COMPLIANCE

Privacy Policy

Last updated: June 27, 2026

1. Introduction

J.Caesar ("we", "platform") is an AI-powered SaaS platform that enables businesses to communicate with their customers via WhatsApp, Instagram, and Facebook Messenger. This Privacy Policy explains how we collect, use, and protect personal data.

2. Data We Collect

From Platform Users (businesses): Name, email address, billing information, company details, and content uploaded to the platform (URLs, PDFs, product catalogs).

From Meta Platforms: Messages received via WhatsApp, Instagram, and Facebook Messenger; phone numbers or platform IDs of message senders; profile names. This data is processed solely to generate AI chatbot responses.

Automatically collected: IP address, browser type, usage statistics, and cookie data.

3. How We Use Data

Collected data is used exclusively for: generating AI chatbot responses for connected chatbots, managing customer service workflows, billing and subscription management, platform security and abuse prevention. Your data is never sold or shared with third-party advertising systems.

4. Use of Meta Platform Data

J.Caesar uses Meta's WhatsApp Business API, Instagram Graph API, and Facebook Messenger API. Data obtained through these APIs (messages, user IDs, profile names) is used solely to generate chatbot responses and display conversation history. This data is: not used to train third-party AI models, not processed for advertising purposes, not shared with non-Meta business partners.

4a. Use of Google Calendar Data

At your business's request, your chatbot is granted OAuth-based access to your Google Calendar so it can check availability and create appointments on your behalf. This integration is used solely to: query free/busy time slots, and add appointments booked through the chatbot as calendar events. Data obtained from Google Calendar (event titles, times, attendee emails) is processed solely for appointment management; it is not used for advertising, not used to train AI models, and our use adheres to the Google API Services User Data Policy, including the Limited Use requirements. Only the encrypted OAuth refresh token is stored in our database; calendar event content itself is not separately duplicated or retained. You may disconnect your Google Calendar at any time from the integrations panel.

5. Data Retention

Message histories are retained while the account is active. Upon account deletion request, all data is permanently deleted within 30 days. Meta API access tokens are stored in encrypted form.

6. Data Security

All data is transmitted with TLS encryption. Databases are protected with multi-tenant isolation architecture. Servers are hosted in Europe (DigitalOcean Frankfurt).

7. User Rights

You may request access to, correction of, or deletion of your data. For requests, email: privacy@jcaesars.com

8. Cookies

Essential cookies are used for platform functionality and session management. Consent is obtained separately for analytics cookies.

9. Contact

For privacy-related inquiries: privacy@jcaesars.com | jcaesars.com