Effective Date: January 1, 2026
This policy explains how BraveOkays ("BraveOkays," "we," "our," or "us") handles personal data. We run done-for-you B2B outbound, so we handle data in two different roles, and it matters which one applies.
We do not sell personal data, and we do not use your data to train generalised AI models.
To run outbound for a client we process business contact data about people at target companies — typically name, job title, employer, work email, work phone number, public professional profile information, and the record of our correspondence with them. Where we make outbound calls, we may record them, and we obtain consent to record where the relevant jurisdiction requires it.
We use that data only to run the client’s campaigns. We honour opt-out, unsubscribe and do-not-contact requests promptly and permanently, and we suppress those contacts across future campaigns. If you have been contacted by us on behalf of a client and want to know who that client is, be removed, or exercise any other right, email [email protected] and we will handle it and pass the request to the client.
Clients may enable Lead Catcher, which identifies the organisations visiting their website using IP-to-company lookup and first-party analytics. It is designed to identify companies, not named individuals, and clients are responsible for disclosing its use in their own privacy notice and for obtaining any consent their jurisdiction requires.
We share data only with service providers who help us deliver the service, under contract and only for that purpose. These fall into a few categories:
We may also disclose data where legally required, or in connection with a merger or acquisition, in which case we will tell affected clients.
Our providers may process data outside your country, including in the United States. Where data leaves the UK or EEA, we rely on appropriate safeguards such as the Standard Contractual Clauses or an adequacy decision.
We use encryption in transit, access controls, least-privilege access for our team, and vetted providers. No system is perfectly secure, but if a breach affects your personal data we will notify you and the relevant regulator as required by law.
Depending on where you live, you may have the right to access, correct, delete, restrict or object to our processing of your personal data, to data portability, to withdraw consent, and to complain to your data protection authority. To exercise any of these, email [email protected]. We respond within the period required by law, normally within 30 days, and we will not discriminate against you for exercising a right.
Our services are for business use and are not directed at anyone under 18. We do not knowingly collect data from children.
We will post any updates on this page and change the effective date above. If a change materially affects how we handle your data, we will tell affected clients directly.
Privacy questions, requests, or a data processing agreement: [email protected]. See also our Terms of Service and Cookie Policy.