Privacy Policy
Effective date: April 20, 2026
1. Information We Collect
Account profile details, billing data, and contact information you provide during signup and use.
Messaging-related metadata, campaign activity, and platform analytics needed to operate service features.
Technical logs such as device, browser, and connection data for reliability, security, and troubleshooting.
2. How We Use Information
Provide and improve Msgera services including messaging, automation, reporting, and API functionality.
Protect platform integrity, prevent abuse, and enforce operational and legal requirements.
Communicate service updates, incident notices, and account-related support responses.
3. Data Sharing and Processors
We use trusted service providers for hosting, analytics, and communications under contractual safeguards.
We do not sell your personal data.
Information may be disclosed when required by law, court order, or valid legal process.
4. Data Retention and Security
Data is retained according to your plan limits, legal obligations, and operational requirements.
We apply access controls, encryption where appropriate, and monitoring practices to protect data.
No internet-connected system is fully risk-free; we continuously improve protections.
5. Your Rights and Contact
You may request access, correction, deletion, or export of your data, subject to legal constraints.
You can contact support for privacy requests and incident reporting.
Future dynamic legal text management will be available through the admin panel.
6. Cookies and Local Storage
We use only essential cookies, which are required to sign you in and keep your account secure. We do not use advertising or analytics cookies, so there is no cookie consent banner.
access_token (15 minutes) and refresh_token (7 days): your signed-in session in the dashboard. Both are HTTP-only and are removed when you sign out.
msgera_signed_in (7 days): a signed, HTTP-only marker that lets msgera.io and the dashboard recognise that you are signed in.
otp_nonce (30 minutes): ties an email-verification or password-reset code to the browser that requested it. It is sent only to sign-in requests.
admin_session (until the admin session expires): used only by Msgera administrators on the admin area.
In your browser storage we keep msgera-theme (your light or dark theme choice), and in the dashboard small flags that remember whether you dismissed the product tour or the onboarding checklist, plus, for the current tab only, a draft of an in-progress domain registration. None of these are sent to us.
If you add our website chat widget to your site, it stores a random visitor ID in the visitor's browser (bw_visitor_<widget id>) so their conversation can be restored. Stored conversations are deleted after the widget's retention period.