1 Introduction

Welcome to Robotsky (accessible at https://robotsky.in). We provide multi-tenant business messaging, customer engagement tools, broadcast automation, and integrations with the official WhatsApp Business Platform via Meta Cloud APIs.

This Privacy Policy explains how Robotsky collects, uses, stores, processes, and protects personal information and Meta Platform Data when you register an account, utilize our customer communication platform, or connect WhatsApp Business API assets. We are committed to transparency, user privacy, and strict compliance with the Meta Platform Terms, Developer Policies, and applicable data protection regulations.

2 Information We Collect

We collect only the information necessary to provide, maintain, and secure our services:

  • Account & Registration Information: When you register as a vendor or user, we collect your name, business name, email address, phone number, password hash, and billing contact details.
  • Contact & Subscriber Data: Customer phone numbers, contact names, custom attributes, and tags uploaded or managed by vendors for authorized messaging campaigns.
  • Messaging & Interaction Content: Inbound and outbound message content, template names, broadcast schedules, message status timestamps, and media file references.
  • Technical & Log Data: Internet Protocol (IP) address, browser type, operating system, access timestamps, HTTP request headers, and error diagnostics.

3 Meta / WhatsApp Business Platform Data

Meta Platform API Integration Statement:

Robotsky may receive WhatsApp Business Platform data through Meta APIs, including WhatsApp Business Account metadata, connected phone number information, message templates, contact/message metadata, incoming messages, outgoing message status, delivery/read/failure webhook events, and related technical identifiers required to provide WhatsApp Business messaging services.

Tokens, app secrets and webhook verification values must be stored server-side only and never exposed in browser JavaScript.

In accordance with Meta Platform Terms and Developer Policies:

  • We use Meta Platform Data solely to facilitate authorized WhatsApp Business communications requested by registered vendors.
  • We do NOT sell, transfer, monetize, or license Meta Platform Data, customer contact lists, or message transcripts to third-party data brokers, advertising networks, or unauthorized entities.
  • We do NOT use message content or recipient phone numbers for unsolicited marketing or unauthorized profiling.
  • All Meta Graph API access tokens, System User tokens, and App Secrets are stored strictly server-side in encrypted form with strict access boundaries.

4 How We Use Data

We process collected data for the following specific and legitimate business purposes:

  • Service Delivery: Connecting vendor WhatsApp Business Accounts (WABA), submitting message templates for Meta review, executing authorized broadcasts, routing two-way customer chats, and processing real-time delivery webhooks.
  • Account Administration: Managing vendor subscriptions, authenticating logins, verifying vendor identities, and processing service invoices.
  • System Reliability & Diagnostics: Monitoring message throughput, analyzing webhook delivery events, investigating delivery failures, and preventing system abuse or unauthorized traffic.
  • Transactional Communication: Sending critical operational notices, security alerts, and customer support responses.

5 Data Sharing and Service Providers

We do not share your personal information or Meta Platform Data except under the following strict conditions:

  • Meta Platforms, Inc.: Message payloads, recipient phone numbers, and template parameters are transmitted directly to Meta WhatsApp Cloud API endpoints for message dispatch and status verification.
  • Infrastructure & Hosting Partners: Trusted enterprise cloud providers and database infrastructure partners that operate under strict non-disclosure, confidentiality, and data protection agreements.
  • Legal & Regulatory Compliance: When required by a valid court order, subpoena, enforceable governmental request, or applicable law to protect the legal rights, safety, and integrity of Robotsky and its users.

6 Security

Technical & Organizational Safeguards:

Robotsky employs defense-in-depth security standards to protect all data against unauthorized access, disclosure, alteration, and loss:

  • Encryption in Transit: All web and API traffic is encrypted using modern TLS 1.2 / TLS 1.3 cryptographic protocols.
  • Encryption at Rest & Secret Isolation: Sensitive credentials, database credentials, API access tokens, and webhook secrets are stored strictly on backend servers in protected storage and are never sent to client-side browser scripts.
  • Access Controls & Multi-Tenancy: Strict tenant isolation ensures each vendor can only view and manage their own contacts, templates, credentials, and message records.
  • Authentication Security: Password hashing using strong cryptographic functions (Bcrypt) and automated session timeout management.

7 Data Retention

We retain data only for as long as necessary to fulfill the purposes described in this Privacy Policy:

  • Active Accounts: Vendor account metadata, contact lists, and template configurations are retained for the duration of the active subscription.
  • Message Logs & Webhook Records: Operational message logs and delivery status events are retained for operational verification, reporting, and dispute resolution for a period of up to 180 days, after which they are systematically archived or purged.
  • Terminated Accounts: Upon account closure or termination, associated data is scheduled for secure deletion within 30 days, unless retention is required by statutory legal obligations.

8 User Rights and Deletion Requests

Depending on your jurisdiction and under applicable data protection laws, you have the following rights regarding your personal information:

  • Right to Access: You may request a copy of the personal data we hold about you.
  • Right to Rectification: You may update or correct inaccurate profile or business information via your vendor dashboard.
  • Right to Erasure (Data Deletion): You may request the permanent deletion of your account, contact lists, WhatsApp credentials, and message history.

Data Deletion Request Procedure:

To request permanent deletion of your account and associated Meta/WhatsApp platform data, email our data protection team at support@robotsky.in with the subject line "Data Deletion Request" from your registered account email address. Requests are validated and completed within 30 days, followed by written confirmation of data erasure.

9 Cookies

Robotsky uses essential session cookies and functional tokens to maintain secure user authentication, protect against Cross-Site Request Forgery (CSRF), and remember interface preferences. We do not employ third-party behavioral advertising cookies or cross-site tracking trackers.

11 Changes to Policy

We may update this Privacy Policy from time to time to reflect operational updates, technological advancements, or changes in legal and Meta Platform requirements. Any updates will be published directly on this page with an updated "Last updated" date. Continued use of Robotsky services following the posting of revisions constitutes acceptance of the updated policy.

12 Contact Us

If you have any questions, concerns, feedback, or data privacy inquiries regarding this Privacy Policy or our Meta API data practices, please contact our support team:

Last updated: August 2026