Last updated: May 31, 2026
This Privacy Policy describes how Dialo ("Dialo", "we", "us") handles information when you use the website at dialo.app and the associated services (the "Service"). Dialo is operated by maybethis. If you have any questions, write to us at hello@dialo.app.
Dialo lets you compile your social links, contact details, and crypto wallets into a personal page that you can share through a short link or a QR code. Public pages are reachable at dialo.app/your-name and are intended to be seen by other people. Profile owners may also enable an AI assistant that chats with visitors on their behalf to screen inbound messages and, optionally, book meetings.
To sign in, we use a passwordless magic-link flow. You provide an email address, and we send a one-time link to that address. We store your email so we can authenticate you, send transactional messages, and contact you about your account. No password is ever set or stored.
When you create and edit your profile, we store the information you enter, including:
dialo.app/your-name)Anything you put on your profile is published on a public URL by default. Please do not upload information you do not want other people to see.
If you upgrade to Pro, payment is processed by Stripe. We do not see or store your card details. We receive and store a Stripe customer identifier, the email associated with your subscription, and the subscription status so we can grant or revoke Pro features.
If you send feedback through the app, we store the text you submit along with your user id, username, and email so we can follow up.
If a profile owner is a Pro subscriber, we collect a small amount of information about visits to that public page so the owner can see basic traffic stats. For each pageview or link click we record:
Each profile owner can only see analytics for their own profile. We do not collect analytics for non-Pro profiles.
Profile owners may enable an AI assistant that chats with visitors on their page to understand what the visitor wants and pass the message along. If a page you visit has the assistant enabled, the following information is sent to Anthropic, PBC to generate the assistant's replies:
We do not send the owner's private contact details (their email, phone, links, etc.) to the AI. The model used is currently Claude Haiku 4.5 from Anthropic; the model may change over time.
The following information is stored by Dialo (not by Anthropic):
When the assistant captures a lead, the page owner receives an email with the captured details. Conversations are subject to rate limits to prevent abuse (a single visitor can start at most a small number of new conversations with a given owner per calendar month).
If the assistant captures your email or phone number, we may send a one-time 6-digit code to that address or number so we can confirm it before passing the lead to the page owner. We store only a SHA-256 hash of the code (not the code itself), the number of attempts, and an expiry timestamp, and we delete code rows once they are consumed or expired. Signed-in Dialo users whose verified account email matches the captured email skip this step.
If a page owner has connected their Google Calendar to Dialo, the assistant can propose meeting times and book them. To do this we ask the owner to grant Dialo access to:
calendar.readonly), so the assistant only proposes times when the owner is actually freecalendar.events) when a visitor confirms a slotuserinfo.email) so we can show which Google account is connectedOAuth refresh and access tokens are encrypted at rest. If the owner disconnects the integration, the tokens are deleted. If you are a visitor who requests or books a meeting, we may email you to confirm the request, share alternative times the owner proposes, and let you accept or decline, and we manage that exchange through a private link that is unique to your conversation. The calendar event created on the owner's calendar will include the contact details you shared (such as your name and email).
If a page owner connects Gmail to Dialo, the owner can send replies to a captured lead directly from their own Gmail address through the app. To do this we ask the owner to grant the send-only Gmail scope (gmail.send) and their Google account email (userinfo.email). This scope only lets Dialo send a message that the owner composes and approves; it does not allow Dialo to read, search, modify, or delete anything in the owner's mailbox. We do not store the content of sent messages beyond the conversation record in the owner's Dialo inbox. If the owner disconnects Gmail, the stored tokens are deleted.
We use Resend to deliver transactional email (sign-in links, lead notification emails to owners, verification codes, meeting booking and proposal emails to visitors, and account-related messages). Product and marketing email is opt-in and you can change your preferences at any time.
We use Sentry to catch errors and Vercel Analytics and Speed Insights to understand how the site performs and how it is used in aggregate. These tools may receive information such as your IP address, browser, page URL, timestamps, and (for errors) a stack trace and breadcrumbs of recent actions. We use this only to keep the Service working.
Dialo's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
The Google user data Dialo accesses (calendar events and availability, the send-only Gmail capability, and your Google account email) is used only to provide and improve the features you turn on: proposing and booking meetings on your calendar, and sending replies you compose from your own address. Specifically, we do not:
You can revoke Dialo's access at any time by disconnecting the integration in your settings or from your Google Account permissions.
Dialo uses first-party cookies and similar local storage to keep you signed in (via Supabase's session cookies) and, on certain pages, to support Vercel Analytics and Speed Insights. We do not use third-party advertising cookies and we do not sell tracking data to advertisers.
We rely on a small number of vendors who process data on our behalf:
Each of these providers has its own privacy policy. We do not sell your personal information.
Your Dialo page can contain links you add to other services (for example Instagram, Twitter/X, Telegram, websites, mailto and tel links, crypto wallet addresses). When a visitor follows one of those links, they leave Dialo and become subject to the destination's own privacy practices, which we do not control.
Some features fetch information from public URLs you supply (for example, retrieving recent Instagram thumbnails for display). Those requests are made server-side from Dialo's infrastructure.
Depending on where you live, you may have additional rights under laws such as the GDPR (right of access, rectification, erasure, restriction, objection, portability) or the CCPA (right to know, delete, and opt out of sale). You can exercise any of these rights by writing to hello@dialo.app.
Dialo and its service providers operate in multiple regions. By using the Service you understand that your information may be stored and processed in countries other than the one where you live, including the United States and the European Union.
We use industry-standard measures to protect your data, including encryption in transit, row-level security in the database, signed session cookies, encrypted OAuth tokens at rest, and hashing rather than plaintext storage for short-lived verification codes. No system is completely secure; we cannot guarantee that unauthorised access will never occur.
We keep your account data for as long as your account is active. If you delete your account, we delete your profile and associated content within a reasonable period, except where retention is required by law or for legitimate business reasons such as billing records. Verification codes are deleted on consumption or expiry.
Dialo is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us with information, contact us and we will delete it.
We may update this Privacy Policy from time to time. When we do, we will change the "Last updated" date at the top of this page. Material changes will be announced via email or a notice in the app.
Questions, requests, or concerns about this policy? Email hello@dialo.app.