Privacy Policy
Last updated: 25 July 2026
1. Who is responsible for your data
Dialed is a trading name of Oscar William Biltcliffe, a sole trader established in England. We are the data controller for the personal data described here.
| Address | 3 Otterbourne House Gardens, Winchester, SO21 2ER |
| support@dialedsales.co.uk |
Any question about your data: email the address above.
2. Your voice — read this before you use the microphone
Dialed asks you to speak. You should understand exactly what happens to that, because it isn’t what most people assume.
Speech recognition is done by your browser, not by us. When you speak, your web browser converts your speech to text using its own built-in speech recognition. In most browsers, this means your browser’s maker receives your audio and processes it on their servers:
- Google Chrome and other Chromium browsers → Google
- Microsoft Edge → Microsoft
- Other browsers may use their own service, or none at all
This happens directly between you and your browser’s maker. We don’t control it, we don’t receive the audio, we can’t switch it off, and what they do with it is governed by their privacy policies — not this one. If you want to know more, read your browser’s privacy policy.
What we do and don’t do
- We never record your audio. We never store it. We never upload it. Dialed has no recording feature — there is no code in it that can record you.
- We access your microphone for exactly two things: to hand the input to your browser’s speech recognition, and to draw the live microphone-level meter you can see on screen. The meter runs entirely on your device and the data goes nowhere.
- We receive text, not sound — whatever your browser transcribed.
If you’d rather not — don’t use the microphone features. Dialed works without them:
- Every prospect line is always shown as text, in every mode.
- AI Call has a “Type your reply” option.
- Lesson speak-steps can be skipped or read instead.
- Roleplay drills fall back to typing.
Your practice will still work. Nothing is locked behind speaking.
3. What we collect
Your identity — held by Clerk, not by us. Your email, password, any linked Google sign-in, and your session and device information sit with our sign-in provider, Clerk. We deliberately do not copy these into our own database.
Your profile. A display name, an optional avatar image, and an optional short bio — whatever you choose. If you use a photo of yourself as an avatar, that image is stored in our database.
Your practice data.
- Progress, XP, streaks and stars
- A log of your practice calls: when, the outcome, XP earned, which scenario — not what you said
- Any custom objections you type in
- Which in-app news items you’ve read
Your speech, as text. What you say during a call or drill is transcribed by your browser (section 2) and sent for scoring and coaching (section 4).
Your subscription. If you subscribe: your Stripe customer reference, your subscription status, and when your billing period ends. We never see or store your card details — Stripe handles those.
Your billing address. Stripe collects this when you subscribe. We use it to confirm you’re in the UK (see below).
Your UK residency confirmation. Dialed is only available to customers in the United Kingdom, so we ask you to confirm you live in the UK. We store the date and time you confirmed it. We do not ask where you live beyond that, and we don’t check your location or your IP address.
Your usage. Counts of calls, drills and lessons used, so we can apply your plan’s limits.
How you use Dialed. To understand and improve the product, we record usage events — such as starting and completing a practice session, the outcome of a call (for example, a booked appointment), and coming back to the app. This is first-party product analytics: it’s stored in the same database as the rest of your account data (Neon — see section 7), it’s linked to your user ID, and it is never shared with any third party or advertiser. It records what you did, never what you said.
Technical. What your browser sends when it connects, and our server logs. Our logs may contain your user ID. They do not contain what you said.
Advertising measurement — only if you accept
If, and only if, you accept advertising cookies (section 11), we use the Meta Pixel — a small piece of code from Meta (Facebook) — to measure how well our ads perform: for example, whether someone who arrived from one of our ads went on to create an account. If you don’t accept, it never loads, and none of the following happens.
While it is active, Meta receives:
- Your IP address
- Information about your browser and device
- The Dialed pages you visit while it’s active
- The fact that a signup was completed — not who you are, and never what you said
This is a transfer of your personal data to Meta. Section 7 says who they are and where it goes; section 11 names the cookie it sets, how long it lasts, and how to change your mind. Meta’s own privacy policy is at facebook.com/privacy/policy.
What we don’t do
- Our product analytics are first-party. No Google Analytics, no Plausible, no PostHog — the usage events that tell us how the app is used stay in our own database (section 7).
- No advertising cookies or pixels unless you accept them. We use the Meta Pixel only to measure ad performance, only with your consent, and never to build a profile of you or to fingerprint you.
- We don’t sell your data. Ever, to anyone, for any amount.
- We don’t use your data to train AI models.
- We don’t market to you unless you ask us to.
4. What we do with it, and our lawful basis
| What we do | Data used | Lawful basis |
|---|---|---|
| Give you an account and let you sign in | Identity (via Clerk) | Performance of our contract with you |
| Run lessons, drills and practice calls | Profile, progress, your speech as text | Performance of our contract with you |
| Score your responses and coach you | Your transcribed speech, scenario context | Performance of our contract with you |
| Apply your plan’s limits | Usage counts, subscription status | Performance of our contract with you |
| Take payment, manage your subscription | Subscription data (via Stripe) | Performance of our contract with you |
| Confirm you’re eligible to use Dialed (UK only) | Your UK confirmation and its timestamp | Performance of our contract with you |
| Keep a record that we asked, and what you told us | Your UK confirmation timestamp, your billing address (via Stripe) | Legal obligation (tax) and our legitimate interests in showing we took reasonable steps to sell only where we’re able to |
| Keep Dialed working, secure, and free from abuse | Logs, usage counts | Our legitimate interests in running a secure, working service |
| Understand how Dialed is used, and improve it | Usage events — sessions completed, outcomes, returns, plan tier | Our legitimate interests in understanding and improving the product |
| Measure how well our ads perform | Your IP address, browser and device information, pages visited, and that a signup occurred (via the Meta Pixel) | Consent — which you can withdraw at any time (sections 3 and 11) |
| Keep tax and accounting records | Payment records (via Stripe) | Legal obligation |
5. Automated processing — how your practice is scored
Dialed scores you automatically. No human reads what you said.
When you complete a practice call or a drill, what you said (as text — see section 2) is sent to an AI, which scores your response, awards XP and stars, and writes your feedback. This is entirely automated. Nobody at Dialed reviews it, listens to it, or checks the AI’s judgement.
What this means for you:
- The scoring has no legal or similarly significant effect on you. It’s a training score in a practice app. It doesn’t decide anything about your life, your money, your employment, or your access to anything. It affects your XP and your stars.
- It is often wrong. The same answer can score differently on different attempts. Treat it as a prompt to think, not a verdict.
- You can ask us to look at it. If you think a score is wrong or unfair, email support@dialedsales.co.uk and a human — that’s us — will look. We’d like to know when the AI gets it badly wrong; it’s how we improve it.
- We don’t profile you. We don’t build a picture of you from your scores, we don’t use them to make decisions about you, and we don’t share them with anyone.
We do not use automated decision-making that produces legal effects concerning you, or similarly significantly affects you, within the meaning of Article 22 of the UK GDPR.
6. Emails we send you
We’ll send you emails about your account and your subscription — things like confirming your sign-up, resetting your password, confirming a payment, telling you a payment failed, or telling you about a change to these terms or this policy. These are part of providing the service and you can’t opt out of them while you have an account — if we couldn’t tell you your payment failed, we couldn’t run your subscription.
Some of these are sent by Clerk (sign-in and password emails) or Stripe (payment receipts and failures) rather than by us directly.
We don’t send marketing emails. If that ever changes, we’ll ask your permission first and you’ll be able to unsubscribe at any time.
7. Who else is involved
| Who | What they get | What for | Where |
|---|---|---|---|
| Clerk | Identity — email, password, sign-in sessions | Sign-in and account management | United States |
| Neon | Profile, progress, practice data, usage, subscription reference | Our database | United Kingdom (AWS London) |
| Stripe | Payment details, email, subscription | Taking payment | United States / global |
| Anthropic | What you said, as text, plus scenario context | Playing the AI prospect, scoring you, writing your debrief | United States |
| Cartesia | Nothing about you | Generating the AI prospect’s voice — it speaks our scripted lines, never yours | United States |
| Vercel | Connection data, server logs | Running the website | United States (Washington, D.C. — iad1) |
| Meta Platforms Ireland Ltd | Your IP address, browser and device information, the pages you visit, and that you signed up — only if you accept advertising cookies | Measuring how well our ads perform (the Meta Pixel) | Ireland, with onward transfer to the United States |
| Your browser’s maker (Google, Microsoft, etc.) | Your voice audio | Speech recognition — see section 2 | Their own infrastructure |
Transfers outside the UK. Clerk, Stripe, Anthropic, Cartesia and our host are outside the UK, and — if you accept advertising cookies — so is Meta. Where we transfer your personal data outside the UK, we do so only where appropriate safeguards are in place — such as the UK’s International Data Transfer Agreement or the UK Addendum to the EU Standard Contractual Clauses, or where the destination country is covered by UK adequacy regulations.
Your browser’s speech recognition is not a transfer we make — it happens directly between you and your browser’s maker, under their terms.
8. How long we keep it
| What | How long |
|---|---|
| Your account and practice data | As long as your account exists — delete it and it’s gone (section 10) |
| Your UK residency confirmation | Deleted with your account |
| Your billing address | Held by Stripe with your payment records — retained for as long as tax law requires, even after you delete your account. In practice, that’s 6 years. |
| Payment records | Stripe retains invoices and transaction records for as long as tax law requires — even after you delete your account. Neither we nor you can delete these. |
| Server logs | 90 days, then deleted |
If Dialed stops operating. If we ever shut Dialed down, we’ll tell you beforehand and give you a reasonable chance to get a copy of your data. We’ll then delete what we hold, apart from the payment records tax law requires us to keep.
If Dialed is sold or transferred. If the business is ever sold or transferred to someone else, your data may transfer with it. We’d tell you before that happened, and whoever took it on would be bound by this policy — or would have to tell you what was changing and give you the chance to leave and delete your data first.
9. Your rights
Under UK data protection law you have the right to:
- Be informed — this policy
- Get a copy of what we hold about you
- Correct anything wrong
- Have it deleted (section 10)
- Restrict what we do with it
- Object to processing based on our legitimate interests
- Take it elsewhere in a portable format
- Ask a human to look at an automated score (section 5)
- Complain
To use any of these, email support@dialedsales.co.uk. We’ll respond within one month. It’s free.
Your right to complain
If you’re unhappy with how we’ve handled your personal data, you have the right to complain to us directly. Contact us at support@dialedsales.co.uk and we’ll look into it. We’ll acknowledge your complaint within 30 days of receiving it, keep you updated on our progress, and explain the steps we’ve taken and why we consider we’ve complied with data protection law.
You also have the right to complain to the Information Commissioner’s Office (ICO), the UK’s data protection regulator, at any time — you don’t have to contact us first. You can reach the ICO at:
- Website — ico.org.uk/make-a-complaint
- Helpline — 0303 123 1113
- Post — Information Commissioner’s Office, Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF
10. Deleting your account
Settings → Account → Delete account. You don’t need to ask us.
This permanently deletes:
- your sign-in identity at Clerk
- your profile, progress, XP, stars, streaks, call log, custom objections and read history from our database
- your UK residency confirmation
- your usage records
It also cancels your subscription immediately — and you lose the rest of the month you’ve paid for, with no refund. It cannot be undone.
What survives, and why: Stripe keeps your invoices and payment records, because tax law requires it. We can’t delete those and neither can you. The rest of your Stripe customer record — including your email — is deleted when you delete your account.
If you just want to stop paying, cancel instead (Settings → Billing → Manage) — that keeps your account and progress.
11. Cookies and things stored on your device
Dialed keeps cookies to a minimum. The ones that are strictly necessary — or that only remember a preference and don’t profile you — are set without asking, as UK law (PECR) allows. There is exactly one that needs your permission: an advertising cookie, which we never set unless you accept it.
Advertising cookie. If you accept advertising cookies, the Meta Pixel (sections 3 and 7) sets a cookie called _fbp on your device. Its purpose is advertising measurement — it lets Meta recognise your browser so it can tell whether one of our ads led to a signup. It lasts up to 90 days. If you reject, or simply ignore the banner, it is never set. You’re asked with a cookie banner the first time you visit, and you can change your mind at any time (see “Changing your mind” below).
The cookies we set without asking, because Dialed needs them:
| Name | What it does | Who sets it |
|---|---|---|
| Session cookies | Keep you signed in — Dialed doesn’t work without them | Clerk |
| dialed.dev-plan | Used only by the site owner’s account, to preview plans while testing | Us |
Stored on your device (local storage):
| Name | What it does |
|---|---|
| dialed_consent_v1 | Remembers your advertising-cookies choice, so we only ask once |
| sales-sim.muted | Remembers whether you muted the sound |
| sales-sim.dev-mode | Developer setting |
| sales-sim.stt-debug | Developer setting for diagnosing speech recognition |
Of everything here, only the _fbp advertising cookie can follow you to other websites, and only if you accept it. Nothing else profiles you or tracks you elsewhere.
You can clear these in your browser — but without the sign-in cookies you can’t stay signed in.
Changing your mind
You can change your choice at any time, right here on this page — no account needed. Use the control below. If you have an account, the same switch is in Settings under “Advertising cookies”, and choosing Reject on the banner does the same thing. Whenever you turn advertising cookies off we stop the Meta Pixel and delete the _fbp cookie; it doesn’t affect anything you can do in Dialed.
12. Security
Among other things:
- Your data is only ever accessible to your own signed-in account. This is enforced at the database level on every single request — every query is scoped to your session, and no part of Dialed accepts a user ID from the browser to look up data.
- Secrets and keys never reach your browser.
- Your payment status can only be changed by a cryptographically verified message from Stripe — nobody can forge it, including you.
- We never store your card details. We never store your audio.
- Dialed has been security-audited, including a specific check that no user can reach another user’s data.
No system is perfectly secure. If a breach happens that puts your rights and freedoms at risk, we’ll tell the ICO within 72 hours and tell you without undue delay, as the law requires.
13. Children
Dialed is for adults aged 18 and over. It isn’t designed for or directed at children, and we don’t knowingly collect their data. If you believe a child has given us their data, email us and we’ll delete it.
14. Changes to this policy
We may update this policy. If a change materially affects you, we’ll tell you — we won’t quietly rewrite it. The date at the top shows when it last changed.