Data Deletion Instructions
Last updated: July 25, 2026
English Only
The English version is the legally binding version. Translations are provided for reference only.
Zavu Labs Inc. ("Zavu", "we", "our", or "us") operates a unified messaging API. This page explains how to request deletion of the data we hold about you, including data obtained through Facebook Login, the Messenger Platform, the Instagram Messaging API and the WhatsApp Business Platform.
This is the data deletion instructions page referenced in our Meta app configuration. Requests are handled by our privacy team at privacy@zavu.dev.
Which Case Applies to You
Zavu holds two kinds of data, and the deletion path depends on which one is yours.
- You connected a Meta account to Zavu. You signed in with Facebook and linked a Facebook Page, an Instagram professional account or a WhatsApp Business Account to a Zavu sender. Zavu is the controller of your account data. Follow the steps below.
- You messaged a business that uses Zavu. Your messages were processed on behalf of that business, which is the controller of that conversation. Contact the business directly, or write to us and we will forward your request to them and act on their instruction.
Data We Store from Meta Platforms
- Facebook Page ID, Instagram professional account ID and WhatsApp Business Account identifiers
- Access tokens issued by Meta for the accounts you connected
- Page-scoped and Instagram-scoped user IDs of the people who message you
- Profile names shown by the channel, where the platform provides them
- Message content, media and timestamps for the conversations routed through Zavu
- Delivery metadata: status, channel, cost and error codes
Message content is retained for 90 days by default and is configurable per project. See the Privacy Policy for full retention terms.
Option 1: Delete Data from the Dashboard
If you have a Zavu account, you can delete most data yourself:
- Contacts and their conversations: open Contacts, select the contact and delete it. This removes the contact, its channels and its conversation threads.
- Programmatically: call
DELETE /v1/contacts/{contactId}with your API key. - Channel connection: open Senders, select the sender and disconnect the Facebook, Instagram or WhatsApp channel. This revokes the stored access token.
Option 2: Remove Zavu from Your Facebook Account
To revoke Zavu's access to your Meta accounts:
- Facebook: go to Settings & Privacy, then Settings, then Apps and Websites (or Business Integrations), find Zavu and select Remove.
- Instagram: go to Settings, then Website Permissions, then Apps and Websites, find Zavu and select Remove.
Removing the app revokes our access going forward. It does not by itself erase data already stored in Zavu, so send a deletion request as described below if you also want that data removed.
Option 3: Request Full Deletion
To have everything we hold about you erased, email privacy@zavu.dev with the subject "Data deletion request" and include:
- The Facebook Page, Instagram account or WhatsApp number involved
- The email address of your Zavu account, if you have one
- Whether you want a single conversation, one channel, or the entire account deleted
You can also reach us through the contact form. We may ask for proof that you control the account before we act, so that no one can delete another person's data.
What Happens After a Request
- We acknowledge the request within 5 business days
- Access tokens for the affected accounts are revoked immediately
- Messages, media, contacts and profile data are erased from production within 30 days
- Encrypted backups are rotated out within 90 days
- We email a confirmation once the deletion is complete
What We Keep
We retain the records we are legally required to keep: invoices and tax records, and abuse and security logs needed to protect the platform and our carrier and channel partners. These are kept for the period required by law and are stripped of personal identifiers where that is possible. Aggregated statistics that cannot identify you are also retained.
Your Rights
Deletion is one of several rights you hold under GDPR, Ley 19.628 (Chile), CCPA and LGPD, alongside access, rectification, restriction, portability and objection. All of them are exercised through the same address: privacy@zavu.dev.