Privacy Policy

Last updated: February 2026

Summary

  • We process data to run your connected social channels and AI workflows.
  • We support Facebook, Instagram, WhatsApp, Google Business Profile, and TikTok integrations.
  • We use data for inbox/comment automation, feedback analysis, and customer-approved posting.
  • You keep ownership of your content and can request disconnection/deletion controls.
  • We use security controls, and we do not sell customer channel data.

1. Scope and Roles

This Privacy Policy explains how Neksio processes personal data when customers use our platform to connect social channels and deploy AI agents. In most cases, our customer acts as the data controller and Neksio acts as a processor or service provider on the customer's behalf. For account, billing, and website analytics data, Neksio may act as an independent controller.

2. Supported Platforms

Our platform may connect to the following third-party services through official APIs:

  • Facebook (Pages, Messenger, comments, and related Meta endpoints)
  • Instagram (DMs, comments, and related Meta endpoints)
  • WhatsApp Business Platform / WhatsApp Cloud API (including webhooks)
  • Google Business Profile (formerly Google My Business)
  • TikTok (business and messaging/comment endpoints where available)

3. What We Process

Depending on customer configuration and granted permissions, we may process:

  • Account profile data (business name, workspace users, settings)
  • Connected channel metadata (page/account IDs, phone number IDs, token metadata)
  • Inbox and comment content sent to connected channels
  • Message event payloads received via webhooks
  • Feedback and sentiment signals for analytics
  • Content drafts and publishing payloads created by the customer or AI tools
  • Operational logs, security logs, and API request metadata

4. Why We Process Data

We process data to provide the services requested by our customers, including:

  • AI agent automation for inbox and comments (for example, answering questions on WhatsApp, Facebook, Instagram, and other connected channels)
  • Feedback analysis and conversation intelligence
  • Content generation and content posting on behalf of the customer
  • Platform reliability, abuse prevention, debugging, and product support
  • Service performance measurement and aggregated reporting

5. Platform-Specific Processing Notes

Facebook and Instagram

We process messages, comments, and related interaction events only to operate customer workflows and AI responses. We do not sell this data. Access is limited to customer configuration and authorized team members.

WhatsApp Business Cloud API

We process webhook events and message content required to deliver customer automation and support flows. Customers are responsible for template compliance and lawful messaging practices under WhatsApp policies.

Google Business Profile

We may process review, post, and profile interaction data to support response automation, analytics, and publishing actions requested by the customer.

TikTok

We process available business account interactions and content actions solely for configured customer workflows and analytics, subject to TikTok developer and platform terms.

6. AI and Knowledge Base Usage

Customer-provided knowledge base content and channel data are used to produce contextual AI responses (for example, RAG-based answers). Unless explicitly agreed in writing, data processed for customer workflows is not used to train public foundation models. Customers retain ownership of their business content.

7. Legal Basis

Where applicable, we process personal data based on contractual necessity, legitimate interests in secure operations, and legal obligations. Customers are responsible for ensuring they have an appropriate legal basis to collect and share end-user data with Neksio.

8. Data Sharing and Subprocessors

We may share data with trusted subprocessors that provide hosting, infrastructure, monitoring, and support tooling. We require contractual safeguards and access controls. We may also disclose data when required by law or valid legal process.

9. International Transfers

Data may be processed in countries where our providers operate. Where required, we implement transfer safeguards such as standard contractual clauses or equivalent legal mechanisms.

10. Security

We implement technical and organizational safeguards including encryption in transit, access control, audit logging, secret management, and incident response procedures. No system can guarantee absolute security, but we continuously improve controls.

11. Retention

We retain data for as long as needed to provide services, fulfill contractual obligations, resolve disputes, and comply with legal requirements. Customers may request deletion of workspace data subject to legal and operational limitations.

12. Customer Controls and User Rights

Customers can revoke platform access tokens, disconnect channels, and request data deletion. Depending on jurisdiction, individuals may have rights to access, correction, deletion, restriction, portability, and objection. Requests can be submitted through the relevant customer account owner or directly to us where applicable.

13. Third-Party Platform Terms

Use of connected channels is also governed by the applicable third-party platform terms and policies (including Meta, WhatsApp Business, Google, and TikTok). Customers are responsible for complying with those terms when using our automation and publishing features.

14. Children's Data

Our services are intended for business use and are not directed to children. Customers must not use the platform to knowingly process children's data in violation of applicable law.

15. Changes to This Policy

We may update this Privacy Policy from time to time. Material updates will be reflected by the updated date on this page and, where appropriate, notified through our platform or website.

16. Contact

For privacy questions or data requests, contact us at info@neksio.com.

Live chat