WaSparks Social — Privacy Policy

Last updated:

Effective date:

Applies to: WaSparks Social (the API, the web application at app.social.wasparks.com and the website at social.wasparks.com), operated by Wasparks, Inc., Malviya Nagar, Jaipur, India ("WaSparks", "we", "us").

This policy explains what information WaSparks Social collects, how we use it, and the choices you have. It covers our customers (businesses, creators and partners who use the Services), the people who use the Services on a customer's behalf, and the people whose public interactions with a customer's social media pages pass through the Services. Our WhatsApp products are covered by the separate policy at wasparks.com/privacy-policy.

1. What WaSparks Social does

WaSparks Social lets a business connect its own Facebook Pages, Instagram professional accounts and LinkedIn Pages or profiles, and then publish posts, read and reply to comments, and read and reply to messages from one place, either through our application or through our API embedded in a partner's software. We act on the customer's instructions and on the customer's own social media accounts.

2. Information we collect

Account and organisation data. Name, email address, organisation name, plan, billing contact, and the credentials used to sign in to our application or to call our API.

Connected social accounts. When you connect a Facebook Page, Instagram account or LinkedIn Page or profile, the platform gives us an access token for that account together with its identifier, name, username and profile picture. We store the token in encrypted form and use it only to perform the actions you request. We also store the identifier of the platform user who granted the connection, so that we can honour deletion and deauthorisation requests.

Content you publish. The text, links and media of posts you create in the Services, with their scheduling and delivery status.

Comments and messages. Comments left on your connected pages' posts, and messages sent to your connected pages or accounts through Facebook Messenger or Instagram Direct, including the commenter's or sender's platform identifier, display name and profile picture where the platform provides them, the content, and timestamps. This information is delivered to us by the platforms so that you can see and reply to it.

Usage data. API calls, published posts, received and sent comments and messages, counted per organisation for billing and quota purposes. Technical logs (request identifiers, timestamps, error codes, IP address of the API caller) kept for security and support.

We do not collect information from the personal profiles of people who merely comment on or message your pages beyond what the platform delivers with the comment or message. For LinkedIn we do not store the name or picture of individual members who comment, because LinkedIn's terms do not permit it.

3. How we use information

We do not use the content of your posts, comments or messages for advertising, for building profiles, or for training models, and we do not sell personal information.

4. Meta and LinkedIn platform data

WaSparks Social uses the Facebook Graph API, the Instagram Platform, the Messenger Platform and the LinkedIn Community Management API. Our use of information received from these platforms is limited to providing the features the customer has asked for, and complies with the Meta Platform Terms, the Meta Developer Policies and the LinkedIn API Terms of Use. WaSparks is not affiliated with, endorsed by or sponsored by Meta Platforms, Inc. or LinkedIn Corporation.

When a customer disconnects an account, we delete its access tokens immediately. When a platform user removes WaSparks Social from their Facebook settings, or asks Facebook to delete their data, Facebook notifies us and we delete the tokens and identifiers we hold for that user and disconnect the accounts they granted; see the Data Deletion page for the status of such requests.

5. Sharing

We share information only with:

6. Retention

7. Security

Access tokens and other secrets are encrypted at rest with keys held separately from the data. All traffic uses TLS. Access to production systems is limited to authorised staff and is logged. No system is perfectly secure; if we become aware of a breach affecting your data we will notify you as required by law.

8. Your rights

Depending on where you live you may have the right to access, correct, export or delete personal information we hold about you, or to object to or restrict its processing. Customers can disconnect accounts, delete content and close their organisation from within the Services or by contacting us. People who have interacted with a customer's pages should contact that customer, who controls that data; we will assist the customer in fulfilling the request. For Facebook and Instagram users, the Data Deletion page describes how to have the data we hold about you removed.

To exercise any right, email hello@wasparks.com. We respond within 30 days.

9. Cookies

The website social.wasparks.com sets no cookies and uses no analytics or tracking. The web application uses a session store in your browser only to keep you signed in during your visit.

10. International transfers

Our servers are in India. If you use the Services from elsewhere, your information is transferred to and processed in India. Where the law of your country requires safeguards for such transfers, we rely on your consent to the Services and, for business customers, on contractual terms.

11. Children

The Services are for businesses and are not directed at children under 18. We do not knowingly collect information from children.

12. Changes

We may update this policy. Material changes will be announced on this page and, for customers, by email, at least 14 days before they take effect.

13. Contact

Wasparks, Inc.
Malviya Nagar, Jaipur, Rajasthan, India
hello@wasparks.com