Legal
Privacy Policy
Last updated: August 12, 2026
Who we are
Adryze (“Adryze”, “we”, “us”) operates Adryze OS, a unified business inbox and customer relationship platform. We are reachable at support@adryze.com. Our product is hosted at app.adryze.com and our marketing site is adryze.com.
What we collect
When you connect a messaging channel through Adryze, we receive and persist the data that is strictly necessary to operate the channel. Data is stored in our Supabase Cloud Postgres database (and, for media bytes, in Cloudflare R2 object storage).
- WhatsApp. Customer phone number, the WhatsApp Business profile of the connected number (phone number ID, WABA ID), inbound and outbound message text and message metadata, message timestamps, and media bytes (images, video, audio, documents) downloaded into our Cloudflare R2 bucket together with the resulting public media URL stored on the message row.
- Instagram. The Instagram-scoped user ID (instagram_id), the account’s username, display name, and profile picture URL; message text and attachment URLs received from the connected Instagram Business account; message metadata and timestamps; and the long-lived Instagram access token used to call the Instagram Graph API on the customer’s behalf (stored in channel_configs).
- Messenger. The Messenger-scoped user ID (messenger_id / platform_user_id), first name, last name, and profile picture URL; message text and attachments; metadata and timestamps; and the long-lived Page access token used to call the Messenger Platform on the customer’s behalf (stored in channel_configs).
- Always. The org_id used to scope every row to your organization, message and audit timestamps, and a routing audit log of conversation actions (which user moved a chat to which team, and when).
We do not collect or access your personal Facebook posts, your friends list, your timeline, your ad account, your activity outside the connected Page or Instagram Business account, or any data about your personal Facebook or Instagram friends.
What we do with it
We use the data we receive to:
- Display incoming conversations to you and your authorized team members in the Adryze OS inbox.
- Power the AI auto-reply agent that you (or your organization admin) configure for the channel, if AI mode is enabled.
- Power the Lead Analyzer, which summarizes customer conversations into CRM leads (status, score, priority, action items) and routes conversations to the right team inside your organization.
- Send replies on your behalf when you or your team compose a message.
We do not sell your data. We do not share it with third parties except with the sub-processors listed below, which are required to handle the data under their own published terms.
Retention
Messages, contacts, conversations, media files in R2, and Lead Analyzer summaries persist for the lifetime of your organization. They are removed when the organization itself is deleted, or sooner upon fulfillment of an individual data deletion request — see Data Deletion Instructions.
Disconnecting a channel from Profile → Connected Channels stops future collection on that channel but does not delete historical messages, contacts, audit entries, or stored media. Lead Analyzer summaries persist on the contact record until the organization is deleted; there is currently no in-app per-conversation delete or per-summary clear.
Export and deletion requests are honored by emailing support@adryze.com; we complete verified requests within 30 days.
Your rights
You can:
- Disconnect any channel at any time from Profile → Connected Channels. This stops new messages from arriving; historical data remains in Adryze until the organization is deleted or a verified deletion request is fulfilled.
- Request an export or deletion of your organization's data by emailing support@adryze.com. We complete verified requests within 30 days.
- Request deletion of the entire organization as a hard reset; this erases all org-scoped data we hold.
Sub-processors
To operate Adryze we rely on the following sub-processors:
- Supabase Inc. — Cloud Postgres database hosting contacts, conversations, messages, channel configs, and the conversation audit log.
- Cloudflare (R2) — object storage for WhatsApp media bytes and (where cached) social profile pictures. Public media URLs are served from a Cloudflare R2 public bucket origin.
- Google (Gemini API) — AI auto-reply generation and Lead Analyzer summaries. Governed by Google's API terms.
- n8n — the per-organization automation engine that each client configures and hosts. Inbound payloads are forwarded to the client's n8n workflow (for Panc Bike, hosted at n8n.client.adryze.com) which calls additional services the organization enables (e.g. CRM updates, Sheets, custom webhooks). The list of services an org enables is controlled entirely by that org's n8n configuration.
- Meta Platforms, Inc. — receives outbound API calls we make on your behalf (message send, token exchange, webhook subscription, profile lookup) and webhook payloads from your connected Pages and Instagram Business accounts.
Changes to this policy
If we make material changes to this policy, we will update the “Last updated” date above and, where appropriate, notify administrators by email before the change takes effect. Continued use of Adryze after the effective date constitutes acceptance of the revised policy.
Contact
Questions or requests: support@adryze.com. See also our Terms of Service and Data Deletion Instructions.