Trust & Security

Privacy Policy

Last updated: September 28, 2026 • Effective Date: January 1, 2026

Key Summary

Clixsel is committed to total privacy transparency. We encrypt your automation payload data at rest and in transit, never sell your personally identifiable information to third parties, and fully comply with SOC2, GDPR, and CCPA standards.

1 Information We Collect

We collect information to provide better services and ensure optimal performance across our automation ecosystem:

  • Account Details: Name, work email address, team roles, and encrypted authentication credentials when registering an account.
  • Integration Credentials: OAuth tokens, API keys, and database connection strings supplied to connect third-party services. All credentials are encrypted using AES-256 before storage.
  • WhatsApp Business Data: When you connect your WhatsApp Business Account via wa.clixsel.com, we collect and store WhatsApp phone numbers, message content, media files, and opt-in consent timestamps. This data is encrypted at rest (AES-256) and is only used to deliver your messages via Meta's WhatsApp Cloud API. We never share this data with third parties.
  • Workflow Execution Logs: Metadata regarding execution timestamps, task success/failure rates, latencies, and diagnostic payload headers necessary for dashboard analytics.
  • Usage Analytics: IP addresses, browser agent types, and interaction telemetry collected automatically via essential system cookies.

2 How We Use Your Data

Your data is processed strictly for legitimate operational purposes:

  • Executing and triggering your configured automated workflows and LLM agent routines.
  • To send, receive, and store WhatsApp messages on your behalf as per your instructions and with explicit user opt-in.
  • Providing live system monitoring, log consoles, and real-time operational alerts.
  • Processing billing transactions, invoices, and managing team subscriptions.
  • Detecting and mitigating unauthorized system access, security threats, or malicious bot activities.

3 Data Protection & SOC2 Compliance

Clixsel undergoes annual SOC2 Type II audits. We enforce end-to-end TLS 1.3 encryption for all data in transit and AES-256 for persistent database storage. Workflow payloads routed through AI agents are never stored permanently or used to train public machine learning models.

4 Your GDPR & CCPA Rights

Depending on your jurisdiction, you retain full ownership of your data with rights including:

Right to Access & Export

Export all your stored data, account details, and workflow configurations in standard JSON formats at any time.

Right to Erasure

Request complete deletion of your account, active API keys, logs, and database records from active servers.

Have privacy concerns or data requests?

Our dedicated Data Protection Officer is available 24/7.

Contact Privacy Team