Connexa

Privacy Policy

Effective date: 31 August 2026

1. About Connexa

Connexa is operated by AYSYS. Connexa is a conversation-first workspace that helps authorized workspace members manage contacts, conversations, relationship activity, and related business records.

2. Information We Collect

Depending on the features you use, Connexa may process:

  • account and identity information, such as your email address, account identifier, authentication session information, and workspace membership and role;
  • contact and relationship information, such as names, phone numbers, email addresses, addresses, contact endpoints, relationship details, and profile fields entered by workspace members;
  • conversation information, including message content, timestamps, channel and provider identifiers, message status, notes, and conversation metadata;
  • business records, including transactions, payments, borrowing and penalty information, reminders, relationship events, activity evidence, and files or payment proofs that a workspace member chooses to upload; and
  • technical and security information needed to authenticate requests, authorize workspace access, operate integrations, diagnose failures, and protect the service.

Connexa does not intentionally collect IP address or device-profile data as a standalone product record. Infrastructure providers may process network and request information when delivering their services.

3. How We Use Information

We use information to authenticate users, enforce workspace permissions, provide and maintain conversation and business workflows, deliver messages through connected channels, display operational status, respond to support and privacy requests, and protect and troubleshoot Connexa.

4. Conversations and Business Data

Workspace members decide what contact, conversation, relationship, financial, reminder, event, note, and file information they add to Connexa. This information is scoped to the relevant workspace and is used to provide the workspace features selected by authorized members.

5. WhatsApp Business Platform

When a workspace connects the WhatsApp Business Platform, Connexa may process phone and contact identifiers, message content and timestamps, channel and provider account identifiers, WhatsApp message identifiers, delivery, read, and failure status, relevant consent or opt-in evidence, and outbound execution metadata. This information is used to route messages, operate conversations, prevent duplicate sends, and show delivery outcomes.

Meta and WhatsApp separately process information under their own terms and privacy policies. Connexa does not control that independent processing. Learn more in the Meta Privacy Policy.

6. AI Features

Connexa follows a Human First, AI Second approach. Conversations are not automatically submitted to an external AI provider. When a member explicitly uses an AI-labelled feature such as Ask AI, Connexa processes the member's question and the eligible workspace context selected for that feature to produce assistance. The current service implementation uses in-application processing and does not send this content to an external AI model provider. If this changes, this policy will be updated to identify the relevant processing.

7. Service Providers

Connexa currently uses the following providers where the related feature is enabled:

  • Supabase provides authentication, database, and file-storage infrastructure. It may process account identifiers, sessions, workspace records, business data, and uploaded files. See the Supabase Privacy Policy.
  • Meta / WhatsApp Business Platform provides optional WhatsApp messaging and status delivery. It may receive contact identifiers, message content and metadata, provider identifiers, and delivery information.

We do not list temporary development tunnels or speculative future services as active processors.

8. Data Storage and Retention

Data is retained while necessary to provide the service and according to the current workspace, conversation, message, business-record, and file lifecycle. Connexa does not currently publish a single fixed retention period for every data category. More specific periods may be introduced under future legal and release policies. Provider credentials and secrets are handled separately from browser-visible content; Connexa stores business content and sanitized execution or status evidence rather than raw provider response bodies as product records.

9. Data Security

Connexa uses workspace-scoped authorization, membership and role checks, server-side handling of provider credentials, and authenticated access controls for stored workspace data. No system is completely secure, and we cannot guarantee absolute security.

10. Sharing and Disclosure

We disclose information to service providers when needed to operate the features described above, to workspace members according to their authorized access, when required to protect users or the service, or when legally required. We do not claim that information is sold or used for advertising.

11. Your Choices and Rights

You may choose what information to add, whether to use optional WhatsApp or AI-labelled features, and whether to upload files. Depending on your relationship with a workspace and applicable requirements, you may ask to access, correct, or delete information associated with you. Some requests may require identity or authority verification.

12. Data Deletion Requests

Connexa does not currently provide a complete self-service control for deleting an account or an entire workspace. Individual features may provide removal controls, such as removing an uploaded payment proof or clearing certain workspace records. Where self-service deletion is unavailable, email aysys.privacy@gmail.com with enough information to identify the relevant account, workspace, or data. We may need to verify your identity and authority before acting. Some information may remain where necessary for security, operational integrity, dispute handling, or legal obligations.

13. Children

Connexa is a business workspace and is not directed to children. Do not provide children's personal information unless you have the authority and a valid reason to do so.

14. International Processing

Connexa and its service providers may process information in countries other than the country where a user or contact is located. Those locations may have different data-protection rules.

15. Changes to This Policy

We may update this policy as Connexa's features, providers, or data practices change. The effective date above will be updated when a revised policy is published.

16. Contact Us

For privacy questions, privacy requests, or data deletion requests, email aysys.privacy@gmail.com.

17. Effective Date

This Privacy Policy is effective on 31 August 2026.