Privacy Policy
In one paragraph. Uttordin provides software that lets a business answer its own customers automatically. The business decides what its assistant knows and says; we run the software. We store conversations for 60 days and then delete them, we send message content to an AI provider purely to produce a reply, and we never sell personal data or use it for advertising.
If you messaged a business and reached this page: you do not have an account with us and we have no relationship with you. You are talking to that business. Section 8.2 explains how to reach them, and us.
- Who we are and what this policy covers
- Our role: the business is the controller
- Information we collect
- Why we process it, and on what basis
- Service providers we use
- How long we keep it
- Security
- Your choices and rights
- Messaging platforms (Meta and others)
- Children
- International transfers
- Changes to this policy
- How to contact us
1. Who we are and what this policy covers
1.1 Us
"Uttordin", "we", "us" and "our" mean the Uttordin service operated from Bangladesh and made available at uttordin.com. Uttordin is an AI customer-care assistant: a business connects its Facebook Page or WhatsApp number, enters its own product and policy information, and the assistant answers that business's customers using only that information.
1.2 The two groups of people in this policy
- Business Users — the owner or staff of a business who registers for Uttordin, logs into the dashboard, and configures the assistant. Where this policy says "you", it means a Business User.
- End Customers — people who message a business on Messenger, Instagram or WhatsApp and are answered by that business's assistant. End Customers do not register with us, do not have an Uttordin account, and are the customers of that business, not ours.
1.3 What this policy does not cover
This policy covers the Uttordin service only. It does not cover: (a) what a business does with its own customer data outside Uttordin; (b) Facebook, Instagram, WhatsApp or any other platform through which a message reaches us, each of which applies its own privacy policy to that leg of the journey; or (c) any third-party website we link to.
2. Our role: the business is the controller
2.1 The relationship
For all information about End Customers, the business is the data controller and Uttordin is the data processor. The business decides to use an automated assistant, decides what it knows, decides what it says, and can silence it at any time. We process that information on the business's instructions and for the purpose of delivering the service to that business.
2.2 What follows from that
- Each business is responsible for having a lawful basis to communicate with its own customers, and for telling its customers that an automated assistant may reply.
- Each business is responsible for the accuracy and lawfulness of the information it enters — prices, policies, product descriptions and any documents it uploads.
- A request from an End Customer about their data is, in the first instance, a matter for the business they messaged. Section 8.2 explains what we will do if such a request reaches us directly.
2.3 Where we are the controller
We act as controller for a narrow set of information: Business User account details, billing records, support correspondence with Business Users, and aggregate technical and usage statistics that identify no individual. Section 3.1 and 3.4 describe these.
3. Information we collect
3.1 Information a Business User gives us
- Account: email address and authentication credentials, handled by our authentication provider (see 5.1). We do not store dashboard passwords ourselves.
- Business profile: business name, description, address, opening hours, contact phone, business category, social links.
- Assistant knowledge: product catalogue (names, prices, availability, size, colour, descriptions), refund/delivery/payment policies, current offers and notices, and any product photographs uploaded.
- Configuration: connected Page or number identifiers, assistant name and tone, automation switches, keyword lists.
3.2 Information that arrives from End Customers
- Message content: the text an End Customer sends to the business, and the reply generated. Messages longer than 2,000 characters are truncated before storage.
- Images: photographs or screenshots an End Customer sends — typically a picture of a product they are asking about. See 3.3.
- Platform identifiers: the identifier the messaging platform assigns to that person for that business (for example a Messenger Page-Scoped ID), and their display name as the platform provides it. We do not receive an End Customer's email address, and we do not receive their phone number unless they type it.
- Public comment content: where the business has enabled comment handling, the text of comments left on that business's own posts, and the commenter's name and platform identifier.
- Order details: where an order is recorded, the name, phone number, delivery address and items the End Customer provided for that order.
3.3 Images sent by End Customers — specific commitments
Because a photograph can carry more than it appears to, we commit to the following and have built the service to enforce them:
- Location metadata is removed. Photographs taken on a phone commonly embed GPS coordinates. Every image is re-encoded on receipt, which strips EXIF metadata including location. We do not retain it and cannot recover it.
- Images are stored privately. Customer-sent images are held in storage that is not publicly readable, separate from the business's own product photographs, which are public by necessity.
- A limited number are kept. At most ten images are retained per conversation, and only those the assistant actually processed.
- They are deleted on the same 60-day clock as messages (see 6.1).
- An image is transmitted to our AI provider (5.2) for the sole purpose of identifying which of that business's catalogue items it shows.
3.4 Information collected automatically
We record operational data needed to run and bill the service: counts of conversations and messages, token and cost totals, timestamps, error logs, and the identifier of the AI model used. Aggregated statistics of this kind contain no message content and identify no individual, and we retain them indefinitely (see 6.2).
3.5 What we do not collect
We do not use advertising or cross-site tracking technologies. We do not buy personal data from data brokers. We do not ask End Customers for, and do not knowingly collect, government identification numbers, payment card numbers, health information or other special-category data. Business Users must not enter such data into the assistant's knowledge base.
4. Why we process it, and on what basis
| Purpose | Information used | Basis |
|---|---|---|
| Generating replies to End Customers | 3.2, 3.1 | Performance of our contract with the business; the business's legitimate interest in answering its customers |
| Showing the business its own dashboard, transcripts and orders | 3.1, 3.2 | Performance of our contract with the business |
| Billing, quotas and invoicing | 3.4, 3.1 | Performance of our contract; our legal obligation to keep financial records |
| Security, abuse prevention and debugging | 3.4, and message content only where strictly necessary | Our legitimate interest in operating a secure service |
| Improving reply quality and measuring cost | 3.4 (aggregated), and message content in de-identified form | Our legitimate interest in improving the service |
4.1 We do not sell personal data
We do not sell, rent or licence personal data. We do not use End Customer data for advertising, profiling for advertising, or any purpose unrelated to delivering the service to the business they contacted.
4.2 AI model training
We do not use customer message content to train our own models — we do not train models. Content is sent to our AI provider to produce a reply. We select providers and service tiers whose terms state that content submitted through their paid business interfaces is not used to train their models, and it is our policy to use such tiers for production traffic. We do not control those providers' own terms and cannot guarantee them; provider terms are linked in section 5.
5. Service providers we use
We use a small number of specialist providers to run the service. Each acts as our sub-processor, receives only what it needs, and is bound by its own agreement with us.
| Provider | Used for | What it receives |
|---|---|---|
| Google (Gemini, via LiteLLM) | Generating replies; identifying products in images | Message content, business catalogue and policy text, images sent by End Customers |
| Supabase | Database and Business User authentication | All stored records; Business User login credentials |
| Cloudflare (R2, Pages) | Image storage and website hosting | Product images; images sent by End Customers |
| Meta (Facebook, Instagram, WhatsApp) | Message delivery | Messages in transit, per section 9 |
5.1 Authentication
Business User logins are handled by Supabase Auth. Passwords are stored by that provider in hashed form; we never see or hold a plaintext password.
5.2 Changes to providers
We may change or add providers where needed to operate or improve the service — for example, switching AI provider. We will keep this section current. Continuing to use the service after such a change constitutes acceptance of it.
5.3 Other disclosures
We may disclose information where required by applicable law, court order or a lawful request from a competent authority; to establish, exercise or defend legal claims; or to a successor entity in connection with a merger, acquisition or sale of assets, in which case this policy continues to apply to the transferred information.
6. How long we keep it
6.1 Conversation data — 60 days
Message content, images sent by End Customers, public comment content, and notes the assistant writes from a conversation are deleted 60 days after they are created, by an automated scheduled process. After deletion we cannot recover them, and neither the business nor we can read them again.
6.2 Records that outlive the conversation
| Record | Kept | Why |
|---|---|---|
| Business profile, catalogue, policies, settings | While the account is open | It is the business's own content |
| Product images uploaded by the business | While the account is open, or until deleted by the business | Shown to that business's customers |
| Orders (name, phone, address, items) | Retained as commercial records | They are the business's own transaction records and may be required for tax or dispute purposes |
| Aggregate counters and billing records | Retained | No message content, identifies no individual; needed so a bill can be audited after transcripts are gone |
| Conversation counters (message counts, cost totals) | Retained after message deletion | Numbers only. They evidence what a business was billed after the transcripts are gone |
Where we retain records for legal, tax or accounting reasons, we retain them for the period applicable law requires.
6.2a The identifier goes too
A conversation record outlives its messages so that a business can still verify a bill. The identifier linking that record to a person does not. Sixty days after someone last writes, it is replaced with a plain sequence number.
What is left is a row saying "conversation 102, 14 messages, this much cost" — and nothing that points to a human being. There is no key, held by us or anyone else, that turns it back.
6.3 Deletion on account closure
When a business closes its account, we delete or irreversibly anonymise its data within 90 days, except where retention is required by law or necessary to resolve a dispute or enforce our agreements. Aggregate statistics that identify no individual and no business may be retained.
7. Security
We apply measures appropriate to the nature of the service, including: encryption in transit; authentication on every dashboard and API request; strict separation of each business's data, enforced both in application code and at the database level so one business cannot read another's records; private storage for customer-sent images; access to production data limited to personnel who need it for support or debugging; and removal of location metadata from images on receipt.
No method of transmission or storage is completely secure. While we work to protect information, we cannot and do not guarantee absolute security, and we do not warrant that the service will be uninterrupted or error-free.
8. Your choices and rights
8.1 If you are a Business User
You may view, correct and export your business information from the dashboard at any time, delete product images and catalogue entries yourself, and request deletion of your account and its data by writing to [email protected]. You may pause or switch off the assistant at any time from the dashboard or by chat command; doing so stops replies immediately.
8.2 If you are an End Customer
You do not have an account with us, and we hold your information on behalf of the business you messaged.
- Contact that business first. They control the information and can act on it directly.
- You may also write to [email protected]. We will acknowledge your request, pass it to the relevant business, and act on their instruction. Where applicable law requires us to act directly, we will.
- To help us find your records, tell us which business you messaged and roughly when. We may need to verify the request. We cannot search for you by email address, because we do not hold one.
- Waiting is also an option: message content and images are deleted automatically 60 days after they are sent, with no request required.
- To stop the assistant replying to you, stop messaging that business, or ask them to switch it off.
8.3 Rights under applicable data protection law
Where applicable law grants you rights over your personal data — such as access, correction, deletion, restriction, objection or portability — we will honour them in accordance with that law. Requests should be made as set out in 8.1 or 8.2. We will respond within the period the applicable law requires, and in any event without undue delay.
9. Messaging platforms (Meta and others)
Messages reach us through Facebook Messenger, Instagram or WhatsApp. That part of the journey is governed by Meta's own terms and privacy policy, not ours, and Meta may process the message independently of us. We receive only what the platform passes to the business's connected account.
We use platform data solely to deliver the service to the connected business. We do not use it for advertising, do not sell it, and do not combine it with data from other sources to build profiles. If a business disconnects a Page or number, we stop receiving messages for it.
Platform rules are set by the platform. Restrictions on when a business may message someone — for example limits on replying outside a set period after a customer's last message — are imposed by the platform, not by us, and may change without notice to us.
10. Children
The service is intended for businesses and is not directed at children. Business Users must be at least 18. We do not knowingly collect personal data from children. If you believe a child's data has reached us, write to [email protected] and we will delete it.
11. International transfers
Our providers (section 5) operate infrastructure outside Bangladesh, so information may be processed in other countries, including where data protection law differs from that of your own country. By using the service, or by messaging a business that uses it, you acknowledge this transfer. We select providers that offer appropriate contractual protections.
12. Changes to this policy
We may update this policy as the service develops or the law changes. The version and effective date at the top of this page always identify the current text. For changes that materially reduce your rights or materially expand our processing, we will give notice in the dashboard before they take effect. Continued use after that date constitutes acceptance.
13. How to contact us
One address for everything — privacy questions, deletion requests and ordinary support: [email protected]. Putting "privacy" in the subject line gets it to the right place faster.
Step-by-step deletion instructions: Deleting your data.
See also our Terms of Service.
প্রাইভেসি পলিসি
এক কথায় বললে: উত্তর দিন একটা সফটওয়্যার, যা দিয়ে একটা ব্যবসা তার নিজের কাস্টমারদের অটোমেটিক উত্তর দিতে পারে। অ্যাসিস্ট্যান্ট কী জানবে, কী বলবে — সব ঠিক করে ব্যবসা নিজে; আমরা শুধু সফটওয়্যারটা চালাই। কথোপকথন আমরা রাখি ৬০ দিন, তারপর মুছে দিই। উত্তর তৈরি করতে বার্তা AI প্রোভাইডারের কাছে পাঠাতে হয় ঠিকই, কিন্তু আপনার ব্যক্তিগত তথ্য আমরা কখনো বিক্রি করি না, বিজ্ঞাপনেও ব্যবহার করি না।
কোনো ব্যবসাকে মেসেজ করে এই পাতায় এসে থাকলে: আমাদের কাছে আপনার কোনো অ্যাকাউন্ট নেই, আমাদের সাথে সরাসরি কোনো সম্পর্কও নেই। আপনি আসলে কথা বলছেন ওই ব্যবসার সাথে। তাদের, আর আমাদের সাথে কীভাবে যোগাযোগ করবেন তা বলা আছে ধারা ৮.২-এ।
১. আমরা কারা, এই নীতি কী নিয়ে
১.১ আমরা
"উত্তর দিন", "আমরা" বলতে বাংলাদেশ থেকে চালানো এবং uttordin.com-এ পাওয়া যায় এমন সেবাটাকে বোঝানো হয়েছে। উত্তর দিন একটা AI কাস্টমার-কেয়ার অ্যাসিস্ট্যান্ট — একটা ব্যবসা তার ফেসবুক পেজ বা হোয়াটসঅ্যাপ নম্বর জুড়ে দেয়, নিজের পণ্য আর নিয়ম-কানুনের তথ্য দিয়ে রাখে, আর অ্যাসিস্ট্যান্ট শুধু সেই তথ্য দিয়েই ওই ব্যবসার কাস্টমারদের উত্তর দেয় — এর বাইরে কিছু বানিয়ে বলে না।
১.২ এই নীতিতে দুই পক্ষ
এখানে "আপনি" বলতে দুই রকম মানুষ বোঝাতে পারে, তাই আলাদা করে বলে নিচ্ছি —
- ব্যবসা — যে দোকান বা প্রতিষ্ঠানের মালিক বা কর্মী উত্তর দিনে রেজিস্টার করেন, ড্যাশবোর্ডে লগইন করেন, অ্যাসিস্ট্যান্ট সেট করেন। এই নীতিতে যেখানে আলাদা করে না বলা আছে, সেখানে "আপনি" মানেই তিনি।
- কাস্টমার — যাঁরা মেসেঞ্জার, ইনস্টাগ্রাম বা হোয়াটসঅ্যাপে কোনো ব্যবসাকে মেসেজ করেন আর সেই ব্যবসার অ্যাসিস্ট্যান্ট তাঁদের উত্তর দেয়। তাঁরা আমাদের এখানে রেজিস্টার করেন না, তাঁদের কোনো অ্যাকাউন্ট নেই — তাঁরা ওই ব্যবসার কাস্টমার, আমাদের নন।
১.৩ এই নীতি যা নিয়ে নয়
এই নীতি শুধু উত্তর দিন সেবা নিয়ে কথা বলে। এখানে নেই: (ক) কোনো ব্যবসা উত্তর দিনের বাইরে গিয়ে তার নিজের কাস্টমারদের তথ্য নিয়ে কী করছে; (খ) ফেসবুক, ইনস্টাগ্রাম, হোয়াটসঅ্যাপ বা অন্য যে প্ল্যাটফর্ম দিয়ে বার্তা আমাদের কাছে আসে — সেই অংশে তাদের নিজস্ব প্রাইভেসি নীতি চলে, আমাদেরটা নয়; (গ) আমরা লিংক দিয়েছি এমন অন্য কোনো ওয়েবসাইট।
২. নিয়ন্ত্রক কে: ব্যবসাই নিয়ন্ত্রক
২.১ সম্পর্কটা আসলে কেমন
কাস্টমারের যেকোনো তথ্যের ক্ষেত্রে ব্যবসাই ডেটা কন্ট্রোলার, উত্তর দিন হলো ডেটা প্রসেসর। মানে — অটোমেটিক অ্যাসিস্ট্যান্ট চালু করবে কিনা, সেটা কী জানবে, কী বলবে, কখন বন্ধ করে দেবে — এসব সিদ্ধান্ত ব্যবসার। আমরা শুধু ব্যবসার নির্দেশমতো, আর তাদের সেবা দেওয়ার জন্যই তথ্য প্রসেস করি।
২.২ এর মানে দাঁড়ায়
- নিজের কাস্টমারদের সাথে যোগাযোগ করার বৈধ কারণ থাকা, আর একটা অটোমেটিক অ্যাসিস্ট্যান্ট উত্তর দিতে পারে সেটা তাঁদের জানিয়ে রাখা — এই দায়িত্ব প্রতিটা ব্যবসার নিজের।
- ব্যবসা যে তথ্য দেয় — দাম, নিয়ম-কানুন, পণ্যের বিবরণ, আপলোড করা যেকোনো ডকুমেন্ট — এসব ঠিক আর বৈধ কিনা, সেটাও তাদেরই দায়িত্ব।
- কোনো কাস্টমার তাঁর তথ্য নিয়ে কিছু জানতে চাইলে, সেটা প্রথমেই যে ব্যবসাকে তিনি মেসেজ করেছিলেন তাদের বিষয়। এমন অনুরোধ সরাসরি আমাদের কাছে এলে আমরা কী করব, বলা আছে ধারা ৮.২-এ।
২.৩ যেখানে নিয়ন্ত্রক আমরা নিজেরাই
কিছু নির্দিষ্ট তথ্যের ক্ষেত্রে অবশ্য আমরাই কন্ট্রোলার — ব্যবসার অ্যাকাউন্ট তথ্য, বিলিং রেকর্ড, ব্যবসার সাথে সাপোর্ট নিয়ে যোগাযোগ, আর এমন সামগ্রিক পরিসংখ্যান যা থেকে কাউকে আলাদা করে চেনা যায় না। বিস্তারিত ধারা ৩.১ আর ৩.৪-এ।
৩. আমরা কী তথ্য রাখি
৩.১ ব্যবসা নিজে যা দেয়
- অ্যাকাউন্ট: ইমেইল ঠিকানা আর লগইনের তথ্য — এটা সামলায় আমাদের অথেনটিকেশন প্রোভাইডার (দেখুন ৫.১)। ড্যাশবোর্ডের পাসওয়ার্ড আমরা নিজেরা রাখি না, দেখিও না।
- ব্যবসার প্রোফাইল: নাম, বিবরণ, ঠিকানা, খোলার সময়, ফোন নম্বর, ব্যবসার ধরন, সোশ্যাল মিডিয়া লিংক।
- অ্যাসিস্ট্যান্টের জ্ঞান: ক্যাটালগ (নাম, দাম, স্টক আছে কিনা, সাইজ, রঙ, বিবরণ), রিফান্ড/ডেলিভারি/পেমেন্টের নিয়ম, চলতি অফার আর নোটিশ, আর আপলোড করা পণ্যের ছবি।
- কনফিগারেশন: যুক্ত পেজ বা নম্বরের আইডি, অ্যাসিস্ট্যান্টের নাম আর কথা বলার ধরন, অটোমেশন অন/অফ, কীওয়ার্ডের তালিকা।
৩.২ কাস্টমারের কাছ থেকে যা আসে
- বার্তা: কাস্টমার যা লেখেন আর তার জবাবে যে উত্তর তৈরি হয়। ২,০০০ অক্ষরের বেশি লম্বা বার্তা রাখার আগেই ছোট করে ফেলা হয়।
- ছবি: কাস্টমারের পাঠানো ছবি বা স্ক্রিনশট — সাধারণত যে পণ্যের কথা জিজ্ঞেস করছেন তার ছবি। বিস্তারিত ৩.৩-এ।
- প্ল্যাটফর্ম আইডি: ওই ব্যবসার জন্য প্ল্যাটফর্ম তাঁকে যে আইডি দেয় (যেমন মেসেঞ্জারের Page-Scoped ID), আর প্ল্যাটফর্মে তাঁর যে নাম দেখা যায় সেটা। কাস্টমারের ইমেইল আমাদের কাছে আসে না, আর তিনি নিজে না লিখলে ফোন নম্বরও পাই না।
- পাবলিক কমেন্ট: ব্যবসা কমেন্ট-হ্যান্ডলিং চালু রাখলে, তাদের পোস্টে করা কমেন্টের লেখা, আর কমেন্টকারীর নাম ও প্ল্যাটফর্ম আইডি।
- অর্ডারের তথ্য: কোনো অর্ডার রেকর্ড হলে, কাস্টমার যে নাম, ফোন নম্বর, ডেলিভারি ঠিকানা আর পণ্যের তালিকা দিয়েছেন সেটা।
৩.৩ কাস্টমারের পাঠানো ছবি — এখানে আমাদের কিছু পাকা প্রতিশ্রুতি আছে
একটা ছবিতে দেখা যায় তার চেয়েও বেশি কিছু লুকিয়ে থাকতে পারে, তাই নিচের বিষয়গুলো আমরা নিশ্চিত করি — শুধু কথার কথা নয়, সফটওয়্যারেই এগুলো বাধ্যতামূলক করে রাখা আছে:
- লোকেশনের তথ্য মুছে ফেলা হয়। ফোনে তোলা ছবিতে সাধারণত GPS লোকেশন লুকানো থাকে। প্রতিটা ছবি হাতে পাওয়ামাত্র নতুন করে এনকোড করা হয়, ফলে লোকেশনসহ সব EXIF তথ্য বাদ পড়ে যায়। এটা আমরা রাখিও না, ফিরিয়ে আনতেও পারি না।
- ছবি প্রাইভেটভাবে রাখা হয়। কাস্টমারের পাঠানো ছবি এমন জায়গায় রাখা হয় যেটা বাইরে থেকে কেউ দেখতে পায় না — ব্যবসার নিজের পণ্যের ছবি থেকে আলাদা জায়গায়, কারণ সেগুলো তো এমনিতেই সবাইকে দেখানোর জন্য।
- সীমিত সংখ্যক ছবি রাখা হয়। প্রতি কথোপকথনে সর্বোচ্চ দশটা ছবি রাখা হয় — শুধু সেগুলোই, যেগুলো অ্যাসিস্ট্যান্ট আসলেই প্রসেস করেছে।
- বার্তার মতোই ৬০ দিন পর মুছে যায় (দেখুন ৬.১)।
- একটা ছবি আমাদের AI প্রোভাইডারের (৫.২) কাছে পাঠানো হয় শুধু একটা কাজে — ওই ব্যবসার ক্যাটালগের কোন পণ্যটা এতে দেখা যাচ্ছে, সেটা বোঝার জন্য।
৩.৪ যেসব তথ্য এমনিতেই জমা হয়
সেবা চালাতে আর বিল করতে যা লাগে, শুধু সেটুকু আমরা রাখি: কথোপকথন আর বার্তার সংখ্যা, টোকেন আর খরচের হিসাব, সময়, এরর লগ, আর কোন AI মডেল ব্যবহার হয়েছে তার নাম। এই ধরনের সামগ্রিক পরিসংখ্যানে কোনো বার্তার লেখা থাকে না, কাউকে আলাদা করে চেনাও যায় না — তাই এগুলো আমরা সবসময়ের জন্যই রাখি (দেখুন ৬.২)।
৩.৫ যা আমরা রাখি না
আমরা বিজ্ঞাপন বা ক্রস-সাইট ট্র্যাকিং প্রযুক্তি ব্যবহার করি না। ডেটা ব্রোকারের কাছ থেকে কারও তথ্য কিনি না। কাস্টমারের কাছে জাতীয় পরিচয়পত্র নম্বর, কার্ড নম্বর, স্বাস্থ্য তথ্য বা অন্য কোনো সংবেদনশীল তথ্য আমরা চাই না, আর জেনেশুনে সংগ্রহও করি না। ব্যবসার কাছেও অনুরোধ — এই ধরনের তথ্য অ্যাসিস্ট্যান্টের জ্ঞানভাণ্ডারে দেবেন না।
৪. কেন রাখি, কোন ভিত্তিতে
| উদ্দেশ্য | ব্যবহৃত তথ্য | ভিত্তি |
|---|---|---|
| কাস্টমারদের উত্তর তৈরি | ৩.২, ৩.১ | ব্যবসার সাথে চুক্তি পালন; কাস্টমারদের উত্তর দেওয়ায় ব্যবসার নিজের স্বার্থ |
| ব্যবসাকে তার ড্যাশবোর্ড, ট্রান্সক্রিপ্ট আর অর্ডার দেখানো | ৩.১, ৩.২ | ব্যবসার সাথে চুক্তি পালন |
| বিলিং, কোটা আর ইনভয়েস | ৩.৪, ৩.১ | চুক্তি পালন; হিসাব রাখার আইনি বাধ্যবাধকতা |
| নিরাপত্তা, অপব্যবহার ঠেকানো আর সমস্যা সমাধান | ৩.৪, আর একান্ত দরকার হলে বার্তার লেখা | সেবা নিরাপদ রাখায় আমাদের নিজের স্বার্থ |
| উত্তরের মান বাড়ানো আর খরচ মাপা | ৩.৪ (সামগ্রিক), আর পরিচয়হীন করা বার্তা | সেবা উন্নত করায় আমাদের নিজের স্বার্থ |
৪.১ আমরা কারও তথ্য বিক্রি করি না
আমরা কারও ব্যক্তিগত তথ্য বিক্রি করি না, ভাড়া দিই না, অন্য কাউকে ব্যবহারের অনুমতিও দিই না। কাস্টমারের তথ্য বিজ্ঞাপনে, বিজ্ঞাপনের জন্য প্রোফাইল বানাতে, বা যে ব্যবসাকে তিনি মেসেজ করেছেন তাকে সেবা দেওয়া ছাড়া অন্য কোনো কাজে আমরা ব্যবহার করি না।
৪.২ AI মডেল ট্রেনিং
কাস্টমারের বার্তা দিয়ে আমরা নিজেদের কোনো মডেল ট্রেনিং করাই না — আসলে আমরা কোনো মডেলই ট্রেনিং করাই না। উত্তর তৈরির জন্য শুধু বিষয়বস্তুটুকু AI প্রোভাইডারের কাছে পাঠানো হয়। আমরা এমন প্রোভাইডার আর সেবা-স্তর বেছে নিই, যাদের শর্তে স্পষ্ট লেখা থাকে — পেইড বিজনেস ইন্টারফেসে পাঠানো কনটেন্ট তারা মডেল ট্রেনিংয়ে ব্যবহার করে না। প্রোডাকশনে সবসময় এমন স্তরই ব্যবহার করা আমাদের নিয়ম। তবে ওই প্রোভাইডারদের নিজস্ব শর্ত আমাদের হাতে নেই, তাই এর নিশ্চয়তা আমরা দিতে পারি না — প্রোভাইডারদের তালিকা আছে ধারা ৫-এ।
৫. কাদের সাহায্য নিই
সেবা চালাতে আমরা হাতেগোনা কয়েকটা বিশেষায়িত প্রোভাইডারের সাহায্য নিই। প্রত্যেকে আমাদের সাব-প্রসেসর — যতটুকু দরকার শুধু ততটুকুই পায়, আর আমাদের সাথে তাদের নিজস্ব চুক্তি আছে।
| প্রোভাইডার | কী কাজে | কী পায় |
|---|---|---|
| Google (Gemini, LiteLLM দিয়ে) | উত্তর তৈরি; ছবিতে পণ্য চেনা | বার্তা, ক্যাটালগ ও নিয়মের লেখা, কাস্টমারের পাঠানো ছবি |
| Supabase | ডেটাবেস আর ব্যবসার লগইন | সংরক্ষিত সব রেকর্ড; লগইন তথ্য |
| Cloudflare (R2, Pages) | ছবি রাখা আর ওয়েবসাইট হোস্টিং | পণ্যের ছবি; কাস্টমারের পাঠানো ছবি |
| Meta (ফেসবুক, ইনস্টাগ্রাম, হোয়াটসঅ্যাপ) | বার্তা আদান-প্রদান | চলাচলরত বার্তা, ধারা ৯ অনুযায়ী |
৫.১ লগইন-ব্যবস্থা
ব্যবসার লগইন সামলায় Supabase Auth। পাসওয়ার্ড ওই প্রোভাইডারের কাছে হ্যাশ করা অবস্থায় থাকে — মানে আসল পাসওয়ার্ড আমরা কখনো দেখিও না, রাখিও না।
৫.২ প্রোভাইডার বদল
সেবা চালাতে বা আরও ভালো করতে দরকার হলে আমরা প্রোভাইডার বদলাতে বা নতুন যোগ করতে পারি — যেমন AI প্রোভাইডার পাল্টানো। এই অংশ আমরা সবসময় হালনাগাদ রাখব। বদলের পরও সেবা ব্যবহার চালিয়ে গেলে ধরে নেওয়া হবে আপনি তা মেনে নিয়েছেন।
৫.৩ অন্য যেসব ক্ষেত্রে তথ্য জানাতে পারি
প্রযোজ্য আইন, আদালতের আদেশ, বা কোনো উপযুক্ত কর্তৃপক্ষের বৈধ অনুরোধে; নিজেদের আইনি অধিকার প্রতিষ্ঠা, প্রয়োগ বা রক্ষা করতে; কিংবা কোম্পানি একীভূত হলে, অধিগ্রহণ হলে বা সম্পদ বিক্রি হলে উত্তরাধিকারী প্রতিষ্ঠানের কাছে — এসব ক্ষেত্রে আমরা তথ্য প্রকাশ করতে পারি। এমন হস্তান্তরের পরও এই নীতি বলবৎ থাকবে।
৬. কতদিন রাখি
৬.১ কথোপকথনের তথ্য — ৬০ দিন
বার্তা, কাস্টমারের পাঠানো ছবি, পাবলিক কমেন্টের লেখা, আর কথোপকথন থেকে অ্যাসিস্ট্যান্ট যে নোট লেখে — এসব তৈরি হওয়ার ৬০ দিন পর আপনাআপনি মুছে যায়, এই কাজটা করে একটা অটোমেটেড প্রসেস। একবার মুছে গেলে আর ফিরিয়ে আনা যায় না — ব্যবসা বা আমরা, কেউই আর সেটা পড়তে পারি না।
৬.২ যেসব রেকর্ড কথোপকথনের পরও থেকে যায়
| রেকর্ড | কতদিন | কেন |
|---|---|---|
| ব্যবসার প্রোফাইল, ক্যাটালগ, নিয়ম, সেটিংস | অ্যাকাউন্ট চালু থাকা পর্যন্ত | এটা তো ব্যবসার নিজেরই কনটেন্ট |
| ব্যবসার আপলোড করা পণ্যের ছবি | অ্যাকাউন্ট চালু থাকা পর্যন্ত, বা ব্যবসা নিজে না মোছা পর্যন্ত | কাস্টমারদের দেখানোর জন্য দরকার |
| অর্ডার (নাম, ফোন, ঠিকানা, পণ্য) | ব্যবসায়িক রেকর্ড হিসেবে রাখা হয় | এটা ব্যবসার নিজের লেনদেনের প্রমাণ, কর বা কোনো বিরোধের সময় লাগতে পারে |
| সামগ্রিক গণনা আর বিলিং রেকর্ড | রাখা হয় | কোনো বার্তা নেই, কাউকে চেনাও যায় না; ট্রান্সক্রিপ্ট মুছে যাওয়ার পরও বিল যাচাই করতে লাগে |
| কথোপকথনের গণনা (বার্তার সংখ্যা, খরচ) | বার্তা মোছার পরও থাকে | শুধু সংখ্যা — ট্রান্সক্রিপ্ট চলে যাওয়ার পরও বিল ঠিক ছিল কিনা তার প্রমাণ |
আইনি, কর বা হিসাবের কারণে রাখতে হওয়া রেকর্ড, প্রযোজ্য আইনে যতদিন বলা আছে ততদিনই রাখা হয়।
৬.২ক শনাক্তকারীও মুছে যায়
বিল যাচাই করা যায় বলে কথোপকথনের রেকর্ডটা বার্তার চেয়ে বেশিদিন টিকে থাকে। কিন্তু যে জিনিসটা ওই রেকর্ডকে একজন নির্দিষ্ট মানুষের সাথে জুড়ে রাখে, সেটা থাকে না। কেউ শেষবার লেখার ষাট দিন পর সেটা বদলে একটা সাধারণ সিরিয়াল নম্বর বসিয়ে দেওয়া হয়।
তারপর যা পড়ে থাকে সেটা এরকম একটা লাইন — "কথোপকথন ১০২, ১৪টা বার্তা, এই খরচ" — কোনো মানুষের দিকে ইশারা করার মতো কিছুই তাতে নেই। এটা আবার আগের অবস্থায় ফিরিয়ে নেওয়ার মতো কোনো চাবি আমাদের কাছে, বা অন্য কারও কাছে নেই।
৬.৩ অ্যাকাউন্ট বন্ধ করলে
কোনো ব্যবসা অ্যাকাউন্ট বন্ধ করলে ৯০ দিনের মধ্যে তার তথ্য মুছে ফেলা হয়, বা এমনভাবে পরিচয়হীন করে দেওয়া হয় যে আর ফেরানো যায় না — তবে আইনি বাধ্যবাধকতা, কোনো বিরোধ মেটানো বা চুক্তি প্রয়োগের প্রয়োজন থাকলে সেটুকু বাদে। কোনো ব্যক্তি বা ব্যবসাকে চেনা যায় না এমন সামগ্রিক পরিসংখ্যান রেখে দেওয়া হতে পারে।
৭. নিরাপত্তা
সেবার ধরন অনুযায়ী যা যা দরকার সেসব ব্যবস্থা আমরা নিই: ডেটা পাঠানোর সময় এনক্রিপশন; প্রতিটা ড্যাশবোর্ড আর API অনুরোধে অথেনটিকেশন; প্রতিটা ব্যবসার তথ্য একদম আলাদা রাখা — কোড আর ডেটাবেস, দুই জায়গাতেই — যাতে এক ব্যবসা কখনো অন্যের রেকর্ড দেখতে না পারে; কাস্টমারের পাঠানো ছবির জন্য আলাদা প্রাইভেট জায়গা; প্রোডাকশন ডেটায় ঢোকার অনুমতি শুধু তাঁদেরই, যাঁদের সাপোর্ট বা সমস্যা সমাধানের কাজে সত্যিই দরকার; আর ছবি হাতে পাওয়ামাত্রই লোকেশনের তথ্য মুছে ফেলা।
কোনো তথ্য পাঠানো বা রাখার পদ্ধতিই একদম শতভাগ নিরাপদ নয়। আমরা তথ্য রক্ষায় যথাসাধ্য চেষ্টা করি, কিন্তু পুরোপুরি নিরাপত্তার নিশ্চয়তা দিতে পারি না, আর সেবা সবসময় নিরবচ্ছিন্ন বা ত্রুটিমুক্ত থাকবে তারও গ্যারান্টি দিই না।
৮. আপনার অধিকার ও পছন্দ
৮.১ আপনি যদি ব্যবসা হন
ড্যাশবোর্ড থেকে যেকোনো সময় নিজের ব্যবসার তথ্য দেখতে, ঠিক করতে আর ডাউনলোড করতে পারবেন। পণ্যের ছবি আর ক্যাটালগ এন্ট্রি নিজেই মুছতে পারবেন। অ্যাকাউন্ট আর তার সব তথ্য মুছে ফেলতে চাইলে লিখুন [email protected]-এ। অ্যাসিস্ট্যান্ট যেকোনো সময় ড্যাশবোর্ড থেকে বা চ্যাট কমান্ড দিয়ে থামাতে বা বন্ধ করতে পারবেন — বন্ধ করলে উত্তর দেওয়া তখনই থেমে যায়।
৮.২ আপনি যদি কাস্টমার হন
আমাদের কাছে আপনার কোনো অ্যাকাউন্ট নেই। যে ব্যবসাকে আপনি মেসেজ করেছেন, তাদের হয়ে আমরা শুধু আপনার তথ্য রেখে দিই।
- প্রথমে ওই ব্যবসার সাথে যোগাযোগ করুন। তথ্যটা তাদেরই নিয়ন্ত্রণে, তারা সরাসরি ব্যবস্থা নিতে পারবে।
- চাইলে [email protected]-এও লিখতে পারেন। আমরা আপনার অনুরোধ পাওয়ার কথা জানাব, সংশ্লিষ্ট ব্যবসাকে পাঠিয়ে দেব, আর তাদের নির্দেশমতো কাজ করব। কোনো আইনে আমাদের নিজেদেরই সরাসরি ব্যবস্থা নিতে হলে, আমরা তা-ই করব।
- আপনার রেকর্ড খুঁজে পেতে আমাদের বলুন কোন ব্যবসাকে, মোটামুটি কবে মেসেজ করেছিলেন। অনুরোধ যাচাই করারও দরকার হতে পারে। শুধু ইমেইল দিয়ে খোঁজা যাবে না, কারণ আপনার ইমেইল আমাদের কাছে নেই।
- অপেক্ষা করলেও চলবে: কোনো অনুরোধ ছাড়াই বার্তা আর ছবি পাঠানোর ৬০ দিন পর এমনিতেই মুছে যায়।
- অ্যাসিস্ট্যান্টের উত্তর বন্ধ করতে চাইলে সেই ব্যবসাকে মেসেজ করা বন্ধ করুন, অথবা তাদের বলুন এটা বন্ধ করে দিতে।
৮.৩ প্রযোজ্য ডেটা সুরক্ষা আইনে আপনার অধিকার
প্রযোজ্য আইন আপনাকে আপনার ব্যক্তিগত তথ্যের ওপর যে অধিকার দেয় — দেখা, ঠিক করা, মোছা, সীমিত করা, আপত্তি জানানো বা অন্য কোথাও নেওয়ার অধিকার — আমরা সেই আইন মেনেই তা রক্ষা করব। অনুরোধ পাঠাবেন ৮.১ বা ৮.২ অনুযায়ী। আইনে যে সময়সীমা বলা আছে তার মধ্যেই, আর যেকোনো অবস্থাতেই যত দ্রুত সম্ভব, আমরা উত্তর দেব।
৯. মেসেজিং প্ল্যাটফর্ম (Meta ও অন্যান্য)
বার্তা আমাদের কাছে আসে ফেসবুক মেসেঞ্জার, ইনস্টাগ্রাম বা হোয়াটসঅ্যাপ হয়ে। যাত্রার এই অংশটুকু চলে Meta-র নিজস্ব শর্ত আর প্রাইভেসি নীতি মেনে, আমাদেরটা মেনে নয় — আর Meta আমাদের থেকে আলাদাভাবেও সেই বার্তা প্রসেস করতে পারে। প্ল্যাটফর্ম ব্যবসার যুক্ত অ্যাকাউন্টে যা পাঠায়, আমরা শুধু ততটুকুই পাই।
প্ল্যাটফর্ম থেকে পাওয়া তথ্য আমরা শুধু যুক্ত ব্যবসাকে সেবা দিতেই ব্যবহার করি। বিজ্ঞাপনে ব্যবহার করি না, বিক্রি করি না, আর অন্য কোনো উৎসের তথ্যের সাথে মিলিয়ে প্রোফাইলও বানাই না। কোনো ব্যবসা তাদের পেজ বা নম্বর সরিয়ে নিলে, আমরা তখন থেকে আর তাদের বার্তা পাই না।
প্ল্যাটফর্মের নিয়ম প্ল্যাটফর্মই ঠিক করে। কখন একটা ব্যবসা কাউকে মেসেজ করতে পারবে — যেমন কাস্টমারের শেষ বার্তার পর একটা নির্দিষ্ট সময় পার হয়ে গেলে উত্তর দেওয়ার ওপর যেসব সীমা থাকে — এসব নিয়ম প্ল্যাটফর্মের বসানো, আমাদের নয়, আর এগুলো আমাদের না জানিয়েও বদলে যেতে পারে।
১০. শিশু
এই সেবা ব্যবসার জন্য বানানো, শিশুদের জন্য নয়। ব্যবসার হয়ে যিনি ব্যবহার করবেন তাঁর বয়স কমপক্ষে ১৮ হতে হবে। আমরা জেনেশুনে কোনো শিশুর ব্যক্তিগত তথ্য সংগ্রহ করি না। কোনো শিশুর তথ্য আমাদের কাছে চলে এসেছে মনে হলে [email protected]-এ লিখুন, আমরা সেটা মুছে দেব।
১১. আন্তর্জাতিক স্থানান্তর
আমাদের প্রোভাইডাররা (ধারা ৫) বাংলাদেশের বাইরেও অবকাঠামো চালায়, তাই তথ্য অন্য দেশেও প্রসেস হতে পারে — এমনকি এমন দেশেও যেখানকার ডেটা সুরক্ষা আইন আপনার দেশের চেয়ে আলাদা। সেবা ব্যবহার করলে, বা সেবা ব্যবহার করা কোনো ব্যবসাকে মেসেজ করলে, ধরে নেওয়া হবে আপনি এই স্থানান্তরের কথা জানেন। আমরা এমন প্রোভাইডারই বেছে নিই যারা যথাযথ চুক্তিভিত্তিক সুরক্ষা দেয়।
১২. নীতির পরিবর্তন
সেবার উন্নয়নের সাথে সাথে, বা আইন বদলালে এই নীতি হালনাগাদ হতে পারে। পাতার ওপরে যে সংস্করণ আর কার্যকর তারিখ লেখা থাকে, সেটাই সবসময় বর্তমান পাঠ বোঝায়। আপনার অধিকার উল্লেখযোগ্যভাবে কমে যায় বা আমরা যেভাবে তথ্য প্রসেস করি তা অনেকটা বেড়ে যায় — এমন পরিবর্তন কার্যকর হওয়ার আগে ড্যাশবোর্ডে জানিয়ে দেওয়া হবে। ওই তারিখের পরও সেবা ব্যবহার চালিয়ে গেলে ধরে নেওয়া হবে আপনি তা মেনে নিয়েছেন।
১৩. যোগাযোগ
প্রাইভেসি সংক্রান্ত প্রশ্ন, তথ্য মুছে ফেলার অনুরোধ, আর সাধারণ সাপোর্ট — সবকিছুর জন্য একটাই ঠিকানা: [email protected]। সাবজেক্ট লাইনে "প্রাইভেসি" লিখে দিলে অনুরোধটা আরও দ্রুত সঠিক জায়গায় পৌঁছায়।
তথ্য মুছে ফেলার ধাপে ধাপে নির্দেশনা: তথ্য মুছে ফেলা।
আরও দেখুন আমাদের শর্তাবলী।