Privacy notice
How Textalk AB handles personal data in Curact. This notice covers both people who visit this site and people who use a Curact workspace.
Last updated 2026-08-14
Who is responsible
Textalk AB is the controller for data about visitors, account holders and billing contacts.
For the content inside a customer's workspace — meetings, slides, people records, connected Slack and Trello material — the customer is the controller and Curact is the processor, acting on the customer's instructions.
What we store
- Account data: name, e-mail address, workspace role, sign-in timestamps.
- Workspace content: meetings, slides, agendas, follow-ups, KPIs, recaps and uploaded images.
- People records: names, roles, teams, and Slack identifiers used to send requests and reminders.
- Connected sources: indexed Slack messages and Trello cards that the customer chose to connect, minus anything caught by the privacy filter.
- Meeting participation: anonymous participant identifiers, poll and quiz answers, word responses, reactions and comments.
- Billing data: company name, address, tax identifiers, billing contact and plan history.
- Operational logs: job runs, delivery outcomes for Slack and e-mail, and platform administration audit records.
Why we process it
- To provide the service the customer signed up for (performance of a contract).
- To keep the service secure, diagnose failures and support customers (legitimate interest).
- To invoice and meet bookkeeping obligations (legal obligation).
- To send service messages such as speaker requests and meeting reminders (performance of a contract).
Artificial intelligence
Curact uses AI to summarise material and suggest slides. Prompts contain workspace content the customer selected, never billing data or sign-in credentials. Content flagged by the privacy filter is excluded before anything is sent. Model providers process the request to return an answer and do not use it to train their models.
How long we keep it
Each workspace sets its own retention in Settings → Data & privacy: how long connected-source index data, finished meetings, participant-level answers and operational logs are kept. A nightly job enforces those rules.
Billing records are kept for as long as bookkeeping law requires. Everything else is deleted when the workspace is deleted.
Who we share it with
Only the subprocessors listed on the subprocessors page, and only to run the service. We do not sell personal data and we do not use it for advertising.
Your rights
- Access and portability: export your own data as a file from Settings → Data & privacy.
- Erasure: delete your account, or — as an owner — the whole workspace, from the same page.
- Rectification: change your profile details, or ask a workspace owner to correct records about you.
- Objection and restriction: contact us and we will handle the request within one month.
- Complaint: you may lodge a complaint with your supervisory authority. In Sweden that is Integritetsskyddsmyndigheten (IMY).
Cookies and local storage
We use two categories of storage. Only the first is set without your consent; functional storage stays off until you allow it. There is no advertising, analytics or third-party marketing tracking today — if we ever add analytics, it will be a separate opt-in category and we will ask first.
- Strictly necessary (always on): sign-in session, workspace selection and security. Set by Curact and our authentication provider, kept for the session or up to one year.
- Functional (optional): easy-read mode in the live view, the name and team you chose when joining from your phone, and guidance you have waved off. Kept on your device until you clear them or withdraw consent.
- Without functional consent the app still works — those preferences simply live for the current page and are never written to your device.
- Change or withdraw: open “Cookie settings” in the site footer or in Settings → Data & privacy. Withdrawing clears the stored values immediately, on the open page as well as future visits.
- Versioning: each cookie policy version is numbered and listed below. If we add a category or change a purpose, your earlier answer stops applying — the banner returns with a summary of what changed, and only strictly necessary storage runs until you answer.
Contact
Write to privacy@curact.ai and we will respond within one month.
Cookie policy versions
When categories or terms change we publish a new version and ask for your consent again. Until you answer, only strictly necessary storage is used. Version 2 is in force.
Version 22026-08-14 · current
Per-category consent, and optional storage genuinely held back.
- — Split storage into “Strictly necessary” and “Functional”, each with its own switch.
- — Removed the analytics category — we do not run analytics or third-party tracking.
- — Functional preferences are now only written to your device once you allow them, and are deleted the moment you withdraw.
Version 12026-06-01
First cookie notice: one accept-or-reject choice.
- — A single banner choice covering all non-essential storage.