B
Buenchat

Privacy Policy

Last updated: August 20, 2026

1. Overview

Buenchat ("we", "us", "our") is an AI-powered sales automation platform that helps businesses manage customer conversations via Instagram Direct Messages. This Privacy Policy explains how we collect, use, and protect information when you use our service.

2. Information We Collect

From Business Accounts

  • Business name, contact details, and email address
  • Product catalogs, pricing, and business rules you provide
  • Instagram account credentials and access tokens
  • Agent configuration and response preferences

From End-User Conversations

  • Instagram-scoped user identifiers for customers who message your business
  • Message content (text and audio transcriptions) within conversations
  • Conversation metadata (timestamps, message status)

Usage Data

  • API usage metrics and message counts
  • Agent performance and conversation outcomes
  • Website visits, referring page, landing page, and advertising campaign parameters (such as UTM tags and Meta click identifiers)
  • Browser and device information, IP address, and Meta measurement cookies when you accept advertising measurement
  • First-party funnel events from landing visit through account registration, agent setup, Instagram connection, first automated reply, and subscription
  • A browser identifier and temporary session identifier used to connect acquisition events to your account and business after registration

Public Demo Conversations

  • Questions submitted to the Buenchat website demo and the answers generated by the demo
  • An anonymous session identifier, conversation stage, qualification score, and outcome metadata
  • Landing page, referring page, and UTM campaign parameters associated with the demo session
  • The demo does not ask for or separately attach your name, email address, IP address, or Meta measurement cookies to the conversation transcript

Pilot Applications

  • The contact and business information you submit in the pilot application form
  • Advertising attribution data associated with that application

3. How We Use Your Information

  • Deliver the service: Process incoming messages and generate AI responses on behalf of your business.
  • Improve response quality: Use conversation history to maintain context within a session.
  • Improve the public demo: Analyze anonymized demo questions, objections, qualification signals, and campaign performance to improve Buenchat and its onboarding.
  • Billing and account management: Track usage to calculate service costs.
  • Security: Detect and prevent abuse or unauthorized access.
  • Support: Diagnose issues and respond to your requests.
  • Advertising measurement: Understand which campaigns result in registrations, activated agents, qualified outcomes, and subscriptions, and improve campaign performance.

We do not sell or rent your data or your customers' conversation data. We share limited website and application attribution data with Meta only for the advertising measurement described below.

4. Instagram and Meta Platform Data

Our service integrates with Instagram through Meta's official APIs. When using this integration:

  • Message data is transmitted through Meta's infrastructure.
  • We only access message content to generate automated responses on your behalf.
  • We comply with Meta's Platform Terms and Messaging Guidelines.
  • End-user data obtained via Meta's APIs is not used to train AI models.

5. Advertising Measurement and Cookies

On our public website, registration flow, and application, we use Meta Pixel and Meta's Conversions API to measure whether an advertisement leads to a registration and subsequent product outcomes. The browser Pixel loads only after you accept advertising measurement.

  • Browser events may include page views, lead or registration events, Meta cookies, campaign parameters, browser information, and IP address.
  • Our server may send Meta registration, agent creation, first automated reply, qualified lead generated, call scheduled, and subscription events together with a one-way hashed version of the Buenchat account owner's email to improve attribution.
  • We do not send the applicant's offer, business problem, ticket size, DM volume, Instagram handle, or fit score to Meta.
  • We do not send uploaded files, imported website content, prompts, conversation content, or the Instagram contact's identity to Meta for advertising measurement.
  • Choosing "Only necessary" prevents Meta Pixel from loading and prevents these server-side Meta measurement events.

You can change your choice at any time with the "Measurement" control shown on the site. When you choose "Only necessary" while signed in, we also revoke the server-side advertising measurement preference and remove stored Meta click, cookie, IP, and browser identifiers. Browser privacy controls and ad settings provided by Meta may offer additional controls.

Separately, we keep a first-party product funnel to understand where visitors and account owners encounter friction. Before registration it uses a browser identifier and a temporary session identifier. After registration, those identifiers are linked to the Buenchat user and business so we can measure setup and activation. Internal events may include step status, duration, error category, device context, and campaign parameters, but not uploaded content, prompts, passwords, access tokens, or message content. Diagnostic events are not shared with Meta.

6. Data Storage and Security

Conversation data is stored in a secure cloud database (Turso / LibSQL). We implement industry-standard security measures including:

  • Encrypted connections (TLS) for all data in transit
  • Access controls limiting data access to authorized personnel only
  • Regular security reviews of our infrastructure

7. Data Retention

We retain conversation data while your business account is active and only as long as needed to operate, secure, and comply with legal obligations for the service. You may request deletion at any time through our support form.

8. Third-Party Services

We use the following sub-processors:

  • Google Gemini: Primary AI message generation.
  • Anthropic: Optional AI fallback when enabled.
  • Meta / Instagram APIs: Message delivery infrastructure and, when enabled, advertising measurement through Meta Pixel and Conversions API.
  • OpenAI (Whisper): Audio message transcription.
  • Turso: Secure database hosting.
  • Stripe: Subscription payment processing.
  • Resend: Transactional email delivery.

9. Your Rights

You and your customers have the right to:

  • Access: Request a copy of the data we hold about you
  • Correction: Request correction of inaccurate data
  • Deletion: Request deletion of your data
  • Portability: Request your data in a machine-readable format
  • Opt-out: Stop AI-automated messaging at any time by replying STOP

10. Children's Privacy

Buenchat is not directed at children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us data, please contact us and we will delete it promptly.

11. Changes to This Policy

We may update this Privacy Policy periodically. We will notify business account holders of material changes via email. Continued use of the service after changes constitutes acceptance of the updated policy.

12. Contact Us

For any privacy-related questions or requests, contact us at: