TalamboEnglishEspañolРусский

Privacy policy

Last changed 24 September 2026.

Who is responsible

Talambo is run by Ivan Kulikov, in Valencia, Spain, who is responsible for the information described here under the EU General Data Protection Regulation (GDPR). Write to info@talambo.com about anything on this page.

What Talambo holds

For your account: an email address if you gave one, the language you chose, and whether the account is paid for.

For the phones you set up: the name you give each phone, usually a child's first name; the names you give the people on it; which key calls whom; and calling hours. And each phone's serial number and the credentials that connect it to the network.

For calls: who called whom, when, and how the call ended. Never what was said. Calls are not recorded, and nothing in Talambo can record one.

For the app: a token from Apple or Google that lets us wake the app when a call comes in, and the session that keeps you signed in.

When something breaks: crash reports from the app and from our server, which carry no name, email address or IP address. Our server also logs requests, including IP addresses, to keep the service secure and to find faults.

Why, and on what basis

To run the service you signed up for: connecting calls, applying the keys and hours you set, signing you in, and showing the call history in the app. That is the contract between us (GDPR article 6(1)(b)).

To keep it working and safe: crash reports, server logs, and limits on repeated attempts. That is our legitimate interest (article 6(1)(f)).

Nothing is used for advertising, nothing is sold, and nothing is used to build a profile of anyone.

Children

A child uses a Talambo phone but never gives Talambo anything. An adult sets the phone up, chooses its name and who it can call, and can see its call history. There is no account for a child, and a child is never asked for anything.

Who else it reaches

These companies handle information for us, only for the purpose given:

Hetzner, in Germany, runs our server and database, which hold everything above.

Resend, sending from Ireland, delivers the six-digit codes we email. It receives your email address and the code.

Zoho, in its EU data centre, holds any email you send us.

Sentry, in Germany, receives crash reports.

Stripe, in Ireland, takes payment on talambo.com. It holds your email address and payment details; we never see a card number.

Apple and Google deliver the notification that wakes the app for a call. A call notification carries no names. The notification that someone accepted your invitation carries two, and you typed both of them yourself.

Some of these companies are based in the United States. Where your information can reach them there, the transfer is covered by the EU–US Data Privacy Framework or by the European Commission's standard contractual clauses.

How long it is kept

Call records: 90 days, then deleted automatically.

Everything else about your account and phones: for as long as the account exists. Deleting the account removes all of it at once, call records included. Releasing a phone removes its name, its contacts and its call history.

Sentry deletes crash reports after a limited period. Stripe keeps payment records for as long as tax law requires. Server logs are not yet deleted on a schedule; setting that period is the next change to this page.

What you can ask for

You can ask for a copy of what we hold about you, for it to be corrected or deleted, for its use to be restricted or to object to it, and to receive it in a form you can take elsewhere. Deleting the account is in the app, under Settings, and on this site. Anything else is an email to info@talambo.com, and it will be answered within a month.

If you think we have got something wrong, you can complain to the Spanish data protection authority, the Agencia Española de Protección de Datos, at aepd.es.

Questions about either document go to info@talambo.com