Someone leaves your team
Withdraw the access: it takes effect at once, including on work already scheduled in their name. Then read the audit trail to see what was done before the withdrawal, and reassign the conversations that person owned.
Granting access that shows exactly what it should, knowing who did what, and exercising your data rights without writing to us.
People on your team who see what they need, and nothing else. A technician has no business reading your invoices; an assistant running one location has no business seeing the other two.
A readable record of what was viewed and changed, with the date and the person. Useful when there is doubt, and required when you handle sensitive information.
And your data rights, exercisable from the Settings screen: view, export, request deletion. You do not need to write to us for that.
A role can be changed afterwards, and removing an access takes effect on work already scheduled, not only on new work.
An invitation goes to their address. Until they accept, they see nothing: a pending invitation is not an access.
The role decides the screens. A screen a role has no right to is absent from the menu rather than greyed out — nobody wastes time clicking what they cannot open.
When your business has several locations, each access can be tied to one. Requests, calls and appointments from the other sites stay out of view.
Every view and every action leaves a timestamped trace, readable by you. That is the answer to «who cancelled this appointment», without having to ask.
From the Settings screen: export your files, transcripts and archived recordings, or request a deletion. An export that cannot include everything names what it left out.
The role answers «what is this person allowed to do»: read requests, reply, book, manage the subscription. The scope answers «on what»: one site, several, the whole business. They are set separately because the two needs do not overlap.
A screen a role has no right to is absent from the menu rather than greyed out, and a file outside the scope answers «not found» rather than «forbidden». The nuance matters: a «forbidden» answer reveals that the file exists, which is already information.
Every view and every action leaves a timestamped trace, with the person. That trail is not there to watch your team: it is there to answer «who cancelled this appointment» and «who read this file» without asking everyone in turn.
It also serves when someone exercises their rights over their information. You can state what was consulted, by whom and when, which is exactly what a person is entitled to ask you. The privacy page describes the full handling.
Withdraw the access: it takes effect at once, including on work already scheduled in their name. Then read the audit trail to see what was done before the withdrawal, and reassign the conversations that person owned.
A pending invitation is not an access: until it is accepted, the person sees nothing. You can withdraw it, or send it again to another address if the first one was wrong.
When the person called your business, you are the one answering for it: the request is handled from your files. We assist you on derived items, and deletion reaches those too.
For activities declared sensitive, retention at the voice provider is switched off: a call can appear with no recording, by design. The written request and the summary remain, and the audit trail keeps who read them.
An export that cannot include everything names what it left out instead of staying quiet about it. Ask for it period by period when it is large: audio recordings weigh far more than text.
That is expected behaviour when their role has no right to it: the screen is absent, not locked. Change the role if the access is intended.
The link points to a file outside their scope — another site, or another business. The answer is deliberately «not found»: it does not reveal that the file exists.
Removal applies at once, including to work already scheduled. Then check the record to see what was done before the removal.
If they are a person who called your business, you answer for it: the request is handled from your files, and we assist if it gets complicated.
What owners ask about access and data.
As many as your organisation has. What gets configured is not the number but what each one sees: their role and the site they are attached to.
Because their role gives no right to it. The screen is absent from the menu rather than locked, so they do not waste time clicking what they cannot open. Change the role if the access is intended.
Yes, from the Settings screen: files, requests, transcripts, appointments and archived recordings. There is no request to send us to obtain it.
People whose role opens conversations, and only for the site they are attached to. Every read leaves a timestamped trace in the audit trail.
That is what lets you answer precisely when someone asks who consulted their file.
Yes. Requests, calls and appointments from the other sites stay out of view, including inside the totals shown on their home screen.
On the privacy page and the subprocessors page, which name the processing activities, their purposes and the providers involved.
Every task has its own.
What these settings protect.