POPRIX runs an AI support desk on your customers' conversations, so protecting that data is the product, not an add-on. It stays in the European Union, it is encrypted in transit and at rest, every action is logged, and nothing your customers send is ever used to train a model.
The controls that run on every conversation.
Traffic is encrypted end to end with TLS, and data is encrypted at rest with AES-256. The database is closed to the public internet and reachable only by the application.
POPRIX never trains models on customer data, never sells it, and never hands it to anyone for training. Every provider we call is bound by the same commitment in its API terms.
Every agent works under a spending ceiling. A financial action above it — a refund, a credit, a change to an order — waits in an approval queue until a person releases it.
Every action is recorded with a timestamp, the acting identity and the reasoning behind it. Records are append-only and hash-chained, so any change to the history is detectable.
The database is a managed Supabase Postgres with automatic daily backups, so a bad day is a restore rather than a loss.
Sign in with a Google account or a single-use email link. A new address opens its own organisation; an address that belongs to an existing organisation is checked against that organisation's member list on every sign-in.
Your data is stored in the European Union. Model inference runs on Anthropic in the United States.
Israel holds an adequacy decision from the European Commission, reconfirmed on 15 January 2024, so personal data moves from the European Economic Area to Israel — where POPRIX operates — without Standard Contractual Clauses. Against a US-only processor, that is a practical advantage.
POPRIX is a processor: your organisation owns its customers' data and decides how it is used, and we act on your instructions under a data processing agreement.
Under the Israeli Protection of Privacy Law, as amended by Amendment 13 (in force 14 August 2025), your organisation is the controller and POPRIX is the processor. The split is set out in the DPA, and our access to your data is technical, minimal and recorded.
The platform is built to meet the GDPR and UK GDPR, and the CCPA. Data subject rights — access, correction, erasure and portability — are honoured, and the data is never sold or used for advertising.
Every access is recorded — the identity, the time, the component, the type and scope of access, and whether it was granted or refused — and kept for at least 24 months, meeting Regulation 10 of the Data Security Regulations.
If a security incident affects your data, we notify you within 24 hours of discovering it and help you meet your reporting duties, including the GDPR's 72-hour deadline.
The providers POPRIX relies on to run the service, and what each one receives.
| Provider | What it is used for | Location |
|---|---|---|
| Vercel | Hosting and running the application, and holding its configuration secrets | Frankfurt, fra1 (European Union) |
| Supabase | The database, customer file storage and backups | eu-central-1, Frankfurt (European Union) |
| Anthropic | The Claude models that draft replies and classify incoming cases | United States |
| Google Gemini API | A fallback model, and transcription and text-to-speech for voice notes where a voice channel is enabled | Google's global endpoint |
| TypeSafe | Typed triage decisions — routing and escalation judgments on an incoming case | TypeSafe's own infrastructure |
| OpenAI | Embeddings for search across the knowledge base, and structured extraction as a fallback | United States |
| Deepdub | Text-to-speech for voice notes, where that channel is enabled | European Union |
| Firecrawl | Reading the organisation's own public website to build its knowledge base | United States |
| Resend | Outbound email delivery | Resend's own infrastructure |
| Telegram | The Telegram messaging channel, where it is connected | Telegram's own infrastructure |
| Composio | Connecting the organisation's own systems (Shopify, a mailbox), and only when the organisation connects them on its own account | United States |
| POPRIX il-fetch | Fetching pages from Israeli websites that block traffic from Europe. Not in the path of customer messages | Israel |
We give customers at least 30 days' notice before adding a sub-processor, so there is time to object before any data flows to it. A customer who objects and cannot be offered an alternative may end the affected part of the service without penalty.
We provide the Regulation 15 security annex — covering architecture, data ownership, access controls, key management, encryption, backups, monitoring and sub-processors — and our data processing agreement (DPA) to your security team under NDA.