Data Protection & Privacy

CustomerPilot Privacy Policy

Last updated: August 2026

1. Overview

CustomerPilot ("CustomerPilot", "we", "our", or "us") provides an autonomous customer retention and loyalty platform for retail and hospitality merchants. This Privacy Policy explains how we collect, use, and protect information when merchants use our software and when retail customers interact with our WhatsApp digital stamp cards and Google Review tools.

2. Information We Collect

Merchant Account Data: Business name, owner name, business email, business phone number, store address, Google Business Profile location identifier, and billing details.

Customer Loyalty Data: Customer phone number (used solely for WhatsApp stamp card delivery and opt-in notifications), customer name, visit timestamps, purchase amount notes, and loyalty stamp progress.

3. How Information Is Used

  • To deliver digital loyalty stamps, reward notifications, and Google review bonus alerts to retail customers via WhatsApp.
  • To provide merchants with store analytics, repeat customer metrics, and daily morning intelligence reports.
  • To facilitate authorized cashier check-ins and prevent stamp duplication.
  • We never sell customer or merchant data to third-party advertisers or data brokers.

4. WhatsApp & Third-Party Service Providers

CustomerPilot communicates with customers through official WhatsApp Business APIs and verified communication adapters. Messages are strictly transactional and opt-in based. Customers may opt out of automated loyalty updates at any time by texting "STOP" or requesting removal directly from the merchant.

5. Google Business Profile & OAuth Data

When a merchant connects Google Business Profile, CustomerPilot accesses store location details and verified public reviews solely to draft personalized reply recommendations for the merchant to approve. We do not modify or post reviews on behalf of customers.

6. Data Security & Retention

All customer and merchant data is transmitted over encrypted TLS 1.3 channels and stored in secure database clusters with Write-Ahead Logging (WAL) and automated backups. Authentication sessions use signed JWT tokens with strict HTTP-only cookies.

7. Contact Us

For privacy inquiries, data deletion requests, or merchant support, please contact our Data Protection Team at privacy@customerpilot.ai or support@customerpilot.ai.

© 2026 CustomerPilot Inc. · Autonomous Merchant Retention SaaS