Security
You are an unknown brand's customer handing over your customer database. You are entitled to know exactly what happens to it. This page is the answer.
Encryption
Every connection to the platform runs over TLS. Contact data and message content are encrypted at rest in the database and in backups.
Who can see a contact list
Your team, with the permissions you set. On our side, the small number of engineers who maintain the platform, and only when you raise a support request that requires it. Every one of those accesses is logged, and you can ask us for that log.
Third parties
The complete list, not a representative sample.
- Meta, because your messages travel over the WhatsApp Business API.
- Our cloud infrastructure provider, where the platform runs.
- Your payment gateway, if you connect one.
Reports and documents
Files sent through the platform go behind links that expire, rather than as attachments that live forever in a forwarded chat. That matters most for clinics and professional firms, and it is on by default for everyone.
Export and deletion
Ask and we export everything you have: contacts, chats, templates and reports, in formats you can open. Ask us to delete and we delete within 30 days, and from backups on the next cycle. No charge, no form.
Reporting a vulnerability
If you have found something, message us on WhatsApp or email us and we will reply the same day. We will not threaten you, and we will credit you if you want the credit.
Something here unclear?
Ask and we will explain it in plain words rather than point you at a clause. If we cannot explain it plainly, that is a sign the clause is wrong and we will change it.