Privacy Policy

Last Updated: 31 August 2026

This Privacy Policy explains how TENEKSAI OÜ ("we", "our", "us") collects, uses, stores and protects your information when you use our services: our web application, our macOS and Windows desktop applications, and our iOS application. By using Teneks, you agree to the terms outlined in this Privacy Policy.

EU AI Act Position

Teneks’ Live‑Call Assistance and Post‑Call Analysis features are powered by AI. Banners or footnotes that read “AI assistance active” or “Generated with AI” indicate automatically generated content. Teneks is offered solely as a limited‑risk AI system under Regulation (EU) 2024/1689 and must not be used for Annex III high‑risk purposes such as employee monitoring or automated decision‑making that produces legal or similarly significant effects.

1. Introduction

Teneks is a platform designed to help sales teams and professionals improve their communication skills through conversation analysis, recording insights, team collaboration and performance analytics. This Privacy Policy describes what data we collect, how it is used and your rights regarding your personal information.

2. Information We Collect

Recording and Audio Data

  • Audio Recordings: When you upload or create recordings through our platform, we store and process the audio content to provide transcription, analysis and insights.
  • Microphone Audio: Our desktop (macOS and Windows) and iOS apps capture audio through your device's microphone only when you deliberately start or join a recording. Recording participants must be informed and consent obtained where required by applicable law.
  • Video Recordings: If applicable, video content you upload for analysis and review purposes.
  • Transcriptions: Text transcriptions generated from your audio recordings.
  • Analysis Data: Metrics and insights derived from your recordings, including speaker ratios, sentiment analysis, conversation flow and performance indicators.

Model provenance: Language processing is performed by proprietary in‑house models and by foundation models from providers that are signatories to the EU GPAI Code of Practice (currently OpenAI, Anthropic, Google, Microsoft and Mistral AI), engaged under agreements that prohibit the use of your content for model training.Customer Content Data, including audio recordings, transcripts and conversation analytics, is processed solely to provide the Service and is not used to train, fine‑tune or improve Teneks models or any third‑party models.

Who Can Access Your Data

Access to customer content data (audio recordings, transcripts, conversation analytics) is strictly limited:

  • Your Organisation: Users within your organisation can access data according to role‑based permissions (User, Manager, Admin).
  • Teneks Founder / CEO: For administrative and support purposes only, under strict confidentiality obligations.
  • Designated Account Manager: If an account manager is assigned to your organisation in the future, they will be bound by a non‑disclosure agreement (NDA). You will be notified before any such assignment.

Teneks employees do not have access to your audio recordings, transcripts or conversation analytics. Technical infrastructure access is limited to system administrators who can only access anonymised metadata for operational purposes.

Usage Data vs. Customer Content Data

We draw a clear distinction between usage data and customer content data:

  • Customer Content Data (audio recordings, transcripts, conversation analytics) is only ever processed to deliver the Service to you. It is never sold, never used for platform improvement, and never accessed by Teneks employees; it is shared only with the processors listed in Section 7, to the extent necessary to deliver the Service.
  • Usage Data (feature‑usage patterns, page views, session durations, button clicks) describes how you interact with the platform interface. This data is fully anonymised and aggregated before any analysis, making re‑identification impossible (GDPR Recital 26). We use this data solely to improve the platform experience.

3. How We Use Your Information

  • Service Delivery: To provide our core services including recording analysis, transcription, insights generation and team collaboration features.
  • Analysis Processing: To analyse your recordings to provide conversation insights, performance metrics and improvement suggestions.
  • Account Management: To manage your account, process payments through Stripe and provide customer support.
  • Team Collaboration: To enable sharing and collaboration features within your team or organisation.
  • Performance Analytics: To generate insights, reports and analytics about your conversation performance and team metrics.
  • Platform Improvement: To improve our services and develop new features we use only fully anonymised and aggregated usage data — such as feature‑usage patterns, page views and session durations — that describes how users interact with the platform. We never use customer content data (audio recordings, transcripts or conversation analytics) for platform improvement. All usage data is aggregated and anonymised so that it cannot be linked back to any individual or organisation (GDPR Recital 26).
  • Security and Compliance: To protect our platform, prevent abuse and comply with legal obligations.
PurposeLegal basis (GDPR Art 6)
Service delivery & account managementArt 6 (1)(b) – contract performance
Team collaboration featuresArt 6 (1)(b) – contract performance
Payment processingArt 6 (1)(b) – contract performance
Security & fraud preventionArt 6 (1)(f) – legitimate interest
Authentication reliability and abuse diagnosticsArt 6 (1)(f) – legitimate interest
Platform improvement (anonymised usage data only)Art 6 (1)(f) – legitimate interest (fully aggregated & anonymised; zero re‑identification per Recital 26)
Marketing emails (opt‑in)Art 6 (1)(a) – consent

4. Data Retention

  • Account Data: Retained as long as your account is active or as needed to provide services.
  • Audio Recordings: Retained for 30 days by default (customisable).
  • Transcriptions: Retained per customer‑specified requirements.
  • Analytics Data: Aggregated, anonymised analytics may be retained longer for service improvement.
  • Technical logs: Access logs (timestamp, user ID, API route) are retained for security and audit purposes.
  • Desktop login diagnostics: Fixed, identity-free authentication events are retained for up to 90 days.
  • Deletion Rights: You can request deletion of your data at any time.

5. Your Rights and Controls

  • Access and Portability: Access, download and export your data.
  • Correction and Updates: Update and correct personal information.
  • Deletion: Delete specific recordings or request full account deletion.
  • Sharing Controls: Manage what data is shared within your team.
  • Opt‑Out: Opt out of certain processing where legally permissible.
  • AI Explanation: Request a concise explanation of how an AI‑generated insight was produced by emailing contact@teneks.ai.

6. Cookies & Website Analytics

Our website uses cookies and similar technologies (such as localStorage). Apart from strictly necessary items, we only set them after you give consent via the cookie banner shown on your first visit. If you choose "Necessary only", no analytics or marketing cookies are set.

Strictly necessary (no consent required)

  • Cookie consent choice (localStorage: teneks_cookie_consent) — remembers whether you accepted or declined cookies.
  • Language preference (localStorage: teneks_language) — remembers your selected interface language.
  • Authentication tokens (app users only) — keep you logged in to the Teneks application.
  • Desktop login diagnostics (sessionStorage, one login attempt only) — records fixed stages and reason codes needed to detect a broken browser-to-desktop sign-in. It uses a random per-attempt identifier and may include platform and app version, but never includes the callback URL, OAuth state, credentials, email, account or organisation identifiers, a persistent browser identifier, or a device fingerprint. These first-party operational events are processed independently of analytics consent and are not shared with advertising or analytics providers.

Analytics (only with your consent)

  • Google Analytics 4 (via Google Tag Manager) — anonymous statistics about page visits, traffic sources and site usage. Without consent, Google receives only cookieless, non-identifying pings.
  • Microsoft Clarity — anonymised session recordings and heatmaps that help us understand how the website is used and where it is confusing.
  • First-party attribution (localStorage: teneks_anon_id, teneks_first_touch) — records which website or campaign referred you to us (e.g. a search engine, an AI assistant, or LinkedIn), and your optional answer to the "How did you hear about us?" question. This data is stored on our own EU servers and is not shared with third parties.

Marketing (only with your consent)

  • LinkedIn Insight Tag — measures the effectiveness of our LinkedIn campaigns and enables audience building on LinkedIn.

The legal basis for analytics and marketing cookies is your consent (GDPR Art 6(1)(a) and the ePrivacy Directive). You can withdraw consent at any time — your choice will be asked again on your next page load:

7. Third-Party Integrations

Our platform integrates with several third-party services to provide our functionality:

  • Google OAuth: For secure authentication and login
  • Microsoft Azure: For cloud infrastructure and data storage
  • Stripe: For secure payment processing
  • AI model providers: Where third‑party foundation models are used for transcription or analysis, they are limited to EU GPAI Code of Practice signatories, under data processing agreements that prohibit the use of your content for model training

When you use these integrations, you are also subject to the privacy policies of those third-party services. We encourage you to review their respective privacy policies.

8. International Data Transfers

Your data is primarily processed and stored within the European Union. If your data needs to be transferred to other countries for specific processing purposes, we ensure appropriate safeguards are in place to protect your data in accordance with applicable data protection laws including GDPR.

9. Children's Privacy

Our services are not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16. If we become aware that we have collected personal information from a child under 16, we will take steps to delete such information.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. When we do, we will revise the "Last Updated" date and notify you of material changes through our platform or via email.

11. Contact Us

If you have any questions or concerns regarding this Privacy Policy or our data practices, please contact us at:

  • TENEKSAI OÜ
  • Website: https://teneks.ai
  • Email: contact@teneks.ai