Legal
Privacy Policy
Last updated 26 August 2026. This policy covers the Shris AI marketing site and the voice workforce platform operated by Thejands LLP.
Data we process
Depending on the product surface, we may process work emails, phone numbers used for demo or production calls, conversation audio, transcripts, extracted business entities, CRM identifiers, and technical logs (latency, SIP codes, IP of API clients).
Purpose limitation (DPDP)
Personal data is used to provide voice workforce services, TRAI/DND/DLT compliance, billing, security, and support. We do not sell personal data. Marketing site demo forms are used only to schedule architecture sessions.
Retention
Enterprise tenants may enable Zero Data Retention so recordings and transcripts are purged after CRM sync. Runtime transcripts also expire after SHRIS_RETENTION_DAYS (default 90, BRD 90–180). Compliance artefacts required under TRAI and contractual audit are retained per the order form without unnecessary phone numbers after erasure. Demo form submissions are retained until the sales cycle closes or 18 months, whichever is earlier.
Rights
Data principals may request access, correction, or erasure via Contact Sales or through the tenant admin APIs POST /v1/privacy/export and POST /v1/privacy/erase. See DPDP documentation. We authenticate the request against the tenant administrator of record.
Security
TLS 1.3 in transit, AES-256 at rest, tenant isolation, and optional dedicated VPC. See the Security Statement and DPDP documentation.