Legal

Privacy Policy

Last updated

At Atomiq, accessible at https://atomiq.tech, we are committed to safeguarding your privacy and ensuring that your personal and business data is collected, processed, and stored responsibly. This Privacy Policy explains the information we collect, how we use it, and the rights you have regarding your data.

01Information We Collect

We collect different types of information based on your interaction with our platform:

aPersonal Information

  • Name
  • Email address
  • Phone number
  • Business name or company profile
  • Billing details for subscription or purchase purposes
  • Gender and date of birth — optional, collected for statistical analysis only: understanding our audience and improving Atomiq. Never shown to your customers

bUsage & Technical Data

  • IP address and browser type
  • Pages visited, time spent, and actions taken on our platform
  • Device type and operating system
  • Product analytics events describing how you use the dashboard and the mobile app — which screens you open, which features you use, and when. These are collected using Google Analytics for Firebase and are linked to a pseudonymous account identifier, not to your name or email address
  • Diagnostic records created when something fails for you: the screen you were on, the error reported by your browser or device, and your browser or device type. We use these to fix the fault and, where useful, to contact you about it

cThird-Party Platform Data

When you connect third-party services such as Facebook Pages or Instagram Business accounts, we may access the following data only after explicit user authorization:

  • Page ID, Page name, and associated metadata
  • Messages, comments, and engagement data
  • Business account details
  • Message attachments such as images, videos, voice notes, and other supported media
  • Tokens or credentials required to securely interact with those services

We never access third-party data without your explicit permission. All permissions are handled through secure OAuth flows and official platform integrations.

02How We Use Your Information

We use your information to:

  • Provide and personalize your Atomiq experience
  • Enable you to create, manage, and operate AI employees for customer communication and business automation
  • Receive and respond to messages from connected Facebook and Instagram accounts
  • Allow staff members to manually respond to conversations when enabled
  • Display analytics and insights related to your connected services
  • Improve platform performance, reliability, and security
  • Fulfill legal or regulatory requirements
  • Improve our AI models and the quality of AI employee replies, using conversation data that is anonymised and aggregated first (see section 9)
  • Share a list of phone numbers with other participating businesses, so that people who repeatedly refuse deliveries can be prevented from ordering again — only where you have switched this on for your business, only for customers you have marked as refusing a delivery, and only as a phone number

03Facebook & Instagram Data Usage

If you connect a Facebook Page or Instagram Business account, Atomiq requests only the minimum permissions required to deliver messaging automation and assisted responses. These permissions may include:

  • pages_show_list – to list and verify Facebook Pages you manage
  • pages_manage_metadata – to configure webhooks and receive platform updates
  • pages_messaging – to receive and reply to Facebook Messenger messages
  • pages_utility_messaging – to send allowed utility-based message replies
  • pages_read_engagement – to read messages, comments, and engagement
  • business_management – to manage linked assets when required
  • instagram_manage_messages – to read and reply to Instagram direct messages
  • instagram_business_manage_messages – to manage Instagram Business messaging
  • Human Agent feature – to allow a staff member to take over conversations

Using these permissions, Atomiq may process:

  • Text messages
  • Voice messages
  • Images and videos
  • Message context (such as replies to stories, ads, or comments)

This data is used solely to provide AI-powered replies, staff-assisted responses, and conversation visibility for the business owner.

We do not sell, rent, or misuse Facebook or Instagram data. Access can be revoked at any time through the respective platform's settings.

04Data Sharing and Storage

We do not sell or rent your data.

Limited data sharing may occur only with:

  • Trusted hosting and infrastructure providers used to operate the platform
  • Legal authorities, when required by law
  • Google, as the provider of Google Analytics for Firebase, which receives the product analytics events described in section 1(b) together with a pseudonymous account identifier. Google is not given your name, email address, phone number, card or bank details, or the content of your or your customers' messages. When you buy a subscription we also report that purchase to Google Analytics — the amount you paid us, its currency, and which plan — so that we can tell which advertisement brought a paying business to Atomiq rather than only which one brought a sign-up

All data is encrypted in transit and at rest, and access is limited to authorized systems only.

Who controls your customers' data

The people who message a merchant's Facebook or Instagram page are that merchant's customers, not ours. The merchant decides what is collected, how it is used, and how long it is kept; Atomiq stores and processes it on their instructions, as their service provider.

  • Exports are the merchant's decision. The dashboard lets a merchant download their own customer list, including in the format advertising platforms such as Meta accept. What they upload, and to whom, is theirs to decide and theirs to be accountable for under applicable law.
  • We do not sell customer lists, and we never share one merchant's customers with another.
  • If you are a customer of a business that uses Atomiq and you want your data corrected or deleted, contact that business first. We will help them act on it, and section 12 explains how to reach us directly if they do not.

05Cookies and Tracking

We use cookies and similar technologies to:

  • Keep you securely logged in
  • Understand usage patterns
  • Improve performance and user experience

On the mobile app the same measurement is performed by Google Analytics for Firebase using device-level identifiers rather than cookies.

Meta Pixel

Our website and web dashboard include the Meta Pixel, a measurement technology provided by Meta Platforms, Inc. It places cookies in your browser and reports two things to Meta:

  • Page views — which pages of our site you open.
  • Account creation — that an Atomiq account was created, along with the sign-up method (email or Google) and whether you arrived intending to subscribe.

We use this for one purpose: to measure whether our advertising reaches the right businesses. The Pixel does not send Meta your name, email address, phone number, or any identifier that names you, and we do not use Meta's "advanced matching" feature in it. The conversion events our servers send, described immediately below, are different — those do include your email address in a disguised form, and we explain exactly how.

The Pixel receives nothing from inside the product — not your conversations, your customers' messages, your catalogue, your orders, or your customers' details.

Because these two events are shared with Meta, Meta handles them under its own Data Policy rather than under this one. You can review or limit how Meta uses them at facebook.com/adpreferences, and blocking cookies in your browser stops the Pixel loading at all. The mobile app contains no Meta Pixel.

You may disable cookies in your browser settings; however, some features may not function correctly. The mobile app has no equivalent switch — neither Android nor iOS offers a per-app control for the product analytics described in section 1(b). Resetting or deleting your advertising identifier in your device's privacy settings limits advertising-based measurement, but does not stop those analytics events.

Conversion events sent from our servers

Separately from the Pixel, our own servers report three events to Meta directly:

  • Account creation — that an Atomiq account was created.
  • Activation — that a workspace connected an AI employee to a Facebook Page or an Instagram account for the first time.
  • Subscription payment — that you bought a paid subscription, together with the amount you paid, its currency, and which plan. We report it so we can tell which advertisement brought a paying business to Atomiq, rather than only which one brought a sign-up.

These reports include your email address and your Atomiq account number, each turned into an irreversible code (a SHA-256 hash) before it leaves our servers. We do not send the readable values, and we do not send your phone number, your name, or your business name.

We would rather say plainly what that means than call it anonymous. Hashing hides the address from anyone who intercepts the message, but it does not make you unidentifiable to Meta: Meta applies the same process to its own users' details and compares the results, so a match tells Meta that the person who opened an Atomiq account is a particular Facebook or Instagram user. That is what these events are for — it is how we learn which advertisement actually brought a business to Atomiq.

Nothing from inside the product is included: not your conversations, your customers' messages, your catalogue, your orders, or your customers' details. The subscription payment event carries what you paid us and the plan you chose — a fact about your account with Atomiq, never anything from inside your workspace. Your customers are never the subject of these events, and we send nothing about them to Meta for advertising.

Blocking cookies or using an ad blocker does not stop these three events, because our servers send them rather than your browser. If you would rather we did not send them, write to privacy@atomiq.tech and we will switch them off for your account; your service is unaffected either way. You can also review or limit how Meta uses them at facebook.com/adpreferences.

06Data Retention

We retain data only for as long as necessary to:

  • Provide our services
  • Comply with legal obligations
  • Resolve disputes

Messaging and conversation data is retained while your account is active. You may request deletion at any time.

07Your Rights

Under applicable laws (including GDPR and CCPA), you have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request data deletion
  • Withdraw consent for data processing

To exercise these rights, contact: privacy@atomiq.tech

08Data Deletion Instructions

You may request deletion of your data through the platform:

  • Log in to the website
  • Go to Settings
  • Select Profile
  • Click Delete My Account

This permanently deletes your account, your workspace, and your business data — your AI employees, conversations, customers, products and orders.

One exception, and it is a legal obligation rather than a choice. We keep a record of payments you made to Atomiq: the amount, the date, the plan purchased, and the name, business name and email address the account was registered under at the time of payment. We are required to retain proof of transactions for accounting and tax purposes, and we cannot reconcile a payment against our payment provider's records without knowing who made it. These records are visible only to Atomiq staff, are never used for marketing, and are never shared for advertising. Nothing else about you is kept.

09AI Model Behavior

AI employees operate strictly based on user-defined instructions and configurations.

  • AI responses are generated using conversation context and connected business data
  • Staff members may take over conversations at any time
  • Moderation and monitoring tools are provided for safety and compliance

Atomiq is not responsible for user-generated prompts but provides safeguards to prevent misuse.

Improving our AI with anonymised data

We use conversations that pass through Atomiq to make our AI employees better over time. Before any conversation data is used for this purpose:

  • Identifying details are removed — customer names, phone numbers, addresses, and anything that identifies a specific business.
  • Only general patterns are kept — the kinds of questions customers ask, wording that works well, and issues common to a business category.
  • A person reviews the result before it is applied to any AI employee.

We do not train models on your raw conversations, and we never expose one business's data, customers, or content to another business. What is learned are patterns — never facts about your business, your pricing, or your suppliers.

AI crawlers and automated extraction

Our public pages — the marketing site, help articles, and anything else readable without signing in — are open to crawlers, including AI and large-language-model crawlers. That is a deliberate choice: we would rather be found and quoted accurately than be invisible to the tools people now use to search.

Nothing behind a sign-in is included. Merchant accounts, customer conversations, orders, contacts and catalogues are not public, not crawled, and never offered to anyone for AI training. The only AI use of that data is the narrow, anonymised improvement described directly above, which happens inside Atomiq.

10Children's Privacy

Atomiq is not intended for children under the age of 13. We do not knowingly collect data from children, and any such data will be deleted promptly.

11Changes to This Policy

We may update this Privacy Policy periodically. The "Last Updated" date reflects the most recent revision. Significant changes will be communicated via email or in-app notifications.

12Contact Us

If you have questions or concerns about this Privacy Policy, about the data we hold, or you want your data deleted, email us at privacy@atomiq.tech and a person will reply.