Trust

What we keep, where it lives,
and how you leave.

The short version of the security page, written from what the product does today rather than from a roadmap. Every line here is something you can check from inside your own workspace.

ExportEverything, as JSON, from inside the product, at any time. Secrets redacted. The audit log exports separately.
DeleteScheduled from inside the product after an export. Runs after a 30-day window in which you can cancel.
KeysModel-backed drafting runs on a key you bring, or on none. Customer conversations make no model call.

What we keep

Your workspace holds what you put in it and what it produces: the workflows and channels you author and the rules they run on; the conversations, drafts, approvals and refusals they generate; a consent record per person, per channel; and your settings, including your timezone, your retention period and your transfer number. If you imported your first configuration from your website or Google profile, each field records where it came from, and fields with no source were left blank rather than guessed.

Customer-facing conversations, on the web widget, SMS, WhatsApp and voice, are answered from your approved rules through one resolver, with no model call. A conversation is never sent to a model provider. Your data is never sold and never used to train a shared model.

Where it lives

The platform runs at app.feerasta.ai on a server in Germany, and the website is delivered by Cloudflare. Every provider that processes data on our behalf, with what it does and where, is on the subprocessors page, which is updated before a new one is added. Inside the product, a provider disclosure shows which of them your own workspace actually uses.

Where residency or regulation rules out a shared platform, Feerasta Sovereign runs the same workflows on infrastructure you control.

What you can export

The whole workspace, as JSON, from inside the product, whenever you want it, with secrets redacted. The audit log can be exported on its own. Neither needs a ticket or a wait on us.

How deletion works

  • Retention. You set a retention period for your workspace and a nightly job purges what is past it.
  • Closing the account. Take an export first; the product will not schedule deletion without a recent one. Then schedule deletion from inside the product. It runs after a 30-day window, and you can cancel it at any point in that window. Three things survive it: the consent record, the opt-out list, and the audit trail, because they are the proof that a STOP was honoured and what was approved.
  • Paid plans. A workspace that is still billing is cancelled before it can be deleted; deletion is refused until then.

Disclosure

On the first turn of a call or text, the agent says it is AI and names your business. On text, the line repeats on the first reply to a sender every 30 days. You can turn it off; if you do, the liability is yours. How and where AI is used across the product is written up on the AI transparency page.

Consent

Consent is recorded per person, per channel. STOP on any channel revokes every channel, HELP is answered, and both are recognised as the first word of a message in English and French. A message with no consent record is refused, and the refusal is logged, so there is a trace of what did not send as well as what did. Every outbound channel starts switched off, and a channel with a failing backtest of your own history cannot be switched on.

The audit trail

Every approval, rejection and refused send is on the audit log. Approvals are made inside the product by an owner or an approver; a member can be invited by email but cannot approve, only an owner manages the team, and the last owner cannot be demoted or removed. You can export the log whenever you want. How that is enforced →

Who the AI providers are, and whose keys

Model-backed drafting, the books, reports and replies that wait for your approval, runs on a model key you bring, stored encrypted on your workspace. With no key, that drafting stays off and the product says so. The providers we work with are named on the subprocessors page: Anthropic, OpenAI and NVIDIA for models, ElevenLabs and Twilio for voice and messaging. Which of them your workspace uses is shown inside the product.

Who is on the other end

Three check-in mails, on day 7, day 14 and then monthly, signed by Meer Feerasta. Reply to any of them. Support hours, response times and how to report a security problem are on the security page.

The documents

What you will not find here

No customer counts, no savings figures, no accuracy percentage. What we publish instead is the trace, the refusal count and the audit trail, on your own conversations. If a document you need is not on this page, ask and we will send it, or tell you plainly that we do not have it.

Last updated 2 September 2026. Questions: hello@feerasta.ai.

Call the demoBook a call