NotiSynk legal information
Privacy Policy
What NotiSynk records, why, and what you can ask us to do
- Version:
- 2.0
- Effective date:
- 2026-08-16
This policy explains what information NotiSynk holds, why it is held, who it reaches, how long it stays, and what you can require us to do about it. It covers two different groups of people: the Professionals who use NotiSynk, and the Clients whose details a Professional records in it. The two are treated differently, and section 3 explains why.
1. Who processes your information
The Service is operated by the operator of NotiSynk from Lebanon. The Legal Notice identifies the operator and gives the current contact details.
For questions about this policy, or to make any request described in section 8, write to info@notisynk.com.
2. What we hold
The table below lists the categories of information in NotiSynk and where each comes from. It reflects what the Service actually stores.
| Category | What it includes | Where it comes from |
|---|---|---|
| Professional account | Name, email address, password stored only as a hash, email-verification state, language preference, role | Entered by you when you register or update your account |
| Workspace | Workspace name and settings, plan and entitlement state, reminder preferences, team membership | Entered by you, or set by the Service from your plan |
| Client | Client name, email address, phone number, notes you write, archive state, reminder and consent preferences | Entered by you, not collected from the Client |
| Plan and Client Subscription | Plan type and terms, start and end dates, auto-renew setting, status, session allowance | Entered by you |
| Session | Session balances, consumption and restoration events, and the history of those events | Recorded when you use the Service |
| Reminder activity | Channel, reminder reason, queued and sent times, delivery status, and a safe failure reason where a message fails | Produced by the Service and by the message provider |
| WhatsApp consent | Whether a Client has consented, when consent was given, and whether it was withdrawn | Recorded by you, and revoked by the Service when a phone number changes |
| Billing | Plan, subscription status, billing period, payment and refund records, payment-method type, card brand, last four digits and expiry | Returned by the payment provider; NotiSynk never sees a full card number or security code |
| Client revenue (Max only) | Payment, refund and adjustment amounts you record against a Client, business dates, reporting currency and financial snapshots | Entered by you as a record of what happened outside NotiSynk |
| Support | Support tickets, messages and their status | Written by you and by the support team |
| Legal acceptance | Which document versions were accepted, when, and in which context | Recorded when you accept a document |
| Security and technical | Sign-in and session records, refresh-token records, request and error logs, rate-limit counters | Produced automatically when the Service is used |
3. Professionals and Clients are different
If you are a Professional, you give NotiSynk your information directly and this policy describes what we do with it.
If you are a Client, your details did not come from you. A Professional entered them so they could manage your Plan, your Client Subscription and the reminders you receive. That Professional decides what to record and why. NotiSynk stores and processes it on their instructions in order to run the Service, and the Data Processing Addendum sets out the terms.
Because the information did not come from you, Lebanese law places the duty to tell you about it on the person who decided to record it. If you are a Client and you want to know what is held about you, ask the Professional you deal with first. They can see and correct everything in their Workspace. If you cannot reach them, or they do not answer, write to us at the address in section 8 and we will help you reach them and will act on any request the law requires us to act on ourselves.
4. Why we hold it
Information is collected for specific and stated purposes and is not reused for a purpose that does not match them.
- To create and run your account and Workspace, and to keep you signed in.
- To provide the features of your plan: Clients, Plans, Client Subscriptions, sessions, archiving and restoration, and on Max the revenue records and reports.
- To send the reminders your Workspace is configured to send, by email and by WhatsApp.
- To send service messages about your account, billing, security and changes to these documents.
- To take payment for a paid plan, to handle refunds, and to keep the billing record that goes with them.
- To answer support requests.
- To keep the Service secure: to detect and investigate abuse, unauthorised access and fraud, and to enforce rate limits.
- To keep the evidence of which legal document versions were accepted and when.
- To meet a legal obligation, to establish or defend a legal claim, and to comply with a lawful request from a competent authority.
5. What is required and what happens if you do not provide it
Some information is necessary and some is not. This section states which is which, because Lebanese law requires that the difference be made clear at the point of collection.
| Information | Required? | If it is not provided |
|---|---|---|
| Your name and email address | Required | An account cannot be created; the email address is how the account is verified and how notices reach you |
| Password | Required | An account cannot be created |
| Email verification | Required | The Workspace stays unusable until the address is confirmed |
| Payment details, for a paid plan | Required for that plan only | The paid plan cannot be started; Free is unaffected |
| Client email address | Optional | Email reminders cannot be sent to that Client |
| Client phone number | Optional | WhatsApp reminders cannot be sent to that Client |
| Client notes and revenue records | Optional | The Service works without them; they exist for your own operational use |
| Language preference | Optional | The interface stays in the default language |
6. Who it reaches
Information is not sold, and it is not shared for anyone else's advertising. It reaches the following recipients and no others.
- The people inside your own Workspace who you have given access to.
- The providers listed in the Subprocessors notice, each only for the purpose stated there: Stripe, Meta Platforms (WhatsApp Business Platform), Aiven, Namecheap Private Email, Vercel.
- A small number of NotiSynk administrators, where access is needed to support, secure or operate the Service.
- A competent authority or court, where a lawful request requires it, and a professional adviser where necessary to establish or defend a legal claim.
- A successor, if the Service is transferred as part of a business transfer, on the condition that this policy continues to apply.
The providers we use operate infrastructure outside Lebanon, so information is processed outside Lebanon. Each provider is bound by its own contract and data-protection commitments, listed in the Subprocessors notice. NotiSynk does not rely on European standard contractual clauses or on an adequacy decision, and does not claim any transfer mechanism it has not entered into.
7. How long it stays
Information is kept for as long as it is needed to run the Service, to keep the business and security records that have to be kept, to meet a legal obligation, to resolve a dispute and to enforce the agreement. Categories follow different rules, and some records cannot be deleted on request.
The Data Retention Policy sets this out category by category, including the records that are append-only and therefore cannot be edited or removed once written: legal acceptance evidence, revenue transactions and session events.
8. What you can ask us to do
Lebanese law gives you the following rights over information about you. They apply whether you are a Professional or a Client, and they cannot be signed away: an agreement that purports to remove them has no effect.
- Ask whether information about you is being processed at all, and receive a copy of it in a form you can understand.
- Ask for the purposes, categories, source and nature of the processing, and for who the information is sent to or can see it.
- Ask us to correct, complete or update information that is wrong, incomplete, unclear or out of date.
- Ask us to erase information that is inaccurate, that has expired, that does not match the purpose it was collected for, or that should not be held.
- Object, for a legitimate reason, to your information being collected or processed, including for any commercial promotion.
Send a request to info@notisynk.com. We may ask you for enough information to be sure who you are, so that we do not disclose someone's records to the wrong person. A correction, completion, update or erasure that we are required to make is made free of charge within 10 days of the request, and where we have already sent the corrected information to someone else we tell them about the change.
There is no charge for a request. For a copy of your information we may charge no more than the cost of producing it. We may decline a request that is repetitive or made in a way designed to obstruct rather than to obtain information, and if we do, the burden of showing that is on us.
9. Where we cannot simply delete
Some records cannot be removed on request, and it would be misleading to suggest otherwise. Where a right of erasure does not reach a record, we say so and explain why.
- Legal acceptance evidence is append-only. It records which document version you accepted and when, and it is the proof that the agreement exists. It is not rewritten and not deleted.
- Revenue transactions and session events are append-only histories. A correction is recorded as a further entry rather than by changing or removing the original.
- Billing records connected to a payment are kept as business and accounting records for the period the applicable law requires.
- Security and audit records are kept where they are needed to investigate abuse or unauthorised access, or to establish or defend a claim.
- The message provider keeps its own delivery records under its own retention rules, which NotiSynk does not control.
Outside those cases, deleting your account removes the Workspace and its Client records. Where a record is retained for one of the reasons above, it is retained for that reason only and is not used for anything else.
10. How it is protected
We take measures appropriate to the nature of the information and the risks of processing it, to keep it accurate and secure and to protect it against being altered, damaged or reached by someone who is not authorised. The Security Statement describes the controls that are actually in place. It does not claim a certification NotiSynk does not hold.
12. Children
NotiSynk is a tool for professional use and accounts are not offered to anyone under 18. If a Professional records a Client who is a minor, the Professional is responsible for having the authority to do so and for telling whoever holds parental responsibility what is recorded.
13. Changes and complaints
When this policy changes, the version number and effective date at the top of the page change with it and the change log records what changed. A material change is notified in the Service before it takes effect.
If you are not satisfied with how a request was handled, tell us first at info@notisynk.com so we can put it right. You may also raise the matter with the Lebanese Ministry of Economy and Trade, and Lebanese law allows you to apply to a competent court, in particular through summary proceedings, to enforce your rights of access and correction.
Contact for all of the above: info@notisynk.com.
Change log
- v2.02026-08-16First published version. Rewritten against Lebanese Law 81 of 2018: collection notice contents, the position of Client information entered by a Professional, the right of access, correction, completion, updating, erasure and objection, the ten-day correction deadline, the recipients of information, and the security obligation are described as the law and the product actually work.