Rawasy Alitqan CRM

Rawasy Alitqan CRM

Privacy Policy

Last updated: 13 August 2026

This policy explains how the operator of this WhatsApp Business CRM (“we”, “us”) handles personal data when you visit the public website, request a company workspace, or use the product as a customer, agent, or administrator.

1. Who this policy covers

It applies to visitors of the public site, people who submit a company registration request, and users of a customer workspace (company admins and agents). Each customer company is a separate workspace. Customer conversation data belongs to that company and is not mixed with other companies.

2. Data we collect

Account and company data

Company name, admin name, work email, password (stored hashed), WhatsApp number with country code (used for verification and account notices), subscription and payment metadata entered by the platform administrator, and optional workspace branding such as colour preferences.

WhatsApp communications

Inbound and outbound WhatsApp messages (text, templates, images, audio, documents), contact records, conversation assignment and status, template content synced from Meta, campaign recipients and delivery status, and related logs needed to operate the inbox.

Product usage

Login sessions, agent activity needed for audit and collaboration, in-app notifications, and technical logs (for example IP address, browser type, and error diagnostics) to keep the service secure and available.

Website

The public site uses a session cookie to remember language (English or Arabic) and, if you sign in, to keep you logged in. We do not sell advertising profiles from this site.

3. How we use data

  • To create and review company registration requests, send a one-time WhatsApp verification code, and confirm that the request was received.
  • To operate the CRM: shared inbox, contacts, Meta-approved templates, campaigns, reports, and team settings for your workspace.
  • To send lifecycle WhatsApp notices configured by the platform administrator (OTP, registration received, subscription activation).
  • To connect your workspace to the WhatsApp Cloud API and, where you configure it, to automation webhooks such as n8n.
  • To provide support, security, billing of subscriptions by the platform administrator, and to meet legal obligations.

4. WhatsApp and Meta

Messages are sent and received through Meta’s WhatsApp Business Cloud API using credentials that each company (or the platform, for signup notices) provides. Meta processes those messages under Meta’s terms and WhatsApp Business policies. We do not control Meta’s systems. You must only use the product with numbers and contacts you are authorised to message.

5. Sharing

We do not sell personal data. We share it only as needed to run the service:

  • Meta / WhatsApp, to deliver and receive messages and templates.
  • Infrastructure providers you or the platform configure (for example the application host, database, and optional S3-compatible media storage).
  • Automation endpoints a company admin configures (n8n or similar webhooks).
  • Professional advisers or authorities when required by law or to protect the service.

Platform staff (super administrators) can access workspace configuration as needed to operate the SaaS (companies, subscriptions, storage, backups). They should not use customer chat content except to provide support or maintain the platform.

6. Retention

Account and company records are kept while the workspace is active and as required for subscriptions and legal records. Conversation media may be deleted automatically after a retention period set by the platform administrator, or kept until the company is removed. Backups, if enabled, follow the platform’s backup schedule. You may ask your company admin or the platform operator to delete data you no longer need, subject to legal holds.

7. Security

Passwords are hashed. WhatsApp tokens and similar secrets are stored encrypted where the product supports it. Access is limited by company workspace and role (super admin, company admin, agent). No method of transmission or storage is perfectly secure; please use strong passwords and keep API tokens private.

8. International processing

The service may be hosted in the region chosen by the platform operator. WhatsApp/Meta and optional cloud storage may process data in other countries. If you are in a region with data-transfer rules, the operator will use appropriate safeguards for those transfers.

9. Your rights

Depending on where you live, you may have rights to access, correct, delete, or export personal data, or to object to certain processing. Workspace users should start with their company administrator. Registration applicants and visitors can contact the platform operator using the details on this website. You may also lodge a complaint with your local data protection authority.

10. Children

The product is intended for business use. It is not directed at children, and we do not knowingly collect data from children for the public site or for company signup.

11. Changes

We may update this policy when the product or the law changes. The date at the top of this page will be revised. Material changes may also be announced in the product or by email to company admins.

12. Contact

For privacy questions about this platform, contact the operator of this website (the organisation that hosts the CRM). For questions about a specific company’s WhatsApp chats or contacts, contact that company’s administrator — that data is held in their workspace.