Last updated: January 26, 2025
The data controller responsible for processing your personal data is:
Mazdek GmbHPhone: +41 77 415 81 06
Email: [email protected]
Website: https://mazdek.ch
WhatsOrder is a product of Mazdek GmbH.
Product Website: https://whatsorder.ch
Privacy Contact: [email protected]
This Privacy Policy is based on the following legal frameworks:
We collect and process the following categories of personal data:
We process your data for the following purposes:
We may share your data with the following categories of recipients:
WhatsApp Business API for messaging functionality. Meta is headquartered in the USA. Data transfers are covered by EU-US Data Privacy Framework and Standard Contractual Clauses.
Payment processing for subscriptions. Stripe is certified under PCI DSS Level 1. Privacy policy: stripe.com/privacy
Server hosting and infrastructure (Hetzner Online GmbH, Germany). All databases (PostgreSQL, Redis) and search services (Meilisearch) are hosted on Hetzner servers in German data centers. Privacy policy: hetzner.com/legal/privacy-policy
Error tracking and application monitoring (Functional Software Inc., USA). Sentry processes technical error data and log information. Privacy policy: sentry.io/privacy
We may disclose data to Swiss authorities when required by law or court order.
Some of our service providers are located outside Switzerland and the European Economic Area. When transferring data internationally, we ensure adequate protection through:
We retain personal data only as long as necessary for the purposes described above, or as required by law:
| Data Category | Retention Period | Legal Basis |
|---|---|---|
| Account Data | Until account deletion + 30 days | Contract |
| Order/Transaction Data | 10 years | OR Art. 958f (Accounting) |
| Invoice/Payment Data | 7 years | Tax regulations |
| Chat Messages | Until account deletion | Contract |
| Log Files | 90 days | Security |
Under the Swiss Federal Act on Data Protection (FADP) and GDPR (where applicable), you have the following rights:
You can request information about the personal data we hold about you.
You can request correction of inaccurate or incomplete data.
You can request deletion of your personal data, subject to legal retention requirements. See our Data Deletion page for details.
You can request a copy of your data in a structured, commonly used format (JSON/CSV).
You can object to processing of your data based on legitimate interests.
Where processing is based on consent, you may withdraw it at any time without affecting the lawfulness of prior processing.
WhatsOrder does not use automated decision-making or profiling that produces legal effects or significantly affects you. Our AI-powered features (such as text improvement) are assistive tools that always allow human review and override.
We use essential cookies for authentication and session management. We do not use third-party advertising or tracking cookies. Analytics data is processed anonymously.
We implement appropriate technical and organizational measures to protect your data:
We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the platform at least 30 days before they take effect.
For any questions about this Privacy Policy or to exercise your rights, contact us at:
Email: [email protected]
Address: Mazdek GmbH, Kirchbergstrasse 4C, 8512 Thundorf, Switzerland
We aim to respond to all requests within 30 days as required by FADP.
If you are not satisfied with our response, you have the right to lodge a complaint with the Swiss Federal Data Protection and Information Commissioner (FDPIC):
Eidgenössischer Datenschutz- und Öffentlichkeitsbeauftragter (EDÖB)This Privacy Policy complies with the Swiss Federal Act on Data Protection (FADP/DSG), the Swiss Data Protection Ordinance (DPO/DSV), and where applicable, the EU General Data Protection Regulation (GDPR).
Jurisdiction: Thurgau, Switzerland