Data Deletion Instructions

Last updated: July 25, 2026

English Only

The English version is the legally binding version. Translations are provided for reference only.

Zavu Labs Inc. ("Zavu", "we", "our", or "us") operates a unified messaging API. This page explains how to request deletion of the data we hold about you, including data obtained through Facebook Login, the Messenger Platform, the Instagram Messaging API and the WhatsApp Business Platform.

This is the data deletion instructions page referenced in our Meta app configuration. Requests are handled by our privacy team at privacy@zavu.dev.

Which Case Applies to You

Zavu holds two kinds of data, and the deletion path depends on which one is yours.

  • You connected a Meta account to Zavu. You signed in with Facebook and linked a Facebook Page, an Instagram professional account or a WhatsApp Business Account to a Zavu sender. Zavu is the controller of your account data. Follow the steps below.
  • You messaged a business that uses Zavu. Your messages were processed on behalf of that business, which is the controller of that conversation. Contact the business directly, or write to us and we will forward your request to them and act on their instruction.

Data We Store from Meta Platforms

  • Facebook Page ID, Instagram professional account ID and WhatsApp Business Account identifiers
  • Access tokens issued by Meta for the accounts you connected
  • Page-scoped and Instagram-scoped user IDs of the people who message you
  • Profile names shown by the channel, where the platform provides them
  • Message content, media and timestamps for the conversations routed through Zavu
  • Delivery metadata: status, channel, cost and error codes

Message content is retained for 90 days by default and is configurable per project. See the Política de Privacidade for full retention terms.

Option 1: Delete Data from the Dashboard

If you have a Zavu account, you can delete most data yourself:

  • Contacts and their conversations: open Contacts, select the contact and delete it. This removes the contact, its channels and its conversation threads.
  • Programmatically: call DELETE /v1/contacts/{contactId} with your API key.
  • Channel connection: open Senders, select the sender and disconnect the Facebook, Instagram or WhatsApp channel. This revokes the stored access token.

Option 2: Remove Zavu from Your Facebook Account

To revoke Zavu's access to your Meta accounts:

  • Facebook: go to Settings & Privacy, then Settings, then Apps and Websites (or Business Integrations), find Zavu and select Remove.
  • Instagram: go to Settings, then Website Permissions, then Apps and Websites, find Zavu and select Remove.

Removing the app revokes our access going forward. It does not by itself erase data already stored in Zavu, so send a deletion request as described below if you also want that data removed.

Option 3: Request Full Deletion

To have everything we hold about you erased, email privacy@zavu.dev with the subject "Data deletion request" and include:

  • The Facebook Page, Instagram account or WhatsApp number involved
  • The email address of your Zavu account, if you have one
  • Whether you want a single conversation, one channel, or the entire account deleted

You can also reach us through the contact form. We may ask for proof that you control the account before we act, so that no one can delete another person's data.

What Happens After a Request

  • We acknowledge the request within 5 business days
  • Access tokens for the affected accounts are revoked immediately
  • Messages, media, contacts and profile data are erased from production within 30 days
  • Encrypted backups are rotated out within 90 days
  • We email a confirmation once the deletion is complete

What We Keep

We retain the records we are legally required to keep: invoices and tax records, and abuse and security logs needed to protect the platform and our carrier and channel partners. These are kept for the period required by law and are stripped of personal identifiers where that is possible. Aggregated statistics that cannot identify you are also retained.

Your Rights

Deletion is one of several rights you hold under GDPR, Ley 19.628 (Chile), CCPA and LGPD, alongside access, rectification, restriction, portability and objection. All of them are exercised through the same address: privacy@zavu.dev.

Related Policies

Data Deletion Instructions | Zavu