Privacy Policy

Last updated: April 14, 2026

1. Data Controller

The data controller is Venteo. For any questions regarding your data, contact us at: privacy@venteo.boutique

2. Data Collected

Venteo collects the following data:

Account Data

Business name, email address, password (encrypted). Collected at registration.

Configuration Data

Agent system prompt, agent name, connected WhatsApp number. Provided by the client.

End User Data

WhatsApp phone numbers, conversation history, orders, appointments. This data belongs to the client (tenant) and concerns their own customers.

Usage Data

Number of messages processed, media sent, usage statistics. Used for billing and service improvement.

3. Purposes of Processing

  • • Providing and managing the Venteo service
  • • Account authentication and security
  • • Payment processing via Chariow
  • • Improving service performance
  • • Communicating important updates
  • • Complying with legal obligations

4. Sub-processors and Data Sharing

Venteo works with the following service providers:

Supabase

Database and authentication

US / EU

OpenAI

Message processing via GPT-4o

United States

Chariow

Payment processing

West Africa

Vercel

Web interface hosting

US / EU

Contabo

WhatsApp server hosting

Germany / EU

Venteo never sells your data to third parties. Data is shared only with the providers listed above, strictly for the purpose of delivering the service.

5. Data Retention

  • Account data — retained until account deletion + 30 days
  • Conversations — retained for 12 rolling months
  • Orders and contacts — retained for the lifetime of the account
  • Payment data — retained by Chariow per their own Terms

6. Your Rights

Under applicable regulations, you have the following rights:

  • Access — obtain a copy of your personal data
  • Rectification — correct inaccurate data
  • Erasure — request deletion of your data
  • Portability — receive your data in a standard format
  • Objection — object to certain processing activities

To exercise these rights, contact us at privacy@venteo.boutique. We respond within 30 days.

7. Data Security

Venteo implements technical and organizational measures to protect your data: password encryption, HTTPS connections, restricted database access via Supabase service keys, and per-tenant data isolation. In case of a data breach, you will be notified within 72 hours.

8. Cookies

Venteo only uses functional cookies necessary for authentication (Supabase session). No advertising or third-party tracking cookies are used.

9. Client Responsibility (Tenant)

As a Venteo client, you are responsible for processing the personal data of your own users (their WhatsApp numbers, messages, orders). You must ensure you inform your users about the use of an AI agent and obtain their consent where required by applicable local legislation.

10. Changes

This policy may be updated. In case of material changes, you will be notified by email 15 days before the changes take effect. The current version is always available on this page.

11. Contact

For any questions about this policy or your personal data: privacy@venteo.boutique