Privacy Policy
Last Updated: August 2026
1. Introduction
Welcome to ReplyAll ("we," "our," or "us"). We provide a unified customer communication platform that allows businesses to manage their direct messages (DMs) from WhatsApp Business, Facebook Messenger, and Instagram in one place.
We respect your privacy and are committed to protecting the personal data of our users (the "Merchants") and the individuals communicating with them (the "End-Customers"). This Privacy Policy explains how we collect, use, process, store, and delete data when you use our services.
2. How We Connect with Meta (Compliance Notice)
Our platform connects to Meta Platforms, Inc. ("Meta") using official application programming interfaces (APIs), including the WhatsApp Business API, Messenger API, and Instagram Graph API. We comply strictly with the Meta Developer Policies and Meta Data Processing Terms.
3. Data We Collect and Process
We only collect data that is strictly necessary to provide our DM management services.
From Merchants (Our Users):
- Account information: your name and email address when you register.
- Business information: business email, phone number, and billing information.
- Connected accounts: Meta Access Tokens and identifiers for the social or messaging accounts (WhatsApp, Facebook, Instagram) that you choose to connect.
- Usage and device data: technical information such as device type, operating system, and app usage statistics.
- Subscription data: purchase and entitlement information needed to manage your plan. Payments are processed by Apple and Google; we do not store your payment card details.
From End-Customers (Your Clients):
- Message Content: Text, images, videos, audio, and documents sent via WhatsApp, Messenger, or Instagram DMs.
- Profile Metadata: Meta User IDs, profile names, phone numbers (for WhatsApp), and profile pictures as provided by Meta APIs.
- AI agent data: the conversation context you provide to AI agents configured in the App, used solely to generate the requested replies.
4. How We Use the Data
We process this data solely to deliver the communication services you request, including:
- Displaying incoming DMs on your unified dashboard.
- Enabling your agents to reply to End-Customers.
- Running automated chatbots or automated messaging flows configured by you.
- Generating AI-assisted replies you request.
- Managing subscriptions, entitlements, and account status.
- Monitoring system performance and preventing technical errors.
- Improving performance, reliability, and security.
- Responding to your requests and providing support.
What we NEVER do:
- We do not sell, rent, or trade any Meta user data to third-party advertisers or data brokers.
- We do not use message content for user profiling or targeted advertising.
5. Legal Basis (GDPR)
Where the GDPR applies, we process personal data on the basis of your consent, the performance of a contract with you, and our legitimate interests in operating and securing the App.
6. Sharing and Third Parties
- Meta Platforms: to connect your chosen platforms (WhatsApp, Facebook, Instagram), we interact with Meta's official APIs in accordance with Meta's Platform Terms and Developer Policies. Your use of those platforms remains subject to their own terms and policies.
- Apple and Google: subscription billing and purchase validation are handled by Apple App Store and Google Play under their own privacy policies. We do not receive or store your payment card details.
- Service providers: hosting and infrastructure providers that process data on our behalf under our instructions.
We do not sell your personal data.
7. Data Security and Encryption
We implement industry-standard security measures to safeguard all data against unauthorized access, alteration, or disclosure:
- Encryption in Transit: all communication between the App, our servers, and third-party platforms is encrypted in transit using TLS 1.2 or higher (SSL/TLS), and all public endpoints run over HTTPS only.
- Encryption at Rest: All Personal Identifiable Information (PII), Meta Access Tokens, and other secrets are stored in securely encrypted databases using application-level AES-256-GCM encryption. Encryption keys are stored outside the public web root in server configuration and never appear in code, logs, or databases.
- Message content: messages are stored to provide search, export, and AI features; media files are stored outside the public web directory and are served only through authenticated, short-lived signed URLs.
- Webhooks: incoming notifications from connected platforms are signature-verified before any data is processed.
No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
8. Data Storage and Retention
Data Minimization: We do not cache or store message history longer than necessary to provide the service (e.g., 30 days for dashboard synchronization).
We retain data only as long as necessary to provide the App, manage your subscription, and comply with legal obligations.
9. International Data Transfers (Egypt Law 151/2020 Compliance)
For users operating under Egyptian jurisdiction: Any cross-border transfer of data complies with the Egyptian Personal Data Protection Law (Law 151 of 2020). Data transfers to Meta's global infrastructure are conducted under strict secure transfer protocols and appropriate legal frameworks approved by the Egyptian Data Protection Centre.
Data may be processed outside your country of residence using standard safeguards required by applicable law.
10. Data Retention and Deletion (User Rights)
We respect your right to control your data.
Merchant Disconnection:
If you disconnect your WhatsApp, Messenger, or Instagram account from our platform, we immediately revoke the Meta Access Tokens and purge associated session data.
Data Deletion Requests:
Users can permanently request the deletion of their accounts and all associated data at any time.
How to Request Deletion:
- Email Request: Send an email to info@digit-i.com with your account email or user ID.
- Disconnect Accounts: You can remove access from connected platforms (Facebook / Instagram) directly in the App settings.
Processing Time:
Your data will be deleted within 7–30 days. Requests are processed within 48 hours of receipt.
11. Your Rights
Subject to applicable law, you may have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your data.
- Object to or restrict certain processing.
- Lodge a complaint with a supervisory authority.
To exercise any of these rights, email us at info@digit-i.com.
12. Children
The App is not intended for children under the age of 13. We do not knowingly collect data from children under 13.
13. Changes to This Policy
We may update this policy from time to time. Continued use of the App after changes are posted constitutes acceptance of the updated policy.
14. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or your data, please contact us at:
Company Name: Digit-i for Smart Management Applications
Email: info@digit-i.com
Website: https://digit-i.com
Address: Egypt
سياسة الخصوصية
آخر تحديث: أغسطس 2026
1. مقدمة
مرحباً بكم في ReplyAll ("نحن"، "لنا"، "ضمير المتكلم"). نحن نقدم منصة موحدة لاتصالات العملاء تتيح للشركات إدارة رسائلهم المباشرة (DMs) من واتساب للأعمال، وماسنجر فيسبوك، وإنستغرام في مكان واحد.
نحترم خصوصيتكم وملتزمون بحماية البيانات الشخصية لمستخدمينا ("التجار") والأفراد الذين يتواصلون معهم ("العملاء النهائيين"). توضح سياسة الخصوصية هذه كيف نجمع، نستخدم، نعالج، نخزن، ونحذف البيانات عند استخدامكم لخدماتنا.
2. كيفية اتصالنا بـ Meta (إشعار الامتثال)
تربط منصتنا بـ Meta Platforms, Inc. ("Meta") باستخدام واجهات برمجة التطبيقات (APIs) الرسمية، بما في ذلك واجهة برمجة تطبيقات واتساب للأعمال، وواجهة برمجة تطبيقات ماسنجر، وواجهة برمجة تطبيقات إنستغرام. نحن نلتزم بصرامة بسياسات مطوري Meta وشروط معالجة بيانات Meta.
3. البيانات التي نجمعها ونعالجها
نحن نجمع فقط البيانات الضرورية تماماً لتقديم خدمات إدارة الرسائل المباشرة.
من التجار (مستخدمونا):
- معلومات الحساب: اسمك وبريدك الإلكتروني عند التسجيل.
- معلومات العمل: البريد الإلكتروني للعمل، رقم الهاتف، ومعلومات الفوترة.
- الحسابات المرتبطة: رموز الوصول (Access Tokens) ومُعرّفات حسابات Meta (واتساب، فيسبوك، إنستغرام) التي تختار ربطها.
- بيانات الاستخدام والجهاز: معلومات تقنية مثل نوع الجهاز، نظام التشغيل، وإحصاءات الاستخدام.
- بيانات الاشتراك: معلومات الشراء والاستحقاق اللازمة لإدارة خطتك. تتم معالجة المدفوعات بواسطة Apple وGoogle؛ نحن لا نخزن تفاصيل بطاقتك الائتمانية.
من العملاء النهائيين (عملاؤك):
- محتوى الرسائل: النصوص، الصور، الفيديوهات، الملفات الصوتية، والمستندات المرسلة عبر واتساب، ماسنجر، أو رسائل إنستغرام المباشرة.
- بيانات التعريف الشخصية: مُعرّفات مستخدمي Meta، الأسماء الشخصية، أرقام الهواتف (لواتساب)، والصور الشخصية كما توفرها واجهات Meta البرمجية.
- بيانات الوكيل الذكي (AI): سياق المحادثة الذي توفره للوكلاء الذكيين، ويُستخدم فقط لإنشاء الردود المطلوبة.
4. كيفية استخدام البيانات
نحن نعالج هذه البيانات فقط لتقديم خدمات الاتصال التي تطلبها، بما في ذلك:
- عرض الرسائل المباشرة الواردة على لوحة التحكم الموحدة.
- تمكين وكلائك من الرد على العملاء النهائيين.
- تشغيل روبوتات المحادثة الآلية أو تدفقات المراسلة الآلية التي تهيئها.
- إنشاء الردود الذكية التي تطلبها.
- إدارة الاشتراكات، الاستحقاقات، وحالة الحساب.
- مراقبة أداء النظام ومنع الأخطاء التقنية.
- تحسين الأداء، الموثوقية، والأمان.
- الرد على استفساراتك وتقديم الدعم.
ما لا نفعله أبداً:
- لا نبيع، نؤجر، أو نتداول أي بيانات مستخدمي Meta مع معلنين خارجيين أو وسطاء بيانات.
- لا نستخدم محتوى الرسائل لإنشاء ملفات تعريف المستخدمين أو للإعلانات المستهدفة.
5. الأساس القانوني (GDPR)
حيثما يُطبق GDPR، تتم معالجة البيانات الشخصية بناءً على موافقتك، وتنفيذ العقد المبرم معك، ومصالحنا المشروعة في تشغيل التطبيق وتأمينه.
6. المشاركة والأطراف الثالثة
- منصات Meta: لربط منصاتك المختارة (واتساب، فيسبوك، إنستغرام) نتعامل مع واجهات Meta البرمجية الرسمية وفق شروط Meta الأساسية وسياسات المطورين. يظل استخدامك لتلك المنصات خاضعاً لشروطها وسياساتها الخاصة.
- Apple وGoogle: يتم التعامل مع فوترة الاشتراكات والتحقق من الشراء عبر متجري Apple وGoogle وفق سياسات الخصوصية الخاصة بهما. لا نستلم أو نخزن بيانات بطاقتك الائتمانية.
- مزودو الخدمات: مزودو الاستضافة والبنية التحتية الذين يعالجون البيانات نيابة عنا وفق تعليماتنا.
لا نبيع بياناتك الشخصية.
7. أمن البيانات والتشفير
نحن نطبق تدابير أمنية قياسية لحماية جميع البيانات من الوصول غير المصرح به، التعديل، أو الإفصاح:
- التشفير أثناء النقل: جميع الاتصالات بين التطبيق، خوادمنا، والمنصات الخارجية مشفرة باستخدام TLS 1.2 أو أحدث (SSL/TLS)، وجميع نقاط الوصول العامة تعمل عبر HTTPS فقط.
- التخزين المشفر: جميع المعلومات الشخصية (PII)، رموز الوصول لـ Meta، والأسرار الأخرى مخزنة في قواعد بيانات مشفرة بأمان باستخدام تشفير AES-256-GCM على مستوى التطبيق. مفاتيح التشفير مخزنة خارج الجذر العام للويب في إعدادات الخادم ولا تظهر أبداً في الكود، السجلات، أو قواعد البيانات.
- محتوى الرسائل: تُخزن الرسائل لتوفير ميزات البحث، التصدير، والذكاء الاصطناعي؛ وتُخزن ملفات الوسائط خارج الدليل العام للويب ولا تُقدم إلا عبر روابط موقعة وآمنة قصيرة الأجل ومصادقة على الهوية.
- Webhooks: يتم التحقق من توقيع الإشعارات الواردة من المنصات المتصلة قبل معالجة أي بيانات.
لا توجد طريقة نقل أو تخزين آمنة بشكل مطلق، ولا يمكننا ضمان أمان تام.
8. تخزين البيانات والاحتفاظ بها
تقليل البيانات: نحن لا نخزن مؤقتاً أو نحتفظ بسجل الرسائل لفترة أطول من اللازم لتقديم الخدمة (مثلاً، 30 يوماً لمزامنة لوحة التحكم).
نحتفظ بالبيانات فقط طالما كان ذلك ضرورياً لتشغيل التطبيق، إدارة اشتراكك، والامتثال للالتزامات القانونية.
9. النقل الدولي للبيانات (الامتثال للقانون المصري 151/2020)
للمستخدمين العاملين تحت الاختصاص المصري: أي نقل للبيانات عبر الحدود يتوافق مع قانون حماية البيانات الشخصية المصري (القانون 151 لسنة 2020). عمليات نقل البيانات إلى البنية التحتية العالمية لـ Meta تتم تحت بروتوكولات نقل آمنة صارمة وأطر قانونية مناسبة معتمدة من مركز حماية البيانات المصري.
قد تتم معالجة البيانات خارج بلد إقامتك باستخدام ضمانات قياسية تتطلبها القوانين المعمول بها.
10. الاحتفاظ بالبيانات وحذفها (حقوق المستخدم)
نحترم حقك في التحكم في بياناتك.
فصل حساب التاجر:
إذا قمت بفصل حساب واتساب، ماسنجر، أو إنستغرام عن منصتنا، نقوم فوراً بإلغاء رموز الوصول (Access Tokens) الخاصة بـ Meta ومسح بيانات الجلسة المرتبطة.
طلبات حذف البيانات:
يمكن للمستخدمين طلب حذف حساباتهم وجميع البيانات المرتبطة بها بشكل دائم في أي وقت.
كيفية طلب الحذف:
- طلب عبر البريد الإلكتروني: أرسل بريداً إلكترونياً إلى info@digit-i.com مع بريدك الإلكتروني أو معرّف المستخدم.
- فصل الحسابات: يمكنك إزالة الوصول من المنصات المرتبطة (فيسبوك / إنستغرام) مباشرة من إعدادات التطبيق.
وقت المعالجة:
سيتم حذف بياناتك خلال 7-30 يوماً. تتم معالجة الطلبات خلال 48 ساعة من الاستلام.
11. حقوقك
وفقاً للقانون المعمول به، قد يكون لديك الحق في:
- الوصول إلى بياناتك الشخصية.
- طلب تصحيح البيانات غير الدقيقة.
- طلب حذف بياناتك.
- الاعتراض على معالجة معينة أو تقييدها.
- تقديم شكوى إلى سلطة الإشراف.
لممارسة أي من هذه الحقوق، تواصل معنا عبر info@digit-i.com.
12. الأطفال
التطبيق غير موجه للأطفال دون سن 13 عاماً، ولا نجمع بياناتهم عن علم.
13. التغييرات على هذه السياسة
قد نقوم بتحديث هذه السياسة من وقت لآخر. استمرار استخدامك للتطبيق بعد نشر التغييرات يُعد قبولاً للسياسة المحدثة.
14. معلومات التواصل
إذا كان لديكم أي أسئلة، مخاوف، أو طلبات بخصوص سياسة الخصوصية هذه أو بياناتكم، يرجى التواصل معنا على:
اسم الشركة: ديجيت - اي لتطبيقات انظمه الاداره الذكيه
البريد الإلكتروني: info@digit-i.com
الموقع الإلكتروني: https://digit-i.com
العنوان: مصر