Privacy Policy
1. Who we are
Yunisphere ("we", "us") is a business-management platform for Singapore small businesses, currently operating in a limited pilot. Contact for all privacy matters: yunweihao31@gmail.com.
2. What we collect
- Account data — your email address and login credentials (passwords are stored only as secure hashes).
- Business data you enter — company profile, logo, clients and contacts, invoices, appointments, and assistant settings.
- WhatsApp messages — if you enable the WhatsApp assistant, messages between your customers and your connected number are processed and stored so the assistant can reply and keep conversation context.
- Google account connection — if you connect Google Calendar, we store the authorisation tokens Google issues so the app can read your calendars on your behalf. We never receive your Google password.
- Technical logs — standard server logs used for security and debugging.
3. How we use it
Only to provide Yunisphere: authenticating you, storing your business records, generating invoices, scheduling appointments, and producing AI-generated replies and text suggestions. We do not sell personal data and we do not use your data for advertising.
4. AI processing and sub-processors
To deliver specific features, data is processed by these providers, some located outside Singapore:
- Supabase — database, authentication and server functions (hosting all account and business data).
- Groq — AI inference. Text you submit for polishing, assistant chats, and WhatsApp messages handled by the assistant are sent to Groq to generate responses.
- Google (Google Calendar API) — if you connect Google Calendar, Google provides access to your calendar list and events so Yunisphere can display and reconcile them with your bookings. Governed additionally by Google’s own terms.
- Meta (WhatsApp Business Platform) — message delivery for the WhatsApp assistant, governed additionally by Meta's own terms.
By using these features you consent to this transfer and processing for the purposes described, consistent with Singapore's Personal Data Protection Act (PDPA).
5. Google Calendar integration
If you choose to connect Google Calendar, Yunisphere requests read-only permission to view the list of calendars you have access to and the events on them. We use this access only to:
- display your existing Google events alongside your Yunisphere bookings, so you can see your full schedule; and
- check for clashes so you are not double-booked.
Yunisphere never creates, edits, or deletes anything in your Google Calendar. If you want your Yunisphere bookings to show up in Google Calendar, you subscribe to a Yunisphere calendar feed (an iCalendar/ICS link) from inside Google Calendar. That is a one-way feed you add and remove yourself, and it needs no write permission from us.
We store the access and refresh tokens Google issues (server-side only, never in your browser) so the connection can be maintained without repeated sign-in. Calendar data is retrieved to show your schedule and is not sold, used for advertising, or shared with third parties. You can disconnect at any time inside Yunisphere, and you can additionally revoke access from your Google Account at myaccount.google.com/permissions.
Yunisphere’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
6. Your customers' data
Where you store your customers' details in Yunisphere or connect the WhatsApp assistant, you remain responsible for having the right to collect and use that data. Yunisphere processes it on your behalf to provide the service.
7. Security
Account data is isolated with database-level Row-Level Security, API credentials are held server-side only, and webhook traffic is cryptographically signature-verified. No system is perfectly secure, but isolation is enforced at the database, not just in the app.
8. Retention and deletion
Data is retained while your account is active. You may request access, correction, or deletion of your personal data at any time by contacting yunweihao31@gmail.com; we will respond within a reasonable period as required by the PDPA.
9. Changes
We will post updates to this page and revise the date above. Material changes during the pilot will be communicated directly.