PII & Privacy
Control how Autoch.at handles personally identifiable information — including data redaction, retention periods, and customer data deletion requests.
Protecting your customers' data
The PII & Privacy page (at Settings > PII & Privacy) gives you control over how Autoch.at stores and handles personally identifiable information (PII) — things like names, email addresses, phone numbers, and any other data that could identify a specific individual.
Getting this right matters both for your customers' trust and for compliance with regulations like GDPR, CCPA, and PIPEDA.
PII redaction
When PII redaction is enabled, Autoch.at automatically detects and masks sensitive information in conversation transcripts. For example, a credit card number mentioned in a chat message would be replaced with **** in the stored transcript.
This is especially useful if your AI assistants handle conversations where customers might accidentally share sensitive data — like account numbers, social security numbers, or passwords.
Enabling PII redaction
- Go to Settings > PII & Privacy.
- Toggle on PII Redaction.
- Select the types of data you want to redact (credit card numbers, phone numbers, email addresses, etc.).
- Click Save.
PII redaction is applied at storage time. Once data is redacted in a transcript, it cannot be recovered. Make sure you only redact data you genuinely don't need to store.
Data retention
Data retention settings control how long Autoch.at keeps your conversation history and client records before automatically deleting them.
By default, Autoch.at retains data indefinitely. If your organization has a data retention policy (for example, "delete all conversation data after 12 months"), you can configure that here.
Setting a retention period
- Go to Settings > PII & Privacy.
- In the Data Retention section, set your preferred retention period (in days, months, or years).
- Click Save.
Data older than the retention period will be automatically deleted on a rolling basis.
Deleting a customer's data
If a customer requests that their data be deleted (a "right to erasure" request under GDPR), you can fulfill it from the client's record:
- Go to CRM > Clients and find the customer.
- Open their profile.
- Click Delete Client Data.
- Confirm the deletion.
This permanently removes the client's personal information and conversation history from Autoch.at. This action cannot be undone.
Deleting a client's data does not affect any data that has already been synced to an external CRM. You'll need to handle deletion in your CRM separately.
Data processing agreements
If your organization requires a Data Processing Agreement (DPA) with Autoch.at for GDPR compliance, please contact our support team via the chat widget in your dashboard.
Last updated 3 weeks ago
Built with Documentation.AI