Recovery Console — Dorsey-Worx LLC

Data residency, retention & sub-processors

This page summarizes where Recovery Console stores customer data, how long it's kept, and which third parties process it. Pair with the security policy for incident-response commitments and the data-export endpoint (Settings → Privacy & data controls) for a copy of your account's data on demand.

Data residency

All customer data is stored in AWS US East 1 (Northern Virginia). Recovery Console is a US-only product at this time — we don't sign up customers outside the US, and we don't replicate data across regions. If you're an EU or UK organization you should not adopt Recovery Console for production use until we offer EU residency (no current ETA).

Per-table retention

Default retention windows. Customers can request earlier deletion via Settings → Privacy & data controls.

Data categoryRetentionNotes
Account profile, members, settings For the life of the account Deleted on account closure (CCPA §1798.105 cascade).
Jobs, leads, estimates, dispatches For the life of the account Recovery operations history.
Conversations (SMS / voicemail) For the life of the account Twilio retains call recordings independently — see Twilio's policy.
Authentication sessions 14 days from last use Expired sessions auto-purged.
Audit log 1 year Login, password change, role change, member CRUD, data export.
Email-verification & password-reset tokens Until used, expired, or 7 days One-time use; cleared on consume.
Rate-limit counters, ephemeral state Window-bounded (15 min – 1 hour) Stored in Redis where present; lost on rotation.
Backups 30 days Encrypted (AES-256-GCM) in AWS S3, daily snapshots.
CloudWatch & structured logs 30 days Operational logs; no full request bodies retained.

Sub-processors

We share customer data only with the following sub-processors, each bound by their own enterprise data-processing terms:

VendorPurposeRegion
Amazon Web Services Application hosting, RDS, S3, ECS, Secrets Manager, CloudWatch. us-east-1
Twilio Outbound + inbound SMS, voice, recordings. US
Resend Transactional email (welcome, password-reset, verification). US
ServiceTitan Field-service-management integration (OAuth2; opt-in per customer). US
Sentry Error monitoring; PII scrubbed before submission. US
Anthropic LLM inference for call-intelligence summarization (opt-in per customer). US

We don't share data with marketing analytics vendors, advertising networks, or data brokers.

Customer rights

Changes to this policy

Material changes (new sub-processor, new region, longer retention) are announced via the in-product banner and email at least 30 days before they take effect. The latest version is always at this URL.

Last updated: 2026-04-27. This policy may evolve; check this URL for the current version.