process.

Website, diagnostics and your rights

The current desktop app does not enable analytics or cloud backup. Local diagnostic logs may be created; if you send logs or exports to support, we receive the information you choose to share. The website and connected online services may process connection, security and usage information as described in Teleperson’s general policy. That policy explains sharing, international transfers, applicable privacy rights, children’s privacy and how to contact us. Atlas-specific privacy questions: privacy@teleperson.com. Security concerns: security@teleperson.com.


Teleperson Privacy Policy

General policy effective 2026-05-10

This Privacy Policy describes how Teleperson, Inc. ("Teleperson," "we," "us," or "our") collects, uses, discloses, and protects information about you when you access or use our websites, browser extension, applications, AI assistants, voice agents, SMS programs, APIs, and related products and services (collectively, the "Services"). By using the Services, you agree to the practices described here.

Two roles for your information

When you use the Services directly (for example, signing up at teleperson.com), Teleperson is the "controller" or "business" with respect to your personal information. When a Teleperson business customer (an "Enterprise Customer") deploys the Services to interact with you, that Enterprise Customer is the controller/business and Teleperson processes your personal information as a service provider/processor on its behalf, in accordance with the agreement between us. In that case, this Policy supplements (and does not replace) the privacy notice provided by the Enterprise Customer, and rights requests should generally be directed to that Enterprise Customer.

1. Information we collect

Information you provide to us:

Information we collect automatically:

Information from third parties and public sources:

Sensitive personal information: in limited circumstances, the Services may process information that is treated as "sensitive" under applicable law — government-issued identifiers, financial account numbers and credentials, precise geolocation, account log-in credentials, the contents of communications where we are not a party, and audio recordings of your voice. We use sensitive personal information only to perform the Services you have requested, prevent fraud, and comply with law, and we do not use or disclose it to infer characteristics about you for advertising. We do not knowingly process biometric identifiers for the purpose of uniquely identifying an individual without separate, written consent where required by law.

2. How we use your information

We use the information we collect to:

Legal bases (EEA / UK / Switzerland): where required, we rely on performance of a contract with you; our legitimate interests (securing the Services, preventing fraud, improving our products) where those interests are not overridden by your rights; your consent (which you may withdraw); and compliance with legal obligations.

3. AI, automated processing, and model training

The Services use machine learning and large language models to power chat, search, summarization, and conversational voice and SMS agents. Specifically:

Model training: we do not use your conversational content to train third-party public foundation models. We may use the following for our own product evaluation and improvement, including evaluating model quality, safety, and routing:

Output limitations: AI output may be inaccurate, incomplete, or unsuitable for a given purpose. Important decisions should be reviewed by a human. We do not make solely-automated decisions that produce legal or similarly significant effects on you without offering a human review where required by law.

4. SMS and text messaging

Where you have opted in, Teleperson sends and receives SMS messages through Twilio for purposes such as account verification, transactional notifications, service-request updates, surveys, and conversational support.

5. Cookies, analytics, and tracking technologies

We use cookies, local storage, pixels, software development kits, and similar technologies for the following categories of purposes:

Most browsers allow you to control cookies through settings. We honor browser-based opt-out signals, including the Global Privacy Control ("GPC") signal, where required by applicable law. For details and choices, see our Cookie Policy.

6. How we share your information

We share information in the following circumstances:

No "sale" of personal information for money. We do not sell personal information for monetary consideration. Where applicable law treats certain advertising-related sharing (for example, the use of cross-site advertising cookies) as a "sale" or "share," you may opt out as described in Section 9 or by activating GPC in a supported browser.

7. International transfers

Teleperson is headquartered in the United States and may process information in the United States and other countries where we or our sub-processors operate. Where required, we rely on appropriate transfer mechanisms (the European Commission's Standard Contractual Clauses, the UK International Data Transfer Addendum, the Swiss-US Data Privacy Framework, and supplementary technical and organizational measures) to safeguard cross-border transfers of personal information.

8. Data retention

We retain personal information for as long as necessary to provide the Services and for the legitimate purposes described in this Policy. Typical retention periods include:

When we no longer need personal information, we delete or de-identify it using methods designed to prevent re-identification.

9. Data security

We implement administrative, technical, and physical safeguards designed to protect personal information, including encryption in transit (TLS), encryption at rest for sensitive stores, role-based access controls, audit logging, secrets management, vulnerability scanning, secure software-development practices, employee security training, and incident-response procedures. Our security program is benchmarked against widely recognized frameworks such as SOC 2. No method of transmission or storage is fully secure, and we cannot guarantee absolute security. If we determine that a security incident has affected your personal information, we will notify you and applicable authorities as required by law. If you believe your account or information has been compromised, contact security@teleperson.com.

10. Your privacy rights

Depending on where you live, you may have rights regarding your personal information, including the rights to:

To exercise these rights, email privacy@teleperson.com or use the in-product privacy controls. We will verify your request (typically by confirming control of the account email or phone number) and respond within the period required by applicable law (generally within 30–45 days). You will not be discriminated against for exercising your rights. Authorized agents may submit requests on your behalf with verifiable proof of authority. If we decline a request, you may appeal our decision by replying to our response with the word "Appeal" and a brief explanation; we will respond within the time required by law. If a Teleperson Enterprise Customer is the controller of your information, we will route your request to that customer and assist them in responding.

11. Notice to California residents

This section supplements the rest of this Policy and applies to California residents under the California Consumer Privacy Act, as amended by the California Privacy Rights Act (collectively, "CCPA").

Categories of personal information collected: in the past 12 months, we have collected the following categories described in Cal. Civ. Code § 1798.140 — identifiers (name, email, phone, IP address, account identifiers); customer-records information (billing details); commercial information (transactions and service-request history); internet or other electronic network activity (usage and device information); geolocation (approximate, derived from IP); audio and electronic information (call recordings and transcripts; SMS content); professional or employment information (for company representatives and applicants); and inferences drawn from the foregoing. With your consent or as necessary to provide the Services, we may collect "sensitive personal information," such as account log-in credentials, financial account information, precise geolocation (where you provide it), the contents of certain communications, and audio recordings of your voice.

Sources, purposes, and disclosures: we collect this information from the sources described in Section 1, use it for the purposes described in Sections 2–5, and disclose it for the business purposes and to the categories of recipients described in Section 6.

Sale or sharing: we do not sell personal information for monetary consideration. We may "share" personal information for cross-context behavioral advertising on our public marketing pages where you have not opted out. You can opt out by emailing privacy@teleperson.com or by enabling GPC in a supported browser.

Sensitive personal information: we do not use or disclose sensitive personal information beyond the purposes permitted by Cal. Civ. Code § 1798.121.

Your rights: California residents have the rights to know, delete, correct, opt out of sale/sharing, limit use of sensitive personal information, and to non-discrimination. To exercise these rights, see Section 10. Authorized agents may submit requests with proof of authority.

12. Notice to residents of other U.S. states

If you are a resident of Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Montana, Delaware, Iowa, New Hampshire, New Jersey, Indiana, Tennessee, or another U.S. state with a comprehensive privacy law, you may have additional rights under those laws (including the rights to access, correct, delete, port, opt out of targeted advertising, sale, and certain profiling, and to appeal a decision on your request). The procedures in Section 10 apply. We do not engage in profiling that produces legal or similarly significant effects without offering an opt-out where required.

13. Notice to EEA, UK, and Swiss residents

If you are located in the EEA, the United Kingdom, or Switzerland, you have rights under the GDPR, UK GDPR, and the Swiss Federal Act on Data Protection, including the rights to access, rectify, erase, restrict, object, and port your personal information; to withdraw consent without affecting the lawfulness of prior processing; and to lodge a complaint with your local supervisory authority. The legal bases on which we rely are described in Section 2. Cross-border transfer mechanisms are described in Section 7. The data controller is Teleperson, Inc., reachable at privacy@teleperson.com.

14. Children's privacy

The Services are not directed to, and we do not knowingly collect personal information from, children under 13 (or under 16 in the EEA/UK). If you are a parent or guardian and believe your child has provided us with personal information, please contact us and we will take appropriate steps to delete it.

15. Job applicants and personnel

If you apply for a role at Teleperson, we collect the information you submit (resume, contact details, work history, references, eligibility-to-work documentation, and assessment results) and use it to evaluate your application, communicate with you, comply with employment laws, and improve our recruiting processes. We retain applicant information for up to two years from the close of the role unless a longer period is required by law or you ask us to keep your information for future opportunities.

16. Third-party sites and services

The Services may contain links to, or interact with, third-party websites, applications, and services that we do not control. This Policy does not apply to those third parties; please review their privacy notices.

17. Changes to this Policy

We may update this Policy from time to time. If changes are material, we will provide notice (for example, by posting on this page or by email) before they take effect. The effective date at the top reflects the most recent revision.

18. Contact us

Questions about this Policy or our privacy practices? Contact privacy@teleperson.com or write to Teleperson, Inc., Attn: Privacy, at the address listed on our website. For security issues, contact security@teleperson.com.