Data use
- What holds it
- Never trains a model, never shared across customers; knowledge bases bind to named workers, so visibility is configured, not global
- What you can inspect
- The clause · the bindingPrivacy §4
Three things up front: customer conversations never train a model; each region keeps its data in its own deployment; anything said in your name is still yours to answer for, so the red lines, guard rules, human takeover and replay stay in your hands.
None of this was written for this page. It is already in our Terms of Service and Privacy Policy.

No. Your data is not used to train or improve any machine learning model, and we do not pass it to model providers for their training. The review workbench runs on your own cases; nothing is shared across customers.
Terms §5 · Privacy §4
Terms §5Privacy §4It cannot deny it. Platform rules forbid an agent from impersonating a specific real person, or from denying it is an AI when an End User asks. Whether you must disclose upfront depends on your jurisdiction.
Terms §7
Terms §7Anything sent in your name is yours to answer for. You are the controller; we process on your instructions as a processor. So we give you the mechanisms that lower the risk, not a promise that nothing will.
Terms §6, §8 · Privacy §1
Terms §6, §8Privacy §1Anyone can write a promise. Each of these six rows points at something real in the product — open them one by one during the demo.
We did not pick this split. The law did: for your End Users’ personal information you are the controller, and we process on your instructions as a processor.
You · the controller
Us · the processor
Two sites, two independent deployments. Your data is processed and stored in the region matching the site you signed up on.
topppai.cn serves mainland China, and its data is stored in mainland China.
toppp.ai serves users outside mainland China, and its data is stored outside mainland China.
No personal information crosses the border. If this arrangement changes, we will tell you in advance and follow the procedure the Personal Information Protection Law requires.
Tenant and project are two layers of scope. Your knowledge, material, test cases and conversations sit in your own workspace, shared with no other customer. Privacy Policy §4 · §7
Two hard rules in the platform terms, plus the one that gets misread most.
An agent may not be configured to pose as a specific, real individual. It can hold a role and a name. It cannot be someone who exists.
If an End User asks whether they are talking to a bot, the agent may not deny that it is an AI. That is an acceptable-use rule, not a setting.
When a person takes over, it happens backstage and the customer keeps the same advisor. That protects continuity of service. It is not there to hide what the other side is. You can always see who holds a contact.
Whether you must disclose at the start of a conversation varies by jurisdiction. Yours governs.
Better said here than discovered halfway through a demo.
You cannot. For your End Users’ personal information the controller is you, and that role does not transfer to a platform. We give you mechanisms, not cover.
Platform rules forbid harassing, high-frequency or indiscriminate outreach, and contacting anyone who has asked you to stop.
Cheaper options exist. What custom buys you sits in follow-up and closing; on answering alone it never shows, and the price feels wrong.
They apply to us too. Copy them into your evaluation sheet and ask every vendor.

Will conversation data train a model? Get it in the contract, not in a sales call.
Which region holds the data, and are the deployments truly independent?
How is it proven safe before launch? Can you see per-assertion results, not one score?
What stops an over-authorised promise — wording in a prompt, or an entry rule?
Can you find which step failed, and confirm which configuration version was live?
No. TOPPP does not use Customer Data to train or improve any machine learning model, and does not pass it to model providers for their training. If that ever changes, TOPPP will tell you prominently before the change takes effect.
Yes. When you delete content, TOPPP removes it from production, and backup copies are cleared on the backup rotation cycle. After you close the account, account information is deleted or anonymised unless the law requires it kept.
No. TOPPP does not use your Customer Data to provide the Service to anyone other than you, and the review workbench runs on your own test cases and conversation records. You can ask TOPPP for the list of processors serving your account.
You. For End Users’ personal information you are the controller, so requests go to you; TOPPP acts as the processor and helps you answer on your instructions.
A demo runs about 30 minutes. The compliance half goes like this:
Contact business@toppp.ai