What Vorelai keeps about a business's calls and callers, for how long, and how it's deleted. The business decides most of these in its dashboard (Settings → Callers' data, and Call recordings).
What a call leaves behind
| Data | Kept for | Then |
|---|---|---|
| A call's content: the caller's number, the transcript, the call's summary, what the agent looked up or booked for the caller, the call's event timeline | 1 year unless the business changes it: 30 days to 3 years | Deleted within an hour of its time being up. The call stays as figures: when, how long, which agent, what it cost, how fast the agent replied |
| The recording, for agents that record (off unless the business turns it on) | 30 days unless the business changes it: 7 days to 1 year | Deleted at its own time, or with the call's content, whichever comes first |
| Bookings the agents made: the caller's name and numbers, the service and time, kept so a caller can cancel or move theirs on a later call | As long as a call's content, counted from the appointment's time | Deleted within an hour of its time being up, or with the caller's data when the business deletes it. The appointment itself stays in the business's calendar |
| The figures that stay of a call | As long as the workspace exists | Deleted with the workspace |
| Calls from Vorelai's website demo, and from its debug console | 30 days | Content deleted as above |
| Agents, knowledge documents, tools, settings | Until the business deletes them, or the workspace | Deleted at once when deleted in the dashboard |
| Secrets (API keys, calendar tokens) | Until the business removes them | Deleted from the vault at once |
Deleting sooner
- One call: an owner or admin opens the call and chooses Delete what was said.
- Everything from one caller, when a caller asks to be forgotten: Settings → Callers' data → Delete a caller's data, with their number. Every call from that number in the workspace loses its content at once, recordings included.
- The whole workspace: when a business leaves, it asks support@vorelai.com, and Vorelai deletes the workspace and everything in it within 30 days. A workspace whose plan or trial ended is deleted 90 days after it ended.
Outside the database
| Where | What | Kept for |
|---|---|---|
| The call server's security log | Login attempts, which name the caller's number on some calls | 3 days |
| The call server's spool | A call record the database couldn't take at the time | Until the database takes it, 7 days at most |
| The call server's temp files | A recording while its call is in progress | Until it's uploaded at the end of the call |
| Server logs | What calls did, without callers' numbers or anything they said or pressed | Rotated by size, a few days on a busy server |
| Database backups (Supabase) | Everything in the database | Up to 7 days, on Supabase's paid plans; deleted data leaves the backups as they roll over |
| Google (Gemini API) | Audio and text sent during a call and after it | Google's terms for paid accounts: not used to train its models; kept for a limited time to detect abuse |
| Emails sent (Resend) | Call summaries sent to the business's chosen addresses | Resend's sending logs; the business's own inboxes are its own |
Dashboard users
The people who sign in to the dashboard (their name, email, and which workspaces they're in) are kept while they have an account. Someone who asks is deleted from sign-in within 30 days; the workspaces they belonged to stay with their other members.