Data & privacy

Straight answers about where your business's data lives, who can see it, and what we will never do with it.

Your business gets its own locked room

Every business on Johnny's A.I. Staff has its own isolated data space. Every request is checked against your login session, and a request for another business's data is refused by name. Our deploy pipeline runs hundreds of automated cross-tenant checks before any update ships.

Everything fails closed

If a feature isn't part of your plan, isn't configured, or a payment lapses, the system shows an honest refusal — never a guess, and never someone else's data.

Your card never touches our systems

Checkout and billing run entirely on Stripe's secure pages. We never see or store card numbers.

Tamper-evident records

Logins, exports, and published content are written to hash-chained ledgers, so history can't be quietly rewritten.

Your data stays yours

We don't sell personal information, we don't run ad trackers on the sites we build, and we don't use your business's data to train AI models. You can request a full export of your data at any time.

Where it runs

The service is hosted in the United States on Railway, with websites served by Cloudflare. Payments: Stripe. Phone calls: Twilio. Voice AI: Vapi. AI text: OpenAI and Anthropic. Calendar: Google (only if you connect your calendar). Social posting: bundle.social. Each partner processes data only to run the service.

Calendar access you control

If you connect Google Calendar, we store only the tokens needed to check your availability and book the appointments you approve. Those tokens are encrypted at rest, held in a separate locked store outside your business's data space, tied to your business alone — and you can disconnect at any time from your CEO page.

Gates before every deploy

Every protection on this page is enforced by an automated test suite that runs before the app will even start. If a check fails, the update refuses to ship.