← NaweOrder AI

Privacy Policy

Last updated: 21 August 2026

NaweOrder AI (“NaweOrder”, “we”, “us”) provides a multi-tenant web application that helps businesses manage WhatsApp conversations, orders, bookings, catalogs, payments links, CRM, and related operations.

This policy explains what information we process, how we use it, and your choices. It applies to the service at naweorder.online and related domains.

1. Who this service is for

NaweOrder is a business (B2B) tool. Accounts are created by business owners and their invited staff. End customers of those businesses typically interact via WhatsApp with the business, not by registering on NaweOrder themselves.

2. Information we collect

Depending on how you use the service, we may process:

We do not intentionally collect special categories of personal data beyond what you or your customers send through connected channels (e.g. content of WhatsApp messages).

3. WhatsApp and third-party platforms

If you connect WhatsApp (Meta), message content and phone numbers flow through Meta’s systems under Meta’s terms and policies, and into your NaweOrder workspace so you can operate inbox and workflows.

You are responsible for having a lawful basis to message your customers and for complying with Meta’s WhatsApp Business and platform policies.

Optional AI features may send relevant text snippets to our AI provider (e.g. Google Gemini) to extract order/booking intent or suggest replies. Avoid pasting unnecessary sensitive data into prompts you control.

Payment links may use providers you configure (e.g. Stripe, JazzCash). Card data is handled by those providers, not stored as full card numbers on NaweOrder.

4. How we use information

We do not sell your personal information.

5. Multi-tenant isolation

Data is organized by business workspace. Staff only access the workspace they are invited to. We design the service so one tenant should not see another tenant’s orders, chats, or credentials.

6. Hosting and subprocessors

We use infrastructure providers to run the service (for example application hosting and managed database services). They process data under their terms as processors/service providers on our behalf. AI and messaging providers process data only as needed for features you use.

7. Retention

We retain account and workspace data while your account is active. You may request deletion of your business account by contacting us; we will delete or anonymize personal data within a reasonable period unless law requires longer retention (e.g. security logs, invoices).

8. Security

We use industry-standard measures such as HTTPS, hashed passwords, encrypted storage of selected secrets, and access controls. No method of transmission or storage is 100% secure.

9. Your choices and rights

Depending on your location, you may have rights to access, correct, export, or delete personal data, or object to certain processing. Business admins can update much of their workspace data in Settings. For account deletion or privacy requests, contact us using the email below.

10. Children

NaweOrder is not directed at children under 16 (or the applicable age in your region). We do not knowingly collect data from children.

11. International transfers

Your information may be processed in countries where we or our providers operate. Where required, we take appropriate steps to protect personal data in line with applicable law.

12. Changes

We may update this policy from time to time. The “Last updated” date will change; continued use after significant changes constitutes acceptance where permitted by law.

13. Contact

Privacy questions or requests:

Email: privacy@naweorder.online
Website: https://www.naweorder.online

If you use a different support address, update this section before publishing.

This document is a practical template for NaweOrder AI and is not formal legal advice. Consider local counsel for your jurisdiction, especially before processing payments at scale or targeting the EU/UK.