AutoPend ← Back to site
Legal

Privacy Policy

Last updated: 6 September 2026

This policy explains what personal data AutoPend collects, why we collect it, who we share it with, and the choices you have. It covers our website, our WhatsApp messaging, and the enquiry forms we run on Facebook and Instagram.

The short version. If you fill in one of our enquiry forms, we get your name, phone number and email so we can contact you about the work you asked about. We reply to you on WhatsApp, and those replies are written by a person, not an AI. We use analytics to understand how our website is used. We do not sell your data. You can ask us to delete it at any time.

1. Who we are

AutoPend builds websites, WhatsApp automation, AI voice agents and ERP/CRM software for businesses in India. For the purposes of India's Digital Personal Data Protection Act, 2023 (DPDP Act), AutoPend is the Data Fiduciary for the personal data described in this policy — meaning we decide why and how it is processed.

You can reach us at:

If you are a client of ours, note that for personal data inside systems we build and operate for you (your customers' data in your CRM, for example), you are the Data Fiduciary and we act as a Data Processor on your instructions. That relationship is governed by our agreement with you, not by this policy.

2. What we collect

2.1 Information you give us directly

DataWhere it comes fromWhy
NameLead form, WhatsApp, emailTo address you properly and identify your enquiry
Phone numberLead form, WhatsAppTo contact you about your enquiry
Email addressLead form, email, WhatsAppTo send proposals and follow-ups
What you tell us about your businessLead form answers, WhatsApp conversation, callsTo understand what you need and quote for it

2.2 Information collected automatically

When you visit autopend.com we collect standard technical data through analytics and advertising tools: pages viewed, time on page, approximate location (usually city level, derived from IP address), device and browser type, and the site or advert that referred you.

We also receive the advertising context of an enquiry — which campaign, ad set and advert you responded to — from Meta. We use this to understand which adverts work and to make our first message relevant to your industry.

2.3 What we do not collect

We do not ask for and do not want financial information, government identity numbers (Aadhaar, PAN, passport), passwords, or health information. Please do not send these to us over WhatsApp or email. If you send them anyway, we will delete them.

3. How we use your data

We do not sell your personal data, rent it, or share it with third parties for their own marketing.

4. WhatsApp messaging

Most of our contact with prospective clients happens on WhatsApp, so it is worth being specific.

5. Automated processing and AI

We want to be plain about this, because many companies are not.

We build AI systems for our clients, but we do not point one at your enquiry. The content of your messages to us is not sent to any AI or language-model provider. When you message us on WhatsApp, a person reads it and writes the reply, and the notes we keep about your enquiry are written by that person.

What this means in practice:

6. Cookies and tracking

Our website uses the following. Most set cookies or similar identifiers in your browser.

ServiceProviderPurpose
Google Analytics 4GoogleUnderstanding how the site is used — pages, sources, broad location
Google Tag ManagerGoogleManaging the tags above without changing site code
Meta PixelMetaMeasuring which adverts lead to enquiries, and showing relevant adverts
Google FontsGoogleTypefaces used on the site

You can block or delete cookies in your browser settings. Analytics and advertising cookies are not required for the site to work — blocking them affects our measurement, not your experience. You can also opt out of Google Analytics using Google's browser add-on, and adjust ad personalisation in your Meta ad preferences.

7. Who we share data with

We share personal data only with service providers who help us operate, and only as far as they need it:

ProviderWhat they handleWhere
Meta PlatformsLead adverts, WhatsApp messaging, advertising measurementGlobal
GoogleWebsite analytics and tag management; typefaces used on the siteGlobal
RailwayHosting for our lead database and automation systemsGlobal
RenderWebsite hostingGlobal
CloudflareDNS and content delivery for autopend.comGlobal

We may also disclose data if required by law, a court, or a government authority, or to establish or defend a legal claim.

8. Where your data goes

Several providers above process data on servers outside India. Where that happens, we rely on the provider's own safeguards and contractual commitments. Under the DPDP Act, transfers are permitted except to countries the Government of India specifically restricts, and we will comply with any such restriction that is notified.

9. How long we keep it

DataKept for
Enquiries that did not convert24 months from last contact, then deleted
WhatsApp conversation history24 months from the last message, then deleted from our account
Client records and project dataFor the engagement, plus 7 years where tax or accounting law requires
Website analytics14 months (Google Analytics default retention)
Records of people who asked not to be contactedKept indefinitely, minimally — we need to know not to contact you again

10. Your rights

Under the DPDP Act you have the right to:

To exercise any of these, email hello@autopend.com with the phone number or email address you used to contact us, so we can find your record. We will respond within 30 days.

If you are not satisfied with our response, you may complain to the Data Protection Board of India.

11. Security

We take reasonable technical and organisational measures to protect personal data, including encrypted connections (HTTPS) across our website and systems, encrypted storage of credentials and access tokens, access limited to people who need it, and hosting with established providers.

No system is perfectly secure, and we cannot guarantee absolute security. If a personal data breach occurs, we will notify the Data Protection Board of India and affected individuals as the DPDP Act requires.

12. Children

Our services are for businesses and are not directed at children. We do not knowingly collect personal data of anyone under 18. If you believe a child has given us personal data, contact us and we will delete it.

13. Third-party links

Our website links to demonstration builds and to client sites. Those are separate properties with their own privacy practices, and this policy does not apply to them.

14. Changes to this policy

We may update this policy as our services change. The "last updated" date at the top always reflects the current version. For material changes affecting how we use data you have already given us, we will make reasonable efforts to notify you directly.

15. Contact and grievances

For any question about this policy, or to raise a grievance about how we have handled your data:

Please write "Privacy" or "Grievance" in the subject line so it reaches the right place quickly.

Read our Terms of Service →