Privacy Policy - ippi Softphone
Last updated: 29 June 2026
This privacy policy explains how the ippi Softphone application (the “App”) processes your personal data. The Company cares deeply about protecting your privacy and limits data collection to what is strictly necessary for the App to function.
1. Data controller
The App is published by ippi / Worldline Communication (the “Company”).
– Address: ippi – Worldline Communication, 128 rue La Boétie, 75008 Paris, France
– Privacy contact: privacy@ippi.com
2. Data collected
2.1. Account identifier (SIP login)
To sign in and place/receive calls, you enter your ippi account credentials. Your login (identifier) is sent to the Company’s servers for SIP registration and to enable call notifications.
2.2. Notification token (VoIP push)
To alert you to incoming calls even when the App is in the background or closed, the Company sends its servers a push notification token that is specific to your device and associated with your identifier.
2.3. Diagnostic data and crash reports
To improve the App’s stability, the Company uses Firebase Crashlytics (provided by Google), which collects, in the event of a malfunction:
– crash data (stack trace, device model, iOS version, app version);
– diagnostic data about the state of the app at the time of the incident (e.g. SIP connection state, call state, audio output route);
– an identifier corresponding to your SIP login, in order to link a report to an account for support purposes.
This data is linked to your identity but is never used for advertising or tracking.
2.4. Data that stays on your device
The following data does not leave your device and is not transmitted to the Company:
– Your contacts: read only to display the names of your correspondents. No contact is uploaded.
– Your password: stored securely in the iOS Keychain. It is never transmitted in clear text; only a cryptographic hash is used to authenticate notifications.
2.5. Call data
The numbers you dial and the content of your calls pass through the Company’s servers only to route the communication (like a telephone carrier). Signaling (TLS) and, optionally, media (SRTP) are encrypted in transit between the App and the Company’s servers. This is transport encryption, not end-to-end encryption between correspondents.
2.6. Call records (server-side)
As an operator, the Company keeps call records (date, duration, calling/called numbers) on its servers, as necessary to provide the service, for billing, and to comply with its legal retention obligations.
3. Purposes and legal bases (GDPR)
| Data | Purpose | Legal basis |
|---|---|---|
| Account identifier | SIP registration, placing/receiving calls | Performance of a contract |
| Notification token | Notifying incoming calls | Performance of a contract |
| Diagnostic / crash data | App stability and quality | Legitimate interest |
| Call records (server-side) | Service provision, billing, legal retention | Performance of a contract / Legal obligation |
The Company performs no advertising tracking, displays no advertising, and sells no data.
4. Sharing with third parties
Google (Firebase Crashlytics): processes, on the Company’s behalf, the crash and diagnostic data described in section 2.3. See Google’s privacy policy: https://firebase.google.com/support/privacy
The Company does not share your data with any other third party.
5. Transfers outside the European Union
Diagnostic data processed by Google may be transferred outside the European Union. Such transfers are governed by the appropriate safeguards provided for by the GDPR (standard contractual clauses).
6. Data retention
– Identifier and notification token: kept for as long as your account is active / notifications are enabled. The token is deleted from the Company’s servers when you disable notifications or sign out.
– Crash data: kept for a limited period by Firebase Crashlytics (generally 90 days).
– Call records (server-side): kept in accordance with the legal retention obligations applicable to electronic communications operators.
– Local data (contacts): kept on your device until you delete it or uninstall the App.
7. Security
– SIP signaling encrypted via TLS between the App and the Company’s servers.
– Optional media encryption via SRTP between the App and the Company’s servers.
– Credentials stored in the iOS Keychain.
8. Your rights
In accordance with the GDPR, you have the rights of access, rectification, erasure, restriction, objection and portability regarding your personal data. To exercise them, contact the Company at: privacy@ippi.com (or by post: ippi – Worldline Communication, 128 rue La Boétie, 75008 Paris, France).
You may also lodge a complaint with the CNIL (the French data protection authority, www.cnil.fr).
9. Children’s data
The App is not intended for persons under the age of 16, and the Company does not knowingly collect their data.
10. Changes
The Company may update this policy. Any change will be published on this page with a new “last updated” date.
11. Contact
For any question regarding this privacy policy: privacy@ippi.com