Skip to Content

Privacy Policy

This Privacy Policy explains how VisualFactory.io ("we", "us", "our") collects, uses, and protects information when you use our websites, products, and services—including interactions powered by the WhatsApp Business Platform ("WABP").

If you do not agree with this policy, please do not use our services.

1. Who we are

Data Controller: VisualFactory.io

Website: visualfactory.io

Email: sisystems.adm@gmail.com

Registered Address: Plot No. E-26 to E-29, MIDC, Satpur, Nashik-422007

2. Scope

This policy applies to:

  • Our websites, customer portals, and support channels.
  • Our integrations with Meta's WhatsApp Business Platform (Cloud API or On-Premise API).
  • Communications we send or receive via WhatsApp, email, or other channels.

3. Information we collect

Account & Business Data

  • Name, email, phone number, billing details, company name, and role.
  • Account credentials (hashed) and settings.
  • Support requests and feedback.

WhatsApp Interaction Data

  • WhatsApp phone numbers, profile names, message metadata (timestamps, delivery/read status, IDs).
  • Message content that you or your customers send to us or our systems, including media you choose to upload.
  • Template/message types, opt-in/opt-out status, and consent logs.

Note: WhatsApp provides end-to-end encryption between WhatsApp clients. Messages may be decrypted by Meta for delivery to the Business Platform and then delivered to our systems as necessary to provide the service you request.

Technical Data

  • IP address, device and browser information, app identifiers, language, and time zone.
  • Log data such as API calls, error reports, and diagnostics.
  • Cookies or similar technologies for session management and analytics.

We collect information you provide directly, information generated through your use of our services, and limited data from third parties (e.g., WhatsApp Business Platform or analytics providers) as permitted by their policies and applicable law.

4. How we use information

  • To provide, operate, and improve our services and WhatsApp integrations.
  • To send transactional messages, notifications, and service announcements.
  • To personalize content, templates, and user experience.
  • To monitor abuse, enforce terms, and ensure platform and policy compliance.
  • To meet legal, tax, accounting, and regulatory obligations.
  • With your consent, to send marketing communications (you may opt out at any time).

For WhatsApp: you can reply STOP to opt out of non‑transactional messages from a given business phone number.

5. Legal bases

Where required (e.g., under GDPR), we process data on the following bases:

  • Contract - to deliver services you request.
  • Legitimate interests - such as securing and improving our services.
  • Consent - for certain marketing or optional features.
  • Legal obligation - to comply with applicable laws and requests from authorities.

6. Sharing & processors

We do not sell personal data. We may share data with:

  • WhatsApp / Meta - as necessary to send/receive messages and manage templates via the WhatsApp Business Platform.
  • Telecom and routing providers - to deliver communications.
  • Cloud hosting, storage, analytics, and security vendors - as our data processors under contracts that protect personal data.
  • Professional advisors - auditors, lawyers, accountants.
  • Authorities - where required by law or to protect rights, safety, and security.

7. International transfers

We may process and store data in countries outside your own. Where required, we use appropriate safeguards such as standard contractual clauses or other lawful transfer mechanisms, and we ensure processors provide adequate protection.

8. Retention

We retain personal data only for as long as necessary for the purposes described in this policy or as required by law. WhatsApp message content and media may be retained according to your account settings and applicable laws; metadata and logs may be retained longer for security, fraud prevention, and compliance.

9. Security

We implement technical and organizational measures appropriate to the risk, including encryption in transit, access controls, monitoring, and employee training. No method of transmission or storage is 100% secure.

10. Your rights

You may have rights under data protection laws (e.g., GDPR, India's Digital Personal Data Protection Act):

  • Access, correction, deletion, and portability of your personal data.
  • Objection or restriction of processing in certain circumstances.
  • Withdrawal of consent where processing is based on consent.

To exercise rights, contact us at sisystems.adm@gmail.com. We may need to verify your identity.

11. Children

Our services are not directed to children under 13 (or the equivalent age in your jurisdiction), and we do not knowingly collect their data.

12. Cookies

We use strictly necessary cookies for security and session management, and (optionally) analytics cookies to improve our services. You can control cookies through your browser settings. See our Cookie Notice for details.

13. Changes to this policy

We may update this policy from time to time. Material changes will be posted on this page with an updated “Last updated” date. Continued use of our services after a change means you accept the updated policy.

14. Contact

For questions about this policy or our data practices, email sisystems.adm@gmail.com or write to Plot No. E-26 to E-29, MIDC, Satpur, Nashik-422007.

This Privacy Policy is for general informational purposes and is not legal advice. For legal guidance, consult your counsel.