1. Overview
SwiftReach lets businesses send WhatsApp messages via the Meta WhatsApp Business Cloud API. To do that we store your account information, your encrypted Meta API credentials, and the contact lists and message history required to run your campaigns. If you no longer want us to hold any of this, you can ask us to delete all of it.
Deletion is permanent. Once processed, your account cannot be recovered and any campaigns, contacts, templates, and API keys associated with it are removed.
2. What Data We Store
A SwiftReach deletion request removes all of the following:
- Account information: your name, email address, and Clerk authentication record.
- WhatsApp Business credentials: your encrypted Meta API token, Phone Number ID, and Business Account ID. Your token is also revoked with Meta so it can no longer be used.
- Contact lists: phone numbers and any associated fields (names, custom data) you uploaded, imported from Google Drive, or saved to your contact book.
- Campaign history: every campaign you ran, including message content, delivery status, and per-contact results.
- Scheduled campaigns: any campaigns you had queued for a future date.
- Inbox and replies: inbound messages from recipients and any replies you sent from within SwiftReach.
- Templates: your saved message templates and variable mappings.
- API keys and webhook logs: any API keys you generated in Settings → API Keys and the request log for those keys.
- Support requests: any support tickets you submitted from the in-app support form.
What is retained after deletion: Stripe payment records are retained for 7 years to comply with tax and accounting law. These records contain only your billing identifiers and invoice history, not your operational data. Meta message delivery logs stored on Meta's infrastructure are governed by Meta's own retention policy and are not under SwiftReach's control.
3. How to Request Deletion
Send an email to privacy@swiftreach.app from the email address on your SwiftReach account, with the subject line "Data Deletion Request".
Include the following in the body of your email:
- The email address of the account to be deleted.
- Optional: a brief reason for the deletion — this is helpful for us but not required.
We will only process deletion requests sent from the account holder's registered email address, or where identity can otherwise be verified. This is to prevent malicious deletion of someone else's account.
4. What Happens After You Request
Once we receive and verify your request, we will:
- Revoke your WhatsApp access token with Meta so it can no longer be used to send messages on your behalf.
- Delete your account record and every related row listed in Section 2 (contacts, campaigns, templates, API keys, webhook logs, inbox messages, scheduled campaigns, support tickets).
- Sign you out of any active SwiftReach sessions.
- Send you a confirmation email to the address that submitted the request, confirming deletion is complete.
5. Timeline
We process deletion requests within 30 days of receiving a verified request. In most cases, deletion is completed within 1–3 business days; the 30-day window exists for cases where verification takes longer or a bulk request is being processed.
You will receive a confirmation email at the address that made the request as soon as deletion is complete.
6. For Users Arriving from Facebook / Meta
If you connected your WhatsApp Business Account to SwiftReach through Meta's Embedded Signup and now want SwiftReach to stop having access to your data, you have two options:
- Revoke access at Meta: visit Meta Business Settings → Business Integrations → SwiftReach → Remove. This immediately invalidates our access token. Note: this does not delete your SwiftReach account or the data we have already stored.
- Delete your SwiftReach account too: follow Section 3 above to also delete every piece of data SwiftReach has stored, including any contact lists, campaign history, and inbox messages. This is the complete option.
If you want both — revoke Meta access and delete SwiftReach data — do the Meta revocation first, then email us for the SwiftReach deletion.
7. Questions
For any question about this process or the status of an existing deletion request, email privacy@swiftreach.app.