Sintalk/Legal
Privacy Policy
Note: This is a convenience translation. The legally binding version of this document is the original in Brazilian Portuguese; in case of any discrepancy, the Portuguese version prevails.
Who we are
This Privacy Policy describes how Sintalk Blink Telecomunicação e Marketing S.A. (CNPJ 55.994.079/0001-05, “Sintalk,” “we”) collects, uses, shares, and protects personal data in the context of our engagement, identity, and attribution platform, including the sintalk.com.br website, the platform dashboard, and the APIs.
By using our services, you represent that you have read and understood this policy. If you do not agree with any point, please contact us before proceeding: privacidade@sintalk.com.br.
Data we process
We process different categories of data, depending on your relationship with Sintalk:
- Customer registration data: name, corporate email, phone number, company, and job title, provided when requesting a demo or contracting the platform.
- Recipient data: phone numbers, contact identifiers, and message events (delivery, open, click, conversion) processed on behalf of our customers, in our capacity as data processor.
- Technical data: IP address, device type, operating system, and access logs, collected automatically for security and audit purposes.
- Browsing data: cookies, pixels, and shortlinks used to measure campaigns and attribute results.
How we use data
- To provide, operate, and improve the platform, including channel orchestration, fallback, and attribution;
- To ensure message delivery via direct routes with the carriers;
- To build the unified contact profile (Sintalk ID) on behalf of our customers;
- To comply with legal and regulatory obligations, including those of telecommunications;
- To prevent fraud, abuse, and spam, protecting sender reputation;
- To communicate product news, where consent has been given.
Controller and processor
In short: for the data of our customers and website visitors, Sintalk is the controller. For the data of recipients of messages sent through the platform, Sintalk acts as the processor, processing data under the customers' instructions, with the customers remaining the controllers of those databases.
Our contracts include data protection clauses that require customers to have a valid legal basis (such as consent or legitimate interest) for the communications sent through the platform, including opt-out mechanisms.
Sharing
We do not sell personal data. We share data only when necessary to operate the service:
- Telecommunications carriers: routing and delivery of SMS, RCS, and voice calls;
- Channel providers: Google (RCS) and Meta (WhatsApp), in accordance with the terms of each channel;
- Infrastructure providers: hosting, monitoring, and security, under contract and with encryption;
- Authorities: when required by law, court order, or regulatory request.
Cookies and tracking
We use cookies, pixels, and shortlinks to measure campaign performance and attribute conversions. These identifiers feed the contact profile managed on behalf of our customers and can be disabled in your browser settings. Some platform features, however, depend on them to function.
Your rights (LGPD)
Under the terms of the General Data Protection Law, you may request at any time:
| Right | What it means |
|---|---|
| Confirmation and access | To know whether we process your data and to obtain a copy of it. |
| Correction | To update incomplete, inaccurate, or outdated data. |
| Anonymization or deletion | To delete unnecessary data or data processed in noncompliance. |
| Portability | To receive your data in a structured format. |
| Withdrawal of consent | To withdraw consent previously given, at any time. |
| Objection | To object to processing based on legitimate interest. |
If you receive messages sent by a Sintalk customer, the request must first be directed to that sender, the controller of the database, but you may also contact us and we will forward the request.
Security and retention
We adopt up-to-date technical and organizational measures: encryption in transit and at rest, role-based access control, 24/7 access logging and auditing, and environment segregation.
Data is retained for as long as necessary for the purposes of this policy or for the applicable legal periods. Message events, for example, are kept for the period required by telecommunications regulations and then deleted or anonymized.
Data Protection Officer and contact
Our Data Protection Officer (DPO) can be contacted at privacidade@sintalk.com.br.
Sintalk Blink Telecomunicação e Marketing S.A. · CNPJ 55.994.079/0001-05 · João Pessoa, PB, Brazil. This policy may be updated periodically; the version in force will always be available on this page, with the date of the last revision indicated at the top.