Privacy Policy
Last updated: July 13, 2026
This Privacy Policy explains how Kontaktly (“we”, “us”) collects, uses, stores, and protects information when businesses use our messaging platform to communicate with their customers across WhatsApp, Facebook Messenger, and Instagram. We act as a business messaging solution provider: our customers (businesses) connect their own messaging accounts, and we process messages on their behalf.
Information we collect
From businesses that use Kontaktly
- Account details: name, email address, and authentication credentials.
- Connected channel data: WhatsApp Business Account and phone number details, Facebook Page and Instagram Business account identifiers, and the access tokens needed to send and receive messages on your behalf.
- Billing and usage information related to your subscription and wallet.
From end customers (people who message a connected business)
- Contact identifiers such as phone number, WhatsApp/Instagram username, or profile name.
- Message content and media (text, images, documents, audio) exchanged with the connected business.
- Message metadata: timestamps, delivery and read status, and conversation history.
How we use information
- To deliver, route, and display messages between businesses and their customers.
- To provide shared-inbox, automation, template, and analytics features.
- To authenticate users, secure accounts, and prevent abuse.
- To operate billing and support, and to comply with legal obligations.
We do not sell personal data. We do not use Meta Platform data for advertising, and we use it only to provide and improve the messaging features you have connected.
Meta Platform data
Our use of information obtained through the WhatsApp Business Platform, Messenger Platform, and Instagram Platform complies with the Meta Platform Terms and Developer Policies. Access tokens and channel data are used solely to send and receive messages for the connecting business and are stored encrypted at rest.
Data storage and retention
- Application and account data is stored in managed databases hosted in Microsoft Azure.
- Media files are stored in object storage (Cloudflare R2). Message content is retained for as long as the connected business maintains its account, or until deletion is requested.
- We retain data only as long as necessary to provide the service or to meet legal, tax, and accounting requirements.
Sharing and subprocessors
We share data with infrastructure and service providers strictly to operate the platform, including Meta (message delivery), Microsoft Azure (hosting and AI), MongoDB Atlas, Cloudflare (storage and networking), and our payment and email providers. Each processes data only as needed to perform its function.
Your rights
Depending on your jurisdiction, you may have rights to access, correct, export, or delete your personal data. Businesses can manage connected accounts and contacts within the dashboard. To exercise any right, or to request deletion of data, see our Data Deletion instructions or contact us.
Security
We use TLS in transit, encryption at rest for secrets and tokens, tenant isolation, and access controls. No method of transmission or storage is completely secure, but we work to protect your information using industry-standard measures.
Contact
Questions about this policy or your data can be sent to apporio999@gmail.com.

