Privacy Policy

Effective Date: December 26, 2024
Last Updated: December 26, 2024

This Privacy Policy describes how IT Solutions Bartłomiej Bankosz ("Foloop," "we," "us," or "our") collects, uses, shares, and protects your personal information when you use our Foloop service (the "Service").

1. Controller Information

Data Controller:
IT Solutions Bartłomiej Bankosz
Moszczanka 7A
48-200 Prudnik, Poland
VAT: PL7551932915
Email: privacy@foloop.com

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, company name, phone number, team size
  • WhatsApp Business Account Data: WhatsApp Business Account ID, phone number(s), business profile information
  • Conversation Data: Messages, contact names, phone numbers, conversation metadata (timestamps, status, assignments)
  • User-Generated Content: Notes, tags, follow-up reminders, custom fields

2.2 Information We Collect Automatically

  • Usage Data: Log data, IP address, browser type, device information, pages visited, time spent
  • Cookies: Session cookies, preference cookies (see Cookie Policy below)

2.3 Information from Third Parties

  • Meta/WhatsApp Cloud API: We receive WhatsApp messages and metadata via the official WhatsApp Cloud API

3. How We Use Your Information

We use your information for the following purposes (legal bases under GDPR):

  • Service Delivery (Contract Performance): Provide shared inbox, SLA tracking, follow-up management, team collaboration, and reporting features
  • Communication (Contract Performance, Legitimate Interest): Send service updates, respond to support requests, provide onboarding assistance
  • Improvement (Legitimate Interest): Analyze usage patterns, fix bugs, develop new features
  • Security (Legitimate Interest, Legal Obligation): Prevent fraud, abuse, and unauthorized access
  • Compliance (Legal Obligation): Comply with applicable laws, regulations, and legal processes
  • Marketing (Consent): Send promotional emails (only with your consent; you may opt out anytime)

4. Data Sharing and Disclosure

We do not sell your personal data. We may share your information with:

  • Service Providers: Cloud hosting (servers located in Poland/EU), email delivery, analytics tools (all GDPR-compliant processors with DPAs)
  • Meta Platforms: We use WhatsApp Cloud API. Meta processes messages as per their Business Policy
  • Legal Authorities: If required by law, court order, or to protect rights and safety
  • Business Transfers: In case of merger, acquisition, or asset sale (you will be notified)

5. Data Retention

We retain your personal data only as long as necessary for the purposes outlined in this Privacy Policy:

  • Account Data: Until account deletion or 30 days after subscription ends
  • Conversation Data: Until you delete it or close your account (or 90 days after account closure)
  • Logs/Analytics: Up to 12 months
  • Legal/Tax Records: As required by Polish law (typically 5 years)

6. Data Security

We implement industry-standard security measures:

  • Encryption in transit (HTTPS/TLS)
  • Encryption at rest for sensitive data
  • Access controls and role-based permissions
  • Regular security audits
  • Secure cloud infrastructure (ISO 27001 certified providers)

However, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.

7. Your Rights (GDPR)

If you are in the European Economic Area (EEA), you have the following rights:

  • Right to Access: Request a copy of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure ("Right to be Forgotten"): Request deletion of your data
  • Right to Restriction: Restrict processing in certain circumstances
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Object: Object to processing based on legitimate interest or direct marketing
  • Right to Withdraw Consent: Withdraw consent for marketing at any time
  • Right to Lodge a Complaint: Contact your local data protection authority (Poland: UODO)

To exercise your rights, email us at privacy@foloop.com or use the data deletion form at /data-deletion.

8. International Data Transfers

Your data is stored in the European Union (Poland). If we transfer data outside the EEA, we use:

  • EU Standard Contractual Clauses (SCCs)
  • EU-U.S. Data Privacy Framework (if applicable)
  • Adequacy decisions by the European Commission

9. Children's Privacy

Our Service is not intended for individuals under 16 years of age. We do not knowingly collect personal data from children. If you believe we have collected data from a child, please contact us immediately.

10. Cookies and Tracking

We use cookies and similar technologies:

  • Essential Cookies: Required for login and security
  • Analytics Cookies: Understand usage (you can opt out)

You can control cookies via browser settings. Disabling essential cookies may affect functionality.

11. Third-Party Links

Our Service may contain links to third-party websites. We are not responsible for their privacy practices. Please review their privacy policies.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or a prominent notice in the Service. Continued use after changes constitutes acceptance.

13. Contact Us

For questions, concerns, or to exercise your rights, contact us:

Email: privacy@foloop.com
Mail: IT Solutions Bartłomiej Bankosz, Moszczanka 7A, 48-200 Prudnik, Poland
Data Deletion: foloop.com/data-deletion

📱 Notice for Meta/Facebook App Review

Foloop uses the WhatsApp Cloud API provided by Meta Platforms. We comply with Meta's Platform Terms and WhatsApp Business Policy. User data collected via WhatsApp is processed in accordance with this Privacy Policy and applicable data protection laws (GDPR). Users can request data deletion at any time via foloop.com/data-deletion.