Nolla, operated by Avernor Pte. Ltd., is a messaging and customer relationship tool for businesses. It gives a business one inbox for the messages its customers send on WhatsApp, Instagram, and Facebook Messenger, together with the contact records, automations, and reporting around them.
Two different roles, and why it matters to you
If you are a business using Nolla, we hold your account details and we are responsible for them.
If you are someone who messaged a business that uses Nolla, your messages and contact details belong to that business. We only store and process them on that business's instructions, as their service provider. If you want your data corrected or deleted, the business decides, and you may prefer to contact them directly. You can also write to us at contact@asknolla.com and we will pass the request on and act on it as instructed. See Data deletion.
What we hold
For a business using Nolla:
- Account details of the people who log in: name, email address, and optionally a phone number and time zone.
- Credentials for the messaging channels the business connects, such as access tokens from Meta. These are stored server-side and are never shown back in the browser.
- Device registrations used to send push notifications to operators.
For the customers of a business using Nolla:
- Contact details the business holds or receives: name, phone number, email, the platform-specific id (for example a WhatsApp id or an Instagram-scoped id), and any tags, notes, or custom fields the business adds.
- The conversation itself: messages sent and received, including images and documents, and delivery and read receipts.
- Attribution data when a person arrives from an advertisement, so the business can tell which campaign produced an enquiry.
Where it comes from
- Meta, when a person messages the business on WhatsApp, Instagram, or Messenger, through the official platform interfaces.
- The business itself, when it adds or edits a contact.
- The business website, when a visitor clicks through to message the business.
What we do with it
- Deliver the messages to the business inbox and send its replies back to the platform.
- Route and assign conversations to the right person on the team, and notify them.
- Generate replies and summaries with an AI assistant, when the business turns that on.
- Produce reporting for the business about its own conversations.
We do not sell personal data, we do not use it for advertising, and we do not use the content of a business's conversations to train AI models.
Who else processes it
We use a small number of service providers, and only for the purposes above:
- Meta Platforms: delivers the messages themselves on WhatsApp, Instagram, and Messenger.
- Supabase: hosts the database and file storage.
- Vercel: hosts the dashboard application.
- Anthropic: provides the AI model. When a business enables an AI agent or the assistant, the relevant message content is sent to Anthropic to generate a reply. It is not used to train their models.
How long we keep it
Conversation and contact data is kept for as long as the business keeps using Nolla, because the business needs its own history. A business can delete a contact or a conversation at any time, and when it does, we delete the record and its media. If a business stops using Nolla, its data is deleted within 30 days of the account being closed, unless we are required by law to keep something for longer.
How it is protected
- Data is encrypted in transit.
- Each business can only see its own data. This is enforced in the database itself, not merely in the interface.
- Channel access tokens are readable only by our server, never by the browser or by other businesses.
Your rights
Under Singapore's Personal Data Protection Act, and under the GDPR where it applies, you may ask for a copy of your personal data, ask us to correct it, ask us to delete it, and withdraw consent. Write to contact@asknolla.com and we will respond within 30 days. If your data belongs to a business using Nolla, we will act on that business's instructions and tell you so.
Changes
If this policy changes materially, we will update the date at the top of this page and, for businesses using Nolla, tell you in the product.