This page is the hub for Mortem AI Inc.'s public legal and policy documents. Specific commitments to customers are governed by their signed Master Service Agreement and incorporated Schedules. The documents below cover Mortem AI's general practices, the agreement that applies to website visitors and trial users, and the procedures customers are recommended to follow to maintain appropriate human oversight of the Services.
How Mortem AI collects, uses, retains, and protects personal information. Covers United States and Canadian privacy frameworks (PIPEDA, Alberta PIPA, Quebec Law 25) and our no-training commitment.
Read Privacy PolicyThe agreement governing use of mortemai.com, demos, and the Services where no signed Master Service Agreement is in place. Covers fees, AI output responsibility, acceptable use, and dispute resolution.
Read Terms of ServiceCurrent list of third-party service providers that process customer data on Mortem AI's behalf, with processing locations and purposes. Updated with 30-day advance notice of changes.
View Sub-processorsMortem AI's security programme, including encryption, access controls, vulnerability management, incident response, and our vulnerability disclosure programme for security researchers.
View SecurityThis section sets out the procedures Mortem AI recommends customers follow to maintain "adequate human oversight" of the Services, as referenced in customer Master Service Agreements (Article 11.2(c)(iii) and Schedule A Section A.4). These procedures support the AI risk allocation set out in customer agreements and are part of the framework against which the parties' respective responsibilities for AI Output are assessed.
Customer should designate one or more human representatives available during the customer's published business hours, capable of receiving escalations from Sarah AI and responding to End Users when Sarah hands off a conversation. Designated representatives should have authority to engage with families on matters Sarah is not authorised to handle (final pricing commitments, cremation authorisation, contractually binding statements, professional judgment calls).
Escalations from Sarah AI fall into two categories:
Sarah AI generates conversational Output using probabilistic large language model technology. Output may occasionally contain inaccuracies, outdated information, or content that does not reflect the customer's intended messaging. Customer is expected to:
Sarah AI identifies itself as an automated AI assistant at the start of every interaction (as required by California SB 1001 and Quebec Law 25). Customer should not represent the Services as a human service, should not disable or modify Sarah's AI disclosure, and should include appropriate AI disclosures in its own website terms and privacy policy.
Sarah AI is configured by default to decline to process Social Security numbers, financial account numbers, Protected Health Information, and cause-of-death information. Customer should not configure custom prompts or knowledge base content that requires Sarah to elicit or process these categories. Where a configuration appears to require processing of restricted data, customer should escalate to Provider at [email protected] before deployment.
Customer should keep the escalation contact information for each Location current. Where contacts change, customer should update the escalation list through the onboarding portal or by contacting [email protected]. Sarah's escalation routing depends on this list being accurate.
Customer is responsible for obtaining and maintaining all consents required for SMS, MMS, and email communication with End Users under TCPA, CAN-SPAM, CASL, and other applicable laws, including A2P 10DLC registration for US SMS. Mortem AI provides messaging infrastructure but is not the message sender for regulatory purposes.
As data controller for customer's End User data, customer is the first point of contact for End User privacy requests (access, correction, deletion, automated decision-making review). Customer should respond to such requests within applicable legal timeframes. Mortem AI provides reasonable assistance to customer in fulfilling these requests; contact [email protected] for processor-level assistance.
Updates to these procedures. These procedures may be updated from time to time. Material updates will be communicated to customers in advance through the channels specified in customer agreements. The version of these procedures in effect at the time of a given dispute is the version that applies, unless the customer agreement specifies otherwise.
For questions about any of the documents linked above, or about Mortem AI's legal or compliance practices generally:
Mortem AI Inc.
1717 Devney Drive
Altoona, Wisconsin 54720
United States
General: [email protected]
Privacy: [email protected]
Security: [email protected]