VybeFlowby vyber.id

Legal

WhatsApp Data Policy

A document specifically about data flowing through the WhatsApp Business Platform: what we receive from Meta, what it is used for, how long it is kept, and how customers stop receiving messages.

Effective 6 September 2026 Version 1.0 PT Horizon Vyber Nusantara
Contents

Contents

  1. Scope
  2. Who plays which role
  3. What we receive
  4. What it is used for
  5. The 24-hour window and templates
  6. How to stop receiving messages
  7. Storage and retention
  8. Who the data is shared with
  9. Deletion requests
  10. Compliance with Meta's policies
  11. Contacting us

1. Scope

This document supplements the Privacy Policy and applies specifically to data received, processed and sent through the WhatsApp Business Platform (Cloud API) operated by Meta Platforms, Inc.

It applies when a business connects its WhatsApp Business number to VybeFlow, and when someone sends a message to that number.

VybeFlow does not use QR-scanning gateways and does not take over anyone's personal WhatsApp session. Numbers are registered through Embedded Signup using the relevant business's own Facebook Business account.

2. Who plays which role

PartyRole
Meta Platforms, Inc.Owner and operator of the WhatsApp Business Platform. Meta delivers and receives messages, approves templates, sets quality ratings, and sets the daily conversation limit.
PT Horizon Vyber Nusantara (VybeFlow)
formerly PT Vyber Asia Cloud
Independent Tech Provider. We connect a business number to the Cloud API, present conversations in the console, and process their contents on that business's instructions. We are not a Meta affiliate.
The business owning the numberData controller for the conversations with its customers. That business decides who is contacted, what is sent, and how long it is kept.
The customerThe person sending messages to, or receiving them from, that business number.

If you are a customer and want to know how your messages are handled, or want your data deleted, contact the business you were messaging. They are the controller; we process on their instructions.

3. What we receive

When someone messages a WhatsApp Business number connected to VybeFlow, we receive from Meta:

We do not receive and cannot access: the customer's contact list, their conversations with anyone else, or any WhatsApp history outside the conversation with that business number. The WhatsApp Business Platform gives nobody such access.

4. What it is used for

Data received through WhatsApp is not used for advertising, not sold, and not used to train AI models.

5. The 24-hour window and templates

These rules come from Meta, not from us, and we cannot relax them.

6. How to stop receiving messages

A customer can stop receiving messages from a business at any time, by any of these means:

Businesses using VybeFlow must honour opt-out requests and stop sending marketing messages to that number. This duty is also stated in Terms & Conditions section 5, and breaching it can lead to account suspension here and to action by Meta against the number itself.

7. Storage and retention

Conversation contents are stored in the relevant business's account for as long as that account is active, because that history is what lets an agent recognise a returning customer and lets tickets be traced.

Note that Meta also processes and retains message data under its own policies, independently of what we keep.

8. Who the data is shared with

Data received through WhatsApp is shared only with: Meta Platforms, Inc. (as the platform operator), AI model providers when an automatic reply is generated, and the infrastructure providers the Service runs on. The full subprocessor list is in Privacy Policy section 7.

We may disclose data where required by law or a valid court order.

9. Deletion requests

If you are a customer and want your conversation deleted, ask the business you were messaging — they are the controller and can delete it directly from the console. If you get no response, you may contact us at the address in section 11 and we will pass the request on to that business.

If you are a business wanting to delete all of your account data, follow the procedure in Privacy Policy section 11.

To revoke app access from your Facebook account: Settings & privacy → Settings → Apps and websites, then remove VybeFlow. Revoking access stops new data from flowing but does not delete data already stored.

10. Compliance with Meta's policies

Use of the WhatsApp Business Platform through VybeFlow is subject to Meta's policies, including the WhatsApp Business Messaging Policy and the WhatsApp Business Solution Terms. Meta may change those policies at any time, and such changes apply regardless of what this document says.

VybeFlow is an independent Tech Provider. We are not affiliated with, endorsed by, or sponsored by Meta Platforms, Inc. WhatsApp, Instagram and Meta are trademarks of Meta Platforms, Inc.

11. Contacting us

PT Horizon Vyber Nusantara
Plosokuning 5 RT 25, RW 10
Kel. Minomartani, Kec. Ngaglik
Sleman, Special Region of Yogyakarta 55581
Indonesia
Email: admin@vyber.id