Privacy Policy

Last updated: July 25, 2026

This Privacy Policy explains what data is collected, how it is used, and how it is protected when you use the Chatterly mobile app ("Chatterly", "we", "the app").

1. Data we collect

1.1 Account information

When you sign up (with email/password, Google, Apple, Facebook, or a phone number), we store basic identity information such as your email address, name, and/or phone number via Firebase Authentication.

1.2 Instagram, Messenger, and WhatsApp account data

When you connect your Instagram Business/Creator account, we retrieve only the data required for the app to function via the Instagram Graph API: account ID, username, list of posts, comments on those posts, Messenger messages sent to the Facebook Page linked to the account, and the automated replies/DMs you send in response. When you connect a WhatsApp Business account, the phone number, incoming/outgoing message content, and template message usage are processed via the WhatsApp Cloud API. Your Instagram/WhatsApp access tokens are stored server-side only (Cloud Functions), in a way the client app can never access.

1.3 Automation rules and logs

The automation rules you create (keywords, AI intent tags, DM flows, button texts) and logs of the events that triggered them (which comment/mention/reaction was answered and when) are stored under your account.

1.4 Inbox, broadcasts, and custom fields

So that you can view, reply to, and label direct messages (DMs) sent to your Instagram/WhatsApp account from the in-app Inbox, we store message content, sender information, and the time of the last interaction. Free-text fields you attach to a conversation yourself (e.g. a customer's city or budget — "Custom Fields") are stored under your account the same way. This data is also used to determine who receives the broadcast messages you send from the app. Under Instagram's (Meta's) platform policy, broadcasts can only be sent to people who have messaged you within the last 24 hours (on WhatsApp, approved template messages can reach beyond this window); these restrictions are technically enforced by the app.

1.5 Subscription information

In-app purchases are managed through RevenueCat; we store your subscription status (free/Pro, term). Your payment card details never reach us (they are processed by Apple/Google/RevenueCat).

2. How we use your data

We do not sell your data or share it with third parties for advertising purposes.

3. Third-party services

The app uses the following services, each subject to its own privacy policy:

While AI mode is on, generated replies are sent to the commenter/customer automatically without waiting for your review — you can turn this behavior off at any time per rule or per conversation.

4. Data retention and deletion

Your data is retained for as long as your account is active. To permanently delete your account and all associated data, use Settings > Delete my account and data inside the app, or follow the steps on the Data Deletion page.

5. Data security

Instagram access tokens and other sensitive credentials are stored server-side only (Firebase Cloud Functions, via the Admin SDK), out of reach of client applications. Firestore security rules ensure every user can only access their own data.

6. Children's privacy

Chatterly is not directed at users under 13 years of age and does not knowingly collect data from this age group.

7. Changes to this policy

We may update this policy from time to time. For significant changes, we will notify you inside the app.

8. Contact

For questions: support@chatterly.live