Legal
Privacy policy
Here we explain what data msgflash processes, why it is used, and which security and transparency safeguards apply.
Last updated: March 28, 2026
At msgflash, we take the protection of your personal data seriously. This policy explains what we collect, why it is processed, and how it is protected.
1. Introduction
msgflash is committed to protecting user privacy and handling personal data transparently, in accordance with the GDPR and applicable local laws.
This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our platform.
2. Data collected
We collect the following categories of data:
Identification data
— Full name, email address, phone number
— Profile information (company name, industry)
Login and usage data
— IP address, browser type, operating system
— Visited pages, used features, login timestamps
Billing data
— Payment information (processed and secured by our payment providers)
— Transaction and subscription history
Business data (generated by your usage)
— WhatsApp contacts, sent and received messages, message templates
— API logs, webhook events, campaign statistics
3. Purposes of processing
Your data is processed for the following purposes:
— Providing and improving our services
— Managing your account and subscription
— Customer support and responding to requests
— Billing and fraud prevention
— Sending account-related communications
— Aggregated statistical analysis to improve the platform
— Compliance with legal and regulatory obligations
We never sell your personal data to third parties.
4. Legal basis
We process your data based on the following legal grounds:
Performance of a contract, legitimate interests, consent, and legal obligation.
5. Data retention
We retain your personal data as long as necessary for the purposes described above.
— Account data: kept for the duration of your subscription + 30 days after termination
— Logs and usage data: rolling 12 months
— Billing data: 7 years
— Support data: 3 years from ticket closure
6. Data sharing
We may share your data with service providers, infrastructure partners such as Meta / WhatsApp for official routing, and competent authorities when legally required.
We require all processors to provide contractual safeguards equivalent to ours regarding data protection.
7. International transfers
Your data may be processed in countries outside your country of residence. In such cases, we ensure that appropriate safeguards are in place to provide an adequate level of protection.
8. Data security
We implement appropriate technical and organizational measures to protect your data from unauthorized access, loss, destruction, or alteration.
If a data breach is likely to affect your rights, we will notify you within the legally required timeframe.
9. Your rights
You have the rights of access, rectification, erasure, restriction, portability, objection, and withdrawal of consent.
To exercise these rights, contact us at: support@msgflash.com
10. Cookies
We use cookies and similar technologies to operate our platform and improve your experience.
Essential cookies are always active; analytics cookies are subject to your consent.
11. Policy changes
We may update this Privacy Policy to reflect changes in our practices or regulatory requirements.
If the changes are material, we will notify you by email or in-app notification.
12. Contact and complaints
Email: support@msgflash.com
Contact form: msgflash.com/contact
If you believe your data processing rights are being violated, you have the right to lodge a complaint with the competent authority.