Privacy Policy

Your privacy is important to us. Learn how we collect, use, and protect your information.

Last updated: August 12, 2025
GDPR Compliant

Privacy Overview

WhaWho respects your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, and safeguard your data when you use our WordPress plugins and services.

Information We Collect

1.1 Information You Provide

  • Purchase Information: Name, email address, billing details when you buy our plugins
  • Support Communications: Messages, emails, and support tickets you send us
  • Account Information: Details you provide when creating customer accounts
  • Feedback: Reviews, testimonials, and survey responses

1.2 Information Collected Automatically

  • Website Analytics: IP address, browser type, device information, pages visited
  • Plugin Usage: Version numbers, activation status, error logs (anonymized)
  • Cookies: Essential cookies for website functionality and user preferences

1.3 Information Our Plugins Process

Our plugins process data on your website to provide affiliate tracking functionality:

  • Affiliate click tracking and attribution data
  • Commission calculations and payment records
  • Customer purchase information for affiliate attribution
  • WhatsApp button click tracking (stored locally on your site)

Important: All affiliate and customer data processed by our plugins remains on YOUR website. We do not collect or store this data on our servers.

How We Use Your Information

2.1 Service Provision

  • Process plugin purchases and deliver download links
  • Provide technical support and customer service
  • Send plugin updates and security patches
  • Manage your customer account and license keys

2.2 Communication

  • Send purchase confirmations and receipts
  • Respond to support requests and inquiries
  • Send important product updates and security notices
  • Share relevant tips and best practices (with consent)

2.3 Improvement and Analytics

  • Analyze website usage to improve user experience
  • Identify and fix plugin bugs and compatibility issues
  • Develop new features based on user feedback
  • Monitor plugin performance and security

Data Sharing and Disclosure

3.1 We DO NOT Sell Your Data

We never sell, rent, or trade your personal information to third parties for marketing purposes.

3.2 Limited Sharing

We may share your information only in these specific circumstances:

  • Payment Processors: PayPal, Stripe for secure payment processing
  • Email Services: For sending transactional emails and support communications
  • Cloud Storage: Secure hosting of plugin files and customer data
  • Legal Requirements: When required by law or to protect our rights

3.3 Third-Party Integrations

Our plugins integrate with third-party services (WhatsApp, PayPal, Stripe). These integrations are governed by the respective privacy policies of those services.

Data Security

4.1 Security Measures

  • Encryption: All data transmission uses SSL/TLS encryption
  • Secure Storage: Customer data stored on encrypted, secure servers
  • Access Controls: Limited access to personal data on need-to-know basis
  • Regular Updates: Security patches and updates applied promptly
  • Monitoring: Continuous monitoring for security threats

4.2 Plugin Security

  • Regular security audits and vulnerability assessments
  • Secure coding practices and input validation
  • Protection against common WordPress vulnerabilities
  • Encrypted storage of sensitive configuration data

4.3 Data Breach Response

In the unlikely event of a data breach, we will notify affected users within 72 hours and take immediate steps to secure the data and prevent further unauthorized access.

Your Privacy Rights

5.1 GDPR Rights (EU Residents)

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate or incomplete data
  • Erasure: Request deletion of your personal data
  • Portability: Receive your data in a machine-readable format
  • Restriction: Limit how we process your data
  • Objection: Object to processing based on legitimate interests

5.2 CCPA Rights (California Residents)

  • Know what personal information is collected and how it's used
  • Request deletion of personal information
  • Opt-out of the sale of personal information (we don't sell data)
  • Non-discrimination for exercising privacy rights

5.3 How to Exercise Your Rights

To exercise any of these rights, contact us at privacy@whawho.comwith your request. We'll respond within 30 days and verify your identity before processing.

Cookies and Tracking

6.1 Essential Cookies

We use essential cookies for:

  • Website functionality and user authentication
  • Shopping cart and checkout processes
  • Security and fraud prevention
  • Remembering your preferences and settings

6.2 Analytics Cookies

With your consent, we use analytics cookies to:

  • Understand how visitors use our website
  • Improve website performance and user experience
  • Track conversion rates and marketing effectiveness

6.3 Plugin Tracking

Our affiliate tracking plugins use cookies on YOUR website to:

  • Track affiliate referrals and attribute sales
  • Remember affiliate links across browsing sessions
  • Provide accurate commission calculations

You control these cookies through your plugin settings and can configure cookie duration and tracking preferences.

Data Retention

7.1 Customer Data

  • Purchase Records: Retained for 7 years for tax and legal compliance
  • Support Communications: Retained for 3 years for service improvement
  • Account Information: Retained while your account is active
  • Marketing Preferences: Until you unsubscribe or request deletion

7.2 Website Analytics

  • Analytics data is anonymized after 26 months
  • IP addresses are masked and not stored long-term
  • Aggregated statistics may be retained indefinitely

7.3 Plugin Data

Data processed by our plugins on your website is under your control. You can configure retention periods and delete data as needed through your WordPress admin panel.

International Data Transfers

Our services are primarily based in Nigeria, but we may transfer data to other countries for processing by our service providers. When we do:

  • We ensure adequate protection through contractual safeguards
  • We comply with applicable data protection laws
  • We use providers with strong privacy and security practices
  • We limit transfers to what's necessary for service provision

Children's Privacy

Our services are not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.

If we discover we have collected personal information from a child under 16, we will delete that information promptly.

Contact Us About Privacy

If you have questions about this Privacy Policy or how we handle your data, please contact us:

Privacy Officer

Email: privacy@whawho.com

WhatsApp: +234 XXX XXX XXXX

Response Time: Within 30 days

Mailing Address

WhaWho Privacy Team

[Business Address]

Lagos, Nigeria