01Overview & scope
This Privacy Policy describes how WappNove ("we," "our," or "us") collects, uses, stores, and protects personal data and business communication metadata when you interact with our WhatsApp marketing, automated broadcasting, and analytics web application.
02Information we access & collect
To facilitate WhatsApp campaign creation, scheduling, template dispatches, and real-time delivery webhooks, we collect only the necessary credentials and contact list details:
- Meta API Configuration & Credentials: WhatsApp Business Account ID (WABA ID), Phone Number ID, Permanent/System User Access Tokens, App Secret, and Webhook Verification Tokens.
- Audience Contact Lists: Recipient phone numbers, names, and custom template variables uploaded via CSV or managed through audience groups.
- Message Logs & Telemetry: WhatsApp message template names, language codes, dispatch timestamps, delivery status receipts (Sent, Delivered, Read, Failed), and quick reply responses.
- Technical Logs & Authentication: User email addresses, account preferences, IP addresses, and standard HTTP session cookies required for portal login.
03How we use your information
We process collected data strictly for operational and communication service delivery:
- Dispatching template messages through the official Meta WhatsApp Cloud API (
graph.facebook.com). - Executing scheduled broadcast campaigns at designated dates and times.
- Processing incoming webhook notifications for real-time delivery receipts and customer replies.
- Generating campaign performance analytics, PDF reports, and telemetry exports.
- Ensuring security, preventing fraudulent activity, and verifying account authorization.
04Data storage, security & encryption
We implement robust administrative, technical, and physical security measures to safeguard data against unauthorized access, disclosure, or loss:
- All data transferred between your browser, our application servers, and Meta's Graph API is encrypted in transit using TLS 1.3/SSL Encryption.
- Database tables enforce strict Row-Level Security (RLS) policies and encrypted authentication sessions.
- Access Tokens and sensitive API credentials are stored securely and used exclusively to authenticate Meta Graph API calls.
06Data retention & user data deletion procedure
We retain campaign telemetry and contact lists only for as long as your account remains active or as needed to provide broadcast service records:
How to delete your data:
- In-App Deletion: You can delete any campaign, recipient group, or connection configuration instantly through the application interface. Deleting a campaign permanently removes all associated recipient logs.
- Account Data Wiping Request: To request complete account termination and permanent deletion of all stored API keys, templates, and contact history, send us a message through our contact form starting with "Data Deletion Request".
Upon receiving a verified deletion request, all personal data, API tokens, and contact lists associated with your account will be permanently purged from our active databases within 48 hours.
07Compliance & opt-in consent requirements
As a WappNove platform user, you are responsible for maintaining compliance with applicable privacy laws (such as GDPR, CCPA, and IT Act rules). You must ensure that all recipients included in your broadcast lists have explicitly opted in to receive WhatsApp communications from your business.
08Contact information
If you have questions, concerns, or data protection inquiries regarding this Privacy Policy, please contact our privacy compliance team: