Privacy, without the fine-print fog.
This policy describes how Wapp, operated by Technanosoft (“Wapp”, “we”, “us”), processes information when businesses use our website, portal, APIs, and WhatsApp Business Platform integrations.
01 Scope and roles
This policy applies to Wapp’s public website, account portal, developer APIs, support interactions, and Meta/WhatsApp integrations. It does not govern Meta, WhatsApp, or a customer’s own privacy practices.
For account, billing, security, and product analytics data, Technanosoft generally acts as controller. When a business uses Wapp to send or receive WhatsApp messages, that business determines the purpose of processing and normally acts as controller; Wapp acts as its service provider or processor.
02 Information we handle
Account and workspace information
Name, business email, company name, country, workspace membership and role, authentication records, plan, invoices, and support communications.
Meta and WhatsApp Business information
When you authorize Meta Embedded Signup, we receive identifiers and metadata for the selected Meta business portfolio, WhatsApp Business Account, phone numbers, display names, quality and verification status, templates, and authorization status. We exchange the one-time authorization code server-side and store the resulting workspace token encrypted at rest. We do not receive your Meta password.
Messaging and integration information
Recipient phone numbers, message type, template name, delivery status, Meta message identifiers, timestamps, error details, API-key metadata, webhook URLs and delivery results, usage counts, and related audit events. API and webhook secrets are either hashed or protected and are not displayed again after issuance.
Website and technical information
IP address, browser and device information, request metadata, security events, and operational logs may be processed by our infrastructure to deliver and protect the service. We do not sell personal information or use WhatsApp message data for third-party advertising.
03 How and why we use information
- Provide, authenticate, operate, and improve Wapp.
- Connect authorized WhatsApp Business assets, register phone numbers, manage templates, send requested messages, and process delivery webhooks.
- Maintain tenant isolation, prevent fraud and abuse, investigate incidents, and enforce service limits.
- Measure usage, administer subscriptions and billing, answer support requests, and communicate material service changes.
- Comply with applicable law, valid legal process, and Meta Platform and WhatsApp Business requirements.
Depending on location and context, our legal bases may include performance of a contract, legitimate interests in operating and securing the service, consent where required, and compliance with legal obligations.
05 Security and international processing
We use safeguards designed for the sensitivity of the information, including tenant-scoped authorization, encrypted Meta tokens, hashed credentials, restricted production configuration, signed webhooks, and transport encryption. No system is completely secure, and customers remain responsible for protecting their credentials and configuring authorized recipients.
Wapp and its providers may process information in countries other than yours. Where required, we use contractual or other recognized safeguards for international transfers.
06 Retention
We retain account and operational information while a workspace is active and afterward only as reasonably needed for security, dispute resolution, legal compliance, backups, or legitimate business records. Retention varies by record type and customer instructions. Expired or revoked Meta credentials are disabled; verified Meta deletion callbacks remove connected Meta assets and associated messaging records from the active workspace.
07 Your choices and rights
Depending on applicable law, you may request access, correction, portability, restriction, objection, or deletion of personal information. Workspace administrators can also disconnect Meta integrations and control API keys and webhooks. To request deletion, follow our data-deletion instructions or contact us. We may verify identity and authority before acting.
Wapp is intended for business users aged 18 or older and is not directed to children.
08 Changes
We may update this policy as the service, law, or third-party platform requirements change. We will revise the effective date and provide additional notice when a change is material.
09 Contact
For privacy questions or requests, email krishan.technanosoft@gmail.com. Include “Wapp privacy request” and the business email associated with your workspace. Do not send passwords, API secrets, or message content by email.