1. Scope
This Privacy Policy explains how Advika handles information when businesses use our intelligent business operating system, product workspaces, website chat widget, WhatsApp automation, CRM, analytics, vendor dashboard, admin tools, billing, and related services.
A vendor business controls the customer data it collects through Advika. Advika processes that data to provide the service, improve reliability, support compliance, and keep the platform secure.
2. Information we process
Vendor account data may include name, work email, company domain, business profile, organization settings, team roles, product subscriptions, billing details, tax details, uploaded compliance documents, plan usage, and support history.
Customer communication data may include website chat messages, WhatsApp messages, lead details, phone numbers, email addresses, conversation summaries, AI suggestions, handoff status, and related metadata.
Training data may include FAQs, documents, website content, text notes, embeddings, and retrieval metadata uploaded or configured by a vendor.
Technical data may include IP address, browser details, device type, widget domain, timestamps, logs, webhook payload identifiers, payment event identifiers, and security audit events.
3. How we use information
We use information to operate the platform, activate product workspaces, answer customer conversations, generate AI replies, retrieve relevant vendor knowledge, capture leads, maintain shared customer timelines, route human takeover, provide analytics, enforce plan limits, issue invoices, and troubleshoot support requests.
We also use information for abuse prevention, rate limiting, fraud checks, domain verification, webhook verification, payment reconciliation, tax records, backup, and platform monitoring.
4. AI processing
Advika may send selected conversation text and relevant vendor knowledge context to configured AI providers to generate replies, summaries, lead classification, and suggested follow-ups.
Vendors are responsible for ensuring that the training material they upload is accurate, lawful, and suitable for AI-assisted customer communication. Advika is designed to retrieve from vendor-provided knowledge and escalate when information is missing.
5. Service providers
We may use infrastructure, AI, messaging, payment, email, analytics, and monitoring providers to deliver the service. Examples may include OpenAI-compatible AI providers, Meta WhatsApp Business Platform, Razorpay, SMTP or email delivery providers, database hosting, object storage, and logging tools, depending on deployment configuration.
Service providers are used only for business purposes connected to operating Advika and are expected to protect data under appropriate confidentiality and security obligations.
6. Data retention
We retain account, billing, tax, audit, and invoice records as needed for legal, accounting, security, and operational purposes.
Conversation, lead, training, and usage data is retained while a vendor account is active or as configured by the vendor plan and platform policy. Deletion requests may be limited where records must be preserved for compliance, dispute resolution, or fraud prevention.
7. Security
Advika uses tenant scoping, authentication, role-based access, webhook verification, domain checks, validation, logging, and infrastructure controls to reduce unauthorized access risks.
No system can be guaranteed fully secure. Vendors should use strong passwords, restrict team access, keep website and WhatsApp credentials secure, and avoid uploading unnecessary sensitive data.
8. Your choices
Vendors can update business profile details, manage team members, modify knowledge sources, control launch settings, and request deletion or export of eligible account data.
Customers who interact with a vendor through Advika should contact that vendor for requests related to their conversation or lead data. Advika may help the vendor respond where required.
9. Contact
For privacy questions, data requests, or security concerns, contact the Advika team through the contact page. Include your company name, domain, and the nature of the request so we can route it correctly.
