VOLTZ CRM
Privacy Policy
1. Who we are
Voltz CRM (“Voltz”, “we”) is a field CRM for tradespeople, operated in connection with SA Marketing Intelligence. This policy explains what we collect when you use the Voltz mobile app (iOS / Android) and related web services, including customer booking pages.
Contact: contact@samarketingintelligence.com · www.samarketingintelligence.com/voltz
2. Consent before an account is created
Creating an account requires you to agree to our Terms of Use and this Privacy Policy. Until you tick that agreement, we do not create a Voltz account or store your CRM business data. Device settings that stay only on your phone (for example theme preference) may be saved locally and are not linked to an account until you sign up.
3. How we collect data
- You type it — names, emails, phones, addresses, job notes, quote and invoice lines, prices, tax, cashbook amounts, part names, feedback.
- You speak it — microphone audio on a Live AI call (after you agree to Google Gemini). Optional on-device speech recognition to dictate a job.
- You take or pick a photo — camera or photo library for site photos, receipts, attachments, or to show the assistant a part or fault.
- You sign in — email + password / magic link, Sign in with Apple, or Google. We receive the email and display name those providers give us, plus a timestamp that you accepted Terms & Privacy.
- You buy in the app (iOS) — Apple In-App Purchase / StoreKit via RevenueCat. We receive purchase status, product ID, and that credits or Pro should be granted. We do not receive your card number.
- You use GET PAID (optional) — Stripe Connect pay links for your own customers. Stripe processes their card. Voltz does not hold card funds.
- We look up an address you typed — postcode / address sent to postcodes.io, Zippopotam (US ZIP), or OpenStreetMap Nominatim so we can drop a pin on a job map. Map tiles may load from CARTO, Esri or OpenStreetMap.
- The app on your phone — theme, desk, mute, sounds, Who talks voice, icons layout, and similar preferences in on-device storage (UserDefaults / AsyncStorage).
- Crash / analytics (only if enabled in that build) — Sentry and/or PostHog may receive device type, app version, and a user id. Not Live voice audio.
4. What we collect and store (CRM)
Stored on our servers (Supabase: authentication, PostgreSQL database, file storage) for your workspace, unless noted as on-device only.
Account and workspace
- Email, display name, phone (if you add one), avatar URL, sign-in provider (email, Apple, or Google).
- Timestamp that you accepted Terms & Privacy.
- Workspace name, trade, plan (free / Pro), currency, VAT or sales-tax label and rate, slogan, logo / branding, call sign / operative name display.
- Workspace members (user id, role), invites (email, role, token, expiry).
- AI credit balance and usage log (which AI feature, credits spent, timestamps — not the full voice recording).
- Stripe customer id if used for non-iOS billing; Stripe Connect account ids if you turn on GET PAID.
Clients
- Name, email, phone, address line 1, address line 2, city, postcode, country, latitude, longitude, notes, tags, custom fields, owner, created/updated times.
Jobs and diary
- Title, description, status, scheduled start/end, check-in/out times, duration, address fields and coordinates, price, currency, capture method, materials list, tags, custom fields, to-dos (label, done, who completed), linked client, photos/attachments.
Quotes and invoices
- Number, status, issue date, valid-until or due date, subtotal, tax rate and amount, total, amount paid, currency, notes, sent/accepted/declined/paid times, linked client and job.
- Line items: description, quantity, unit price (ex tax), kind (labour, part, SLA, custom), link to a saved part or SLA if used.
Money, receipts, parts, files
- Cashbook: income or expense, category, amount, VAT amount, date, description, links to invoice/job/client.
- Receipt images and filing status.
- Parts library: name, SKU, cost, currency, unit, notes, stock/bought, listing URL, image URL.
- SLA library: name, description, cost, period.
- Attachments: file name, type, size, storage path, which job/quote/invoice they belong to.
- Work hours, closed dates, booking requests from a customer who used a quote booking link (slot chosen + optional note).
- In-app notifications, user feedback you send from Settings.
- Live voice call memory: a short recap of the last call and open lines/actions, so the next call can continue.
On this device only (unless you also save it to the CRM)
- Theme (dark/light), desk (AI Voice / Bird’s Eye), Icons view, sounds/haptics/mute, Who talks voice, Home icon layout, board Charts toggle, biometric unlock tokens in Keychain/Keystore.
- Face ID / Touch ID / fingerprint images never leave the phone. We never receive them.
5. How we use that data
To run your CRM, sync across your devices, show booking slots you set, process Pro and AI credits you buy, deliver optional AI features you turn on, send booking or reminder emails where configured, keep the service secure, and improve reliability (crash reports if enabled). We do not sell your personal data. We do not use Gemini data to show you third-party ads.
6. Google Gemini AI (third-party) — what is shared, how, and why
Optional AI (Live voice, Ask AI, and helpers such as job extract, receipt read, site-photo describe, quote/invoice line suggestions, Smart Chaser, price suggest, if turned on) is built on Google’s Gemini AI (Google LLC / Google Cloud Gemini API and Gemini Live).
Permission is asked in the app, not only in this policy. Before the first send, the app shows a consent screen that names Google Gemini, lists what can be sent, and asks you to Agree or Not now. If you decline, AI stays off and nothing is sent to Google. You can change this in Account → Privacy & AI Data.
The app does not embed a Google API key. Your phone talks to our backend (Supabase Edge Functions, including voice-relay). That backend calls Google over an encrypted connection, only while the feature is active.
Data that can be sent to Google Gemini (only the request you are making)
- Microphone audio and a transcript of what you say, only during a Live call.
- Typed Ask AI text; job notes you submit for extract.
- A photo you choose: receipt, site photo, or a live camera frame of a part/fault/SKU during a call.
- The CRM record you named: client name, email, phone, address, coordinates, notes, tags, custom fields; job title, times, status, price, materials, to-dos; quote/invoice number, status, dates, line items, tax, totals, amount paid, notes; cashbook row; part name/SKU/cost/stock; workspace tax/currency/desk/voice settings you ask to read or change; leftover talk-time if you ask.
- A short previous-call recap from voice call memory, so a new call can continue.
- A web-search query (product name) if you ask to find a part or price. Google Search may run as part of Gemini for that query.
We do not send your full customer book, passwords, Face ID images, card numbers, or photos you never showed the assistant. Nothing is sent in the background after you hang up.
Google uses this to generate a reply and to decide in-app actions (open a screen, create a client, add a line). Google’s API terms apply. We do not use this data for third-party advertising.
7. Payments — Apple vs Stripe (not Gemini)
- iPhone Pro and credit top-ups: Apple In-App Purchase (StoreKit) via RevenueCat. Apple handles the card. We store that you bought Pro or a top-up and grant ⚡ credits. Product IDs:
com.voltz.crm.pro.monthly,com.voltz.crm.credits.topup100(shown as 563 AI Credits). - Stripe Connect / GET PAID: optional. You send a pay link to your own customer. Money goes to your Stripe account. Voltz does not hold card funds. This is not how you buy Voltz on iPhone, and it is not part of the Gemini consent screen.
- Android / web digital goods (if used): Stripe Checkout where offered.
8. Other processors
- Supabase — auth, database, file storage, Edge Functions (including relaying AI), realtime.
- Apple / Google / RevenueCat — sign-in and in-app purchases.
- Google Gemini — optional AI, as section 6.
- Stripe — GET PAID and non-iOS billing where used.
- postcodes.io, Zippopotam, OpenStreetMap Nominatim, CARTO / Esri / OSM tiles — address you typed, to show a map pin.
- Expo — JavaScript updates onto the app you already installed.
- Sentry / PostHog — only if keys are present on that build.
Each acts under their own terms and our instructions. Data may be processed outside the UK (for example Google and Apple in the US) with appropriate safeguards those providers publish.
9. Device permissions
- Microphone — Live voice, after Gemini consent.
- Speech recognition — optional on-device dictate.
- Camera and photo library — site photos, receipts, attachments, showing a part to the assistant.
- Face ID — optional unlock. Images stay on device.
- We do not read your iOS Contacts, Calendar, or precise GPS “always” location. Job pins use the address you typed, geocoded as above.
10. Lawful basis (UK GDPR)
Contract (to provide the CRM), legitimate interests (security, support, product reliability), and consent (optional AI / Google Gemini, and marketing if we ever offer it). You can request access, correction, or deletion via the contact email or Account → Delete account.
11. Exports, sharing, retention, deletion
You can export jobs, invoices, clients, quotes, and cashbook CSVs or PDFs. Those files leave Voltz only when you share or save them. Quote booking links share limited quote details and available slots with the customer who has the link.
We keep workspace data while the account exists. Delete account in the app removes your auth user and associated profile. Workspace content shared with other members may remain for those members. Biometric material is wiped from the device on logout / delete. Voice call memory is stored per workspace until overwritten or the workspace is deleted. Google processes a request only while that call or helper request is active; we do not keep a second copy of the raw Live audio on Voltz servers after the call (credit usage is logged without the recording).
12. Children
Voltz is a business CRM. It is not directed at children. We do not knowingly collect data from children.
13. Contact
Questions: contact@samarketingintelligence.com, or Account → Send feedback. Product: www.samarketingintelligence.com/voltz. Terms: Terms of Use.