1. Who we are
Adasify (“we”, “us”) provides a marketing and sales back office for businesses: email campaigns, a WhatsApp inbox, social media publishing, lead capture, website analytics, invoicing and task management, plus free tools on our website. This policy covers our website, the Adasify web and installed apps, and our integrations with Meta, Google and LinkedIn.
2. Information we collect
- Account information: your name, email address, password (stored only as a one-way hash), profile photo, and the companies and roles you belong to.
- Workspace content: what you and your team create in Adasify, such as campaigns, templates, posts, tasks, notes, invoices and settings.
- Data you bring about other people: contacts, leads, email lists, WhatsApp conversations and invoice clients that your company uploads, imports or receives.
- Data from platforms you connect: described in sections 3 to 5.
- Forms on our website: what you submit in a trial request, contact form or comment (for example name, email, phone, company).
- Usage and device data: IP address, browser, pages visited and actions taken, collected through server logs, cookies and Google Analytics, to run, secure and improve the service. Email campaigns may record opens and clicks for the sending company.
- Cookies: a session cookie keeps you signed in; analytics cookies measure use of our website. We use no third-party advertising cookies.
3. Data from Meta platforms (Facebook, Instagram and WhatsApp)
When a company connects a Facebook Page, an Instagram professional account or a WhatsApp Business number, Meta asks the person connecting it to approve specific permissions. We request only what the features you use need:
- Facebook Pages (
pages_show_list,pages_read_engagement,pages_manage_posts,read_insights,business_management): to list the Pages you manage, publish and schedule the posts you create in Adasify, and show their reach and engagement. - Instagram professional accounts (
instagram_business_basic,instagram_business_content_publish,instagram_business_manage_insights): to show the account's name, username, profile picture and follower count, publish the content you schedule, and report its performance. - WhatsApp Business (Cloud API): to send and receive the messages of the company's WhatsApp number, including the phone numbers, names and message content of the people it talks to, and the delivery status of each message, so the company's team can run its inbox in Adasify.
What we do and don't do with Meta data:
- We use it only to provide the features the company turned on, for that company.
- We never sell it, never use it for advertising, and never use it to build profiles of people.
- We don't share it with anyone except the service providers listed below that host and run the service.
- Access tokens are encrypted at rest and are never shown back to anyone, including the company that connected them.
- Disconnecting an account in Adasify stops all access, deletes its access token and revokes the grant with Meta. The record of posts already published stays in your workspace until you ask us to delete it: see Data deletion.
4. Google user data (Sign in with Google, YouTube and Google Analytics)
- Sign in with Google: your name, email address and profile picture, used only to create your account and sign you in.
- YouTube (
youtube.upload,youtube.readonly): to show your channel's name and statistics, upload the videos you schedule, and report their performance.Adasify uses YouTube API Services; by connecting a channel you also agree to the YouTube Terms of Service, and Google's use of data is described in the Google Privacy Policy. - Google Analytics 4: when a company adds a website, we read that property's reports (visitors, pages, traffic sources) with the read-only credentials the company provides, to show its analytics dashboard.
Adasify's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We don't use Google user data for advertising, don't sell it, don't let people read it except where you ask us to (for support), for security, or where the law requires, and don't use it to train generalised AI models. You can revoke our access at any time at myaccount.google.com/permissions.
5. LinkedIn data
When you connect LinkedIn (openid, profile, w_organization_social, r_organization_social, rw_organization_admin), we read your name and the LinkedIn Pages you administer, publish the posts you schedule to those Pages, and show their statistics. It is used only for those features and protected the same way as Meta data; disconnecting deletes the access token.
6. How we use information
- To provide the service: run your workspace, send the messages and posts you schedule, and show your reports.
- To secure it: authenticate you, prevent abuse and spam, and investigate incidents.
- To support you and send service messages, such as sign-in, invitation, trial and billing emails.
- To improve the product, using aggregated and de-identified usage data.
- To meet legal obligations, such as tax and accounting record-keeping.
Where the law requires a legal basis (for example the GDPR), we rely on performing our contract with you, our legitimate interest in running a secure service, your consent where we ask for it, and legal obligations.
8. Data our customers hold
When a business uses Adasify to manage its own contacts, leads, WhatsApp conversations or clients, that business decides what data it collects and why, and we process it on the business's behalf. If you are one of those contacts (for example you messaged a business on WhatsApp, or are on its mailing list), please contact that business first. If you can't, email us at privacy@adasify.com and we will help. Every marketing email sent through Adasify includes an unsubscribe link.
9. How long we keep data
- Account and workspace data: for as long as the account or company is active.
- After deletion is requested, we delete it within 30 days, and it leaves our encrypted backups within a further 35 days.
- Invoices and billing records: as long as tax and accounting laws require.
- Security and audit logs: as long as needed to protect the service, then deleted.
10. Security
Data is encrypted in transit (HTTPS) and stored with providers that encrypt it at rest. Access tokens for connected platforms and credentials such as SMTP passwords are additionally encrypted by us. Each company's data is isolated from every other company's, and our staff access customer data only to provide support you request, for security, or where the law requires. No system is perfectly secure; if a breach affects your data, we will notify you as the law requires.
11. Your rights and choices
Depending on where you live, you may have the right to:
- access the personal data we hold about you, or receive a copy of it;
- correct it (much of it you can edit yourself on your profile page);
- delete it: see Data deletion;
- object to or restrict some processing, and withdraw consent you gave;
- complain to your data protection authority.
Email privacy@adasify.com to use any of these rights. We will verify that the request comes from you and answer within 30 days. You can also disconnect any platform at any time in Adasify, or remove our access from that platform's own settings.
12. International transfers
Our providers may process data in countries other than yours. Where we transfer personal data internationally, we use safeguards the law recognises, such as standard contractual clauses.
13. Children
Adasify is a business service and is not meant for anyone under 18. We do not knowingly collect data from children; if you believe a child has given us data, email privacy@adasify.com and we will delete it.
14. Changes to this policy
We will update the date at the top when this policy changes, and tell account owners by email or in the app before a significant change takes effect.
15. Contact us
Questions, requests or complaints about privacy: privacy@adasify.com.