Privacy Policy
Your privacy is important to us. This policy explains how we collect, use, and protect your information when you use Brava's digital loyalty platform.
Last updated: August 12, 2026
Quick Navigation
Information We Collect
Personal Information
When you create an account or use our services, we may collect personal information such as your name, email address, phone number, and business information.
Usage Data
We collect information about how you use our platform, including card interactions, customer engagement metrics, and feature usage patterns.
Device Information
We may collect information about the devices you use to access our services, including IP addresses, browser types, and operating systems.
How We Use Information
Service Provision
We use your information to provide, maintain, and improve our loyalty card platform and related services.
Communication
We may use your contact information to send you service updates, promotional materials, and respond to your inquiries.
Analytics and Insights
We analyze usage patterns to help you understand your customer engagement and improve your loyalty programs.
Data Sharing and Disclosure
Third-Party Services
We may share your information with trusted third-party service providers who help us operate our platform, such as payment processors and email services; with Meta, which operates WhatsApp, when you use WhatsApp signup or messaging, including the form details you submit and the replies and links Brava sends through WhatsApp, as described under “WhatsApp Signup and Messaging”; and with the provider of an AI assistant where one is connected, as described under “AI Assistants and Connectors”.
Legal Requirements
We may disclose your information if required by law, legal process, or to protect the rights, property, or safety of Brava, our users, or others.
Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the business transaction.
WhatsApp Card Delivery
When a Business Sends Your Card
A participating business may ask an authenticated staff member to create a prepaid loyalty card for you and deliver it through WhatsApp. Before submitting, the staff member must confirm that you asked to receive the card this way. Brava records the business, staff member, time, phone number and version of the disclosure shown for that issuance.
Information Sent to Meta
To deliver the card, Brava sends Meta’s WhatsApp Business Platform your WhatsApp phone number, first name, the loyalty-card name, a card image and a private wallet-and-statement link. Meta also provides Brava with message identifiers, delivery, read and failure statuses, pricing category information, and any message you send back to the Brava number. Meta handles this information under its own terms and privacy policy.
The Private Card Link
The link in the WhatsApp message contains a long, unguessable token that acts as the credential for the card’s balance, transaction statement, wallet-install options and, where enabled, online top-up. It does not require a Brava account. Anyone who obtains the complete link can use it, so you should treat it as private and avoid forwarding or publishing it.
Replies, Opt-Out and Retention
Replies to the Brava WhatsApp number are received even though the number is not a merchant support inbox. Brava keeps the raw WhatsApp webhook payload for up to 30 days and retains the derived message and delivery record while needed to operate the service, attribute messaging costs, handle requests and meet legal obligations. If you send STOP or a recognised equivalent, Brava records that choice and blocks later sends to that phone number.
AI Assistants and Connectors
Connecting an Assistant
Brava can be connected to a supported AI assistant, currently Claude (Anthropic), ChatGPT (OpenAI) or Gemini Enterprise (Google). You can then ask questions about your own loyalty programme in plain language. Connecting one is done by a business owner or a manager on the account; any other sign-in gets no data through the connection. You can disconnect it at any time from within the assistant, which stops it calling us. Separately, a small number of Brava administrators can reach aggregate business data through these same tools while operating the platform, but cannot use them to retrieve your individual customer records; see “Access by Brava Staff” below.
What the Assistant Can Change
A connected assistant cannot change your business or customer data: it cannot issue or edit loyalty cards, record or reverse visits, alter customer records, or send announcements or notifications to your customers. Its business tools either read data or prepare a link that opens Brava with draft announcement wording for you to review. One product-feedback tool can record a feature request inside Brava when you ask for functionality the connector does not support. That record does not perform the requested action or contact any customer.
What Is Shared
When the assistant answers a question, it can receive: aggregate business metrics (such as visit counts, revenue, orders and rewards redeemed over a period, and breakdowns by day, week, month, hour, location or card); your business profile and outlet names; your loyalty-card configuration and rules; your announcement history and how recipients behaved around a send; and, when an authorised member of your business asks for them, individual customer records. Customer records cover a customer’s name and loyalty membership and activity, including which card they hold, when they joined and last visited, lifetime visit count and spend, and current stamps, points or tier. A customer’s birthday can be included only when the request specifically needs it, and then only as month and day (never the year). The assistant also sends us the parameters of each request, for example a customer name you asked it to look up.
What Is Never Shared
Customer phone numbers and email addresses are never sent to an AI assistant: none of the queries behind the connection select those columns. Full dates of birth are also withheld. Only the month and day can be shared, and only for a request that specifically needs birthdays, so birthday campaigns can be discussed without exposing a customer’s age or year of birth. One thing to keep in mind: text you write yourself, such as announcement copy and card names, is shared with the assistant exactly as written, so please do not put customer contact details into it.
Transfer to the AI Provider
When a connected assistant calls one of these tools, the results are transmitted to the provider operating that assistant: Anthropic for Claude, OpenAI for ChatGPT, or Google for Gemini Enterprise. From that point they are handled under that provider’s own privacy policy and data-retention terms, not ours. Those three are the only assistants that can complete the connection flow: we maintain that list, and an assistant that is not on it cannot be authorised to connect. We recommend reading their terms before connecting: Anthropic’s privacy policy and OpenAI’s privacy policy and Google’s privacy policy. Brava does not control how long a provider retains a conversation or whether it is visible to that provider’s staff.
Access by Brava Staff
A small number of Brava administrators can access aggregate business metrics, business and loyalty-card configuration, and announcement history in order to operate the platform and support our customers, including through the tools described in this section. They cannot use a connected assistant to retrieve your individual customer records. Where an administrator uses a connected assistant, the permitted business data is transmitted to that assistant’s provider without a separate opt-in by you. That access is limited to those few people, used only for running and supporting the service, and written to our server logs whenever it reaches a business other than their own. No other Brava staff have it, and your own team members can only ever reach the businesses they work for.
What Brava Records
Brava does not generally store either the questions you ask an assistant or the answers it returns. We do keep our own record of operational metadata about each request: which tool ran, whether it succeeded and how long each stage took, which assistant made the request, and the Brava account and business it belonged to. We keep that operational record for 30 days, after which it is deleted automatically. We do not otherwise record request parameters or the data returned to the assistant. There are two disclosed exceptions. If you ask for unsupported Brava functionality, the feature-request tool stores its three structured fields: the capability requested, the outcome wanted, and why the current tools cannot provide it, together with your account and business identifiers, status, timestamps and repeat count, so our product team can consider it and contact you if it becomes available. Please do not include customer names, contact details, secrets or other personal data in that request. Demonstration and reviewer accounts that we create and operate ourselves are also monitored in full, including request parameters, so we can evaluate an app review; that monitoring applies only to those accounts, never to yours. Our hosting provider separately keeps its own server-side logs, which record requests that fail and record it whenever a Brava administrator reads a business other than their own, under its standard retention period.
Your Responsibility as a Business
The customer data in your Brava account is data you collected from your own customers, and you remain responsible for it under applicable law, including India’s Digital Personal Data Protection Act. Choosing to connect an AI assistant means choosing to send some of that data to a third-party provider. Please satisfy yourself that this is compatible with the notice and consent you gave your customers before you enable it.
Changes to This Section
The connector is under active development and will gain capabilities over time. This section describes what it does today. We will update it here before a change takes effect that alters what an assistant can do or what data it receives, particularly before any tool can modify business or customer data, send or publish anything, and before any category of data beyond those described above is shared. The revision date at the foot of this page tells you when it last changed.
WhatsApp Signup and Messaging
Signing Up Through WhatsApp
Some businesses let you join a prepaid card programme by messaging them on WhatsApp instead of filling in a web form. Scanning a QR code or tapping a link opens a WhatsApp chat, where you can enrol and receive your current balance. If online top-up is available, an “Add money” button in the chat opens Brava’s secure web top-up page; otherwise the message tells you to top up at the business. This channel is used for prepaid cards only.
What WhatsApp Gives Us
When you message a business on WhatsApp, WhatsApp itself gives us your phone number and the display name on your WhatsApp profile. It does not supply the email address associated with your WhatsApp account. We receive an email address only when you type one into the enrolment form described below.
What You Tell Us in the Chat
To enrol, you fill in a short form inside WhatsApp: your full name and email address, both required, and your date of birth, which is optional. An optional checkbox records whether you would like that business to send you balance information and offers on WhatsApp in the future. Brava does not currently use that preference for proactive WhatsApp messages. You can withdraw or change it by contacting privacy@brava.cards.
Operational Records About WhatsApp Activity
While handling WhatsApp messages, Brava creates operational records that may include your phone number, WhatsApp profile name, Meta’s message identifier, the business and outlet involved, whether the record concerns an incoming or outgoing message, the message type, whether the free reply window was open, the processing or delivery outcome, error and processing metadata, which button you tapped if any, how long messages took to arrive or be answered, whether you edited the message a QR code pre-filled for you before sending it, and the country and region inferred from your phone number’s dialling code. The name you type into the enrolment form, rather than your WhatsApp profile name, is used for your customer record. We do not copy the text of your messages into this longer-lived operational log.
How Long We Keep It
Raw WhatsApp webhook payloads, including message content, are scheduled for deletion by a weekly purge once they are more than 30 days old, so they are ordinarily removed between 30 and 37 days after receipt. The separate operational records described above are kept for longer and are not automatically removed when a related business or customer record is deleted. A reply prepared after the free reply window closes may also remain in the WhatsApp session record even though it is not sent. You can ask us to delete WhatsApp records linked to you by contacting privacy@brava.cards, unless we must keep particular information for legal, tax, or accounting purposes.
When We Message You
We only ever reply to a message you send us, and only while the 24-hour reply window opened by your latest message remains active. We do not send marketing messages, proactive balance updates, or pre-approved message templates over WhatsApp. Once the window closes, the reply is not sent, and Brava never switches to a paid message to reach you outside that window.
One Customer Record
If you sign up through WhatsApp, your phone number becomes part of the same customer profile Brava already uses for web signups. It is stored and used alongside any other information the business holds about you, and is covered by the rest of this policy in the same way.
Data Security
Protection Measures
We implement industry-standard security measures to protect your personal information from unauthorized access, disclosure, or destruction.
Encryption
All data transmission is encrypted using SSL/TLS protocols, and sensitive data is encrypted at rest using advanced encryption standards.
Access Controls
We maintain strict access controls and regularly audit our systems to ensure only authorized personnel can access your information.
Retention
We keep your account and customer data for as long as your Brava account is active. If you close your account, or ask us to delete your data, we remove it within a reasonable period, except where we are required to keep records for legal, tax or accounting purposes. Operational metadata about AI-assistant requests is kept for 30 days and then deleted automatically. Raw WhatsApp webhook payloads are purged weekly once they are more than 30 days old; separate WhatsApp operational and session records are retained for longer and require a specific deletion request. See “WhatsApp Signup and Messaging”. Feature-request tickets are product-feedback records and are kept while they are being considered or worked on, and as needed to maintain product history and notify you if the feature becomes available; you may ask us to delete them under the rights below. Other server-side logs are held by our hosting provider under its standard retention period.
Your Rights
Access and Portability
You have the right to access your personal information and request a copy of your data in a portable format.
Correction and Deletion
You can request corrections to inaccurate information or request deletion of your personal data, subject to legal and contractual obligations.
Opt-Out
You can opt out of marketing communications at any time by following the unsubscribe instructions in our emails or contacting us directly.
Contact Information
Privacy Inquiries
If you have questions about this privacy policy or how we handle your personal information, please contact us at privacy@brava.cards.
General Contact
For general inquiries about our services, you can reach us at teams@brava.cards or through our contact form.
Updates to Policy
We may update this privacy policy from time to time. When we do, we revise the date shown at the foot of this page, so you can tell when it last changed. We encourage you to review it periodically.
Questions About Our Privacy Policy?
We're committed to transparency and protecting your privacy. If you have any questions or concerns about how we handle your data, we're here to help.
