Privacy Policy
Introduction
Omniflux ("we"), operated by Raudhah Capital Group, is a WhatsApp messaging platform that operates on behalf of our client businesses. This policy explains how we handle personal data while providing the service.
Data we process
Incoming WhatsApp messages (sender number, message content, timestamp, message type and message ID) and dashboard user account information (name, email and role).
Purposes of processing
Delivering messages to the dashboard, enabling team replies, keeping conversation records for later retrieval, and managing user access and roles.
Data roles
We process data as a service provider (processor) on behalf of client businesses (controllers). The data belongs to the client business. We do not sell personal data.
Data sharing
We do not sell personal data. Data is transmitted through Meta's official WhatsApp Cloud API and stored on our servers. We only share data with the infrastructure providers required to deliver the service.
Storage & security
Data is stored in an access-controlled database with role-based access controls and row-level security for data isolation.
Rights & deletion
For data access, correction or deletion, see the Data Deletion page or email admin@omniflux.net. As a processor, requests may be verified with the relevant client business.
PDPA (2024 Amendment)
We comply with the Personal Data Protection Act 2010 (PDPA) (Malaysia), as amended by the Personal Data Protection (Amendment) Act 2024. As a data processor, we are directly subject to the Security Principle, and we will notify the client business (controller) without delay if we detect a relevant personal data breach.