OrderBOT processes data from both merchants using our console and customer communications sent via WhatsApp. The types of personal data collected include:
We process your data strictly to deliver and maintain the OrderBOT services, specifically to:
We implement strict security practices to keep your data secure. All communications between WhatsApp servers, our backend, and your e-commerce platforms are encrypted in transit using TLS 1.3. Merchant database credentials and API keys are stored with advanced encryption at rest. Credit card transactions are processed entirely through secure, PCI-DSS compliant providers (like Stripe or Razorpay)—we never record or store full card details on our servers.
We do not sell merchant or customer data to third-party advertisers. Data is shared only with Meta Platforms Inc. (to route messages via the official WhatsApp Business Cloud API) and your configured third-party integrations (e.g. payment processors, booking calendar APIs, shipping carriers, or CRM databases). These services process data independently based on their own policies.
Conversation logs and customer details are retained in our database only for as long as necessary to process orders and support merchant analytical dashboards. Merchants can configure retention thresholds in their setting panels or request complete deletion of active logs at any time.
Under local privacy regulations, end customers have the right to request access to, correction of, or deletion of their personal data processed during conversational sales. End users should direct these requests to the merchant business, which can execute deletions within the OrderBOT Console.