Security and compliance

Privacy notice

Customer and staff data stays scoped to each business workspace.

Data collected

Zivo stores WhatsApp conversation records, customer names and phone numbers, quotes, invoices, payment statuses, receipts, jobs, staff assignment history, audit logs, automation settings, and billing usage.

Workspace isolation

Each query, report, public customer link, and staff workflow is scoped to the workspace or business that owns the record. Public quote, invoice, and receipt pages expose only customer-facing information.

Access controls

Managers and admins can configure billing, staff roles, templates, and reports. Normal staff see only the chats and jobs allowed by their workspace permissions.

Private Relay safeguards

Transaction relay participants are represented by opaque Zivo relay identities. Direct phone numbers and email addresses are masked before messages are shared with another participant, contact details and relay message copies are encrypted at rest, and tamper-evident hashes are stored for relay message integrity.

Consent or a recorded transactional messaging basis is required for relay delivery. Workspace managers can withdraw consent, block, report, unblock, and resolve reports. These actions are enforced before delivery and retained in a security audit trail.

Exports

Authorized managers can request a workspace data export from the Data Export page.