Control
Tenant-owned context
Operational data stays associated with the authorized tenant. A tenant decides which supported accounts and communication numbers it connects.
Privacy and data use
This policy explains how Advertisement Intelligence processes information when you visit the public site, use a tenant workspace, connect an advertising account or communicate through WhatsApp.
Control
Operational data stays associated with the authorized tenant. A tenant decides which supported accounts and communication numbers it connects.
Purpose
We use information to provide, secure, support and improve the contracted advertising and communication services—not to sell personal information.
Choice
Subject to identity, authority and legal retention checks, applicable access, correction, export, restriction, objection and deletion requests can be submitted through the tenant administrator.
Who this policy covers
This policy covers the Advertisement Intelligence platform operated by 3Diamonds. It does not replace a tenant organization’s own privacy notice or the separate terms and privacy policies of Amazon, Meta, WhatsApp, OpenAI or another connected provider.
This policy applies to the public pages, authenticated tenant workspace, supported advertising integrations, system administration and WhatsApp communications provided through Advertisement Intelligence. A separate written customer agreement may add terms for a tenant organization; where mandatory law applies, that law prevails.
A tenant organization generally determines why its advertising and business-contact information is used and is responsible for its own lawful instructions, notices and permissions. 3Diamonds operates Advertisement Intelligence and processes that tenant data to provide and protect the service. For platform account, security, billing, abuse-prevention and legal-compliance information, 3Diamonds may determine the necessary processing purposes.
We may process account and organization details; verified email, role and session records; authorized advertising-account, profile, campaign, ad-group, keyword, target, product, budget and performance data; settings and optimization instructions; registered WhatsApp numbers, tags, messages, approved attachments and delivery status; privacy requests; and minimized security, audit, device, network and diagnostic evidence.
Information comes from you or your organization, connected advertising and communication providers, authorized administrators, service-generated calculations and logs, and the browser or device used to reach the service. We do not intentionally obtain personal information from data brokers for this service.
When a tenant authorizes an advertising account, the platform retrieves and stores the supported account structure, reports and performance facts needed for dashboards, analysis and governed changes. Provider credentials remain protected on the server. Disconnecting an account revokes its active use and queues deletion of provider-derived operational data, while limited audit, command or financial evidence may be retained when required for security, reconciliation or legal obligations.
Registered numbers can send commands and messages to the platform. Message text, approved attachments, sender and recipient routing, timestamps and delivery outcomes are processed to verify registration, understand a request, send a reply and maintain conversation history. Messages from unregistered numbers may be retained in a protected system-administrator inbox; they receive no tenant-context AI response. Removing or transferring a number does not transfer its earlier conversation history to another tenant.
The public information pages do not load advertising trackers or third-party analytics. Essential first-party cookies are used for secure sign-in, session protection, request forgery protection, language or non-sensitive interface continuity. Standard server logs may record bounded request, time, network, device and error information for security, reliability and abuse prevention.
We process information to authenticate users; provide tenant-isolated reporting, analysis, optimization, campaign controls and communications; fulfill tenant instructions; operate and support the service; prevent fraud and misuse; secure, diagnose and recover systems; maintain required records; enforce agreements; and comply with law. Depending on the context and applicable law, processing relies on contract, consent, legitimate service and security interests, legal obligations or another permitted basis.
Approved OpenAI services may receive bounded advertising evidence or limited WhatsApp text and tenant context to classify a request, draft a reply or propose analysis and optimization. Provider credentials and raw secret values are excluded. Model output is treated as untrusted and passes typed and deterministic controls before use. Requests disable application-state storage where supported, but provider abuse-monitoring retention may still apply. AI output can be incomplete or inaccurate and does not replace professional or legal advice.
We disclose only the information reasonably needed to authorized personnel, the tenant that controls the workspace, infrastructure and security providers, connected providers such as Amazon Ads, Meta and WhatsApp, approved AI services such as OpenAI, and approved reporting-support providers. Information may also be disclosed to comply with law, protect rights or safety, investigate misuse, complete a corporate transaction subject to appropriate safeguards, or act on the tenant’s documented instruction. We do not sell personal information.
The platform and its approved providers may process information in countries other than where you live. Where applicable law requires it, the responsible organization must use an approved transfer mechanism or other lawful safeguard. Provider location, availability and retention may be governed by the provider account and contract selected for the service.
Information is kept only for approved operational, security, audit, reconciliation, contractual and legal periods. Retention differs by record type and tenant configuration. Deletion requests may be delayed or limited by identity checks, active service needs, legal holds, fraud prevention, dispute evidence, financial records and mandatory retention. Encrypted backups and immutable evidence expire through their governed schedules rather than immediate live-record deletion.
Depending on applicable law, you may request access, correction, export, deletion, restriction or cessation of certain processing, object to certain uses, withdraw consent for future processing, or complain to a competent authority. Submit a request through your organization’s authorized tenant administrator. We may verify identity, authority, scope and applicable exceptions before acting. A registered WhatsApp number may also be removed from tenant settings.
We use measures designed for the service, including encrypted transport, encryption of sensitive content, tenant isolation, row-level database security, role-based access, protected server credentials, signed webhooks, bounded inputs, audit evidence, monitoring and tested recovery. Access is limited according to operational need. No internet service or security control can guarantee absolute security; report suspected misuse promptly through your tenant administrator.
The service is designed for organizations and authorized business users, not children. Tenants must not intentionally submit children’s personal information unless they have a lawful, documented reason and the platform has expressly approved that use. If you believe a child’s information was submitted improperly, contact the responsible tenant administrator.
Tenants and users must provide lawful instructions, maintain accurate account information, obtain required rights and notices for advertising and communication data, limit access to authorized people, protect credentials, avoid unnecessary sensitive content and use provider features consistently with applicable law and provider terms. The platform is not responsible for a tenant’s independent collection, campaign content or use outside the authorized service.
We may update this policy when services, providers, controls or legal requirements change. The updated date and published version identify the current policy. When a material change requires additional notice or consent under applicable law or contract, the responsible organization will use an appropriate channel before the change takes effect.
Contact your organization’s authorized Advertisement Intelligence tenant administrator first for privacy questions or requests so identity and tenant scope can be verified. The tenant administrator can escalate platform or provider matters to 3Diamonds through the protected administration channel. This route is not an emergency service.
Protect confidential information
Do not send passwords, access tokens, payment details, government identifiers, health information or other unnecessary secrets through WhatsApp or support messages.