CONTROLLED EARLY ACCESS RELEASE — Authorized Test Users OnlyRequest access
Communications

SMS Consent & Communications Policy

How Sirat Bridge collects consent, sends operational and AI-assisted messages, and protects communication preferences across all tenant workspaces.

Last updated: September 3, 2026Version: 1.4.0

Business contact

Sirat Bridge LLC
18429 Veterans Memorial Drive E, Bonney Lake, WA 98392 · Mailing: P.O. Box 7024, Bonney Lake, WA 98391
Phone: (253) 386-3355 · Monday – Friday, 8:00 AM – 5:00 PM Pacific Time
Support: support@siratbridge.net · Compliance: compliance@siratbridge.net

Program description

Sirat Bridge uses SMS, voice, and email messaging to deliver operational notifications, workflow status updates, security alerts, onboarding invitations, and platform announcements to registered tenant users and, where a Tenant Organization enables it, to that organization's customers. Availability of each channel depends on tenant configuration, enabled modules and provider integrations. Consent-based outreach requires consent captured by the Tenant Organization; transactional, service, invitation, security and legally required messages are sent as part of providing the service to individuals with an existing relationship with a Tenant Organization.

Platform Provider vs Tenant Organization responsibilities

Sirat Bridge LLC ("Platform Provider") operates the managed messaging service, including tenant-aware configuration, orchestration of connected communications providers, and audit logging. Carrier connectivity and message delivery are supplied by third-party providers. Where calling-window, do-not-contact suppression or similar controls are configured for a tenant, they are applied as configured. Each "Tenant Organization" controls the recipient list, consent capture, message content, and lawful basis for outreach.

How we obtain consent

  • Users opt in by providing a phone number during tenant onboarding or invitation acceptance
  • Customers opt in through explicit agreement at the point of collection by the Tenant Organization
  • Consent is recorded in the tenant's organization scope and can be reviewed by tenant administrators
  • Promotional messages require separate, clear opt-in consent

Message types and frequency

  • Operational updates: workflow status changes, delivery confirmations, document requests, task assignments
  • Security alerts: sign-in notifications, MFA prompts, suspicious activity warnings
  • Onboarding: invitation codes, setup reminders, welcome messages
  • Notices: scheduled maintenance, policy updates, compliance announcements

Message frequency varies by tenant configuration and activity. Automated alerts are triggered by platform events rather than marketing campaigns.

Automated & AI-assisted communications

Some outbound voice and SMS communications may be generated or assisted by automated systems and AI assistants operated on behalf of a Tenant Organization. When you interact with such a system:

  • You will be informed that you are interacting with an automated system where this is configured and where required by law
  • Where human escalation is configured by the Tenant Organization, you may request a human representative
  • Replying STOP registers an opt-out for non-essential messaging on the connected messaging path
  • Voice calls may be recorded and transcribed where configured and permitted by law; retention is described in the Privacy Policy

Opt out

Reply STOP to any message to opt out at any time. Customer recipients may also contact the Tenant Organization directly to request removal. After opting out, you may receive a single confirmation message, and further non-essential SMS on that path stops unless you opt in again. Essential service, security and legally required notices may still be sent where permitted by law.

Help and support

Reply HELP to any message for assistance, or contact support@siratbridge.net. For record-specific questions, contact the Tenant Organization that manages your record.

Carriers supported

Messages are delivered via major U.S. and international carriers through Twilio. Supported carriers include AT&T, Verizon, T-Mobile, and their respective subsidiaries and MVNOs. Delivery is not guaranteed on all networks and may be subject to carrier filtering or delays.

Message and data rates

Message and data rates may apply depending on your carrier and plan. Sirat Bridge does not charge recipients for incoming SMS. Check with your wireless provider for details.

Privacy and data handling

Phone numbers are scoped to the Tenant Organization that collected them and protected by the platform's access controls, including database Row-Level Security policies where applicable. We do not sell phone numbers, and we do not share them with third parties for marketing purposes; numbers are shared with connected communications providers only to deliver messages. Full details are available in our Privacy Policy.

Data Subject Rights

Recipients may request access to, correction of, or deletion of their phone number and associated communication records, subject to applicable law. Direct requests to the originating Tenant Organization or to privacy@siratbridge.net. See the Privacy Policy for the full rights catalog.

Data Retention & Deletion

Communications records, recordings and transcripts are retained for as long as reasonably necessary to provide and secure the service and to meet legal and contractual requirements. Periods vary by category, tenant configuration and provider arrangements, and a formal published retention schedule is a planned governance deliverable. Opt-out and suppression records are retained for as long as needed to honour the opt-out. See the Privacy Policy.

Governance & Compliance

The messaging program is designed to operate consistently with applicable legal, carrier and industry requirements, including the TCPA, CTIA Messaging Principles & Best Practices and carrier 10DLC registration requirements. These are obligations that inform configuration and tenant responsibilities; they are not certifications.

Where do-not-contact suppression, calling-window restrictions, webhook signature verification or rate limits are configured for a tenant or a connected provider, they are applied as configured. MFA, append-only audit logging and least-privilege access apply to administrative messaging controls. Security practices are informed by frameworks such as SOC 2, the NIST Cybersecurity Framework and CIS Controls; Sirat Bridge is not certified or attested against them.

Report a Vulnerability

Security disclosures related to the messaging stack: security@siratbridge.net. Compliance questions: compliance@siratbridge.net.

Liability disclaimer

Sirat Bridge is not liable for delayed or undelivered messages caused by carrier issues, network unavailability, or incorrect phone numbers provided by users or tenants. Platform messaging is provided on a best-effort basis as part of the operational service.

For questions about this policy, contact compliance@siratbridge.net or visit our Contact page.