Privacy FAQs

Privacy FAQs

What makes the WhatsApp Business API compliant with the GDPR? How is your data stored and processed? You can find answers to these and other questions on this page.

illustration
6000+ companies already trust us
customer logo 1
customer logo 2
customer logo 3
customer logo 4
customer logo 5
customer logo 6
customer logo 7
customer logo 8
customer logo 9
customer logo 10
customer logo 11
customer logo 12
customer logo 13
customer logo 14
customer logo 15
customer logo 16
customer logo 17
customer logo 1
customer logo 2
customer logo 3
customer logo 4
customer logo 5
customer logo 6
customer logo 7
customer logo 8
customer logo 9
customer logo 10
customer logo 11
customer logo 12
customer logo 13
customer logo 14
customer logo 15
customer logo 16
customer logo 17
customer logo 1
customer logo 2
customer logo 3
customer logo 4
customer logo 5
customer logo 6
customer logo 7
customer logo 8
customer logo 9
customer logo 10
customer logo 11
customer logo 12
customer logo 13
customer logo 14
customer logo 15
customer logo 16
customer logo 17

Expert opinions, sample texts and more

Data protection reports, sample texts and more, for secure and compliant use of the Superchat messaging platform.

WhatsApp and the General Data Protection Regulation

The 3 basic privacy issues when using the WhatsApp app as well as the WhatsApp Business app. Do these also apply to the WhatsApp API?

Address book query without consent

When using the WhatsApp messenger in the standard and business versions, the contact information stored locally on the respective end devices is automatically transmitted to WhatsApp. This has been criticized by data protection authorities. When using the WhatsApp Business API, there is no need to use a WhatsApp application on a customer's end device. This means that there is no synchronization of contact data.

Data processing in the USA or outside the EU

When using Superchat, special attention is paid to ensuring that personal data is stored within Europe. Data transmitted via the WhatsApp Direct Cloud is stored in Frankfurt am Main, where we have activated Local Storage in Germany. We also place great importance on ensuring data processing within the European Union (EU) when selecting and using subcontractors. If this is not possible in individual cases, personal data is processed exclusively in countries for which there is an adequacy decision from the European Commission. For additional security, we have signed Standard Contractual Clauses (SCC) with all subcontractors outside the European Economic Area, which ensure an adequate level of data protection in case of revocation of the adequacy decision.

Is a data processing agreement (DPA) required?

Yes, we conclude a DPA with all companies that use the WhatsApp API through us, which complies with the current GDPR. The DPA is easy to apply for and will be sent to you by email within a few minutes. We have also concluded a DPA with our partner 360dialog, WhatsApp's official business solution partner.

Customer communication rethought

Use Superchat to get the most out of every customer interaction. Get started today.

background

FAQs