Data Deletion Instructions

You can disconnect Meta or WhatsApp access and request deletion of personal information associated with your Nelkins CRM account.

Last updated: 27 August 2026

1. Disconnect Meta or WhatsApp access

  1. Sign in to Nelkins CRM.
  2. Open Settings → Communications → WhatsApp.
  3. Select the connected sender and choose Disconnect.
  4. You may also remove Nelkins CRM from the relevant app or business integration settings in your Meta account.

Disconnecting stops future API access but does not automatically delete records already stored in Nelkins CRM. Complete the request below if you also want stored information deleted.

2. Submit a deletion request

Email privacy@nelkins-os.xyz with the subject line Nelkins CRM Data Deletion Request.

Include only the information needed to locate and verify the account:

  • Your name and Nelkins CRM account email.
  • Your workspace or organisation name, if applicable.
  • The connected WhatsApp business number in international format, if the request concerns WhatsApp data.
  • Whether you want the entire account deleted or only data from the Meta/WhatsApp connection.

Do not send passwords, access tokens, app secrets, one-time codes, passport copies or payment-card information.

3. Verification and completion

We will verify that the requester is the account holder or an authorised administrator. We may ask the requester to confirm the request through the email address associated with the account. We aim to acknowledge requests promptly and complete verified deletion requests within 30 days, unless applicable law permits or requires additional time.

4. What will be deleted

Depending on the scope of the verified request, deletion may include:

  • Nelkins account profile information.
  • Stored Meta and WhatsApp connection identifiers and encrypted credentials.
  • WhatsApp messages, attachments, delivery events and conversation records held by Nelkins.
  • CRM contacts, notes and related records controlled by the requesting account.
  • Account-specific settings and activity data that are not required for security or legal compliance.

5. Information that may be retained

We may retain limited information where required by law, regulation, fraud prevention, security, dispute resolution or the establishment, exercise or defence of legal claims. Encrypted backups may persist until their normal rotation expires. Aggregated or irreversibly de-identified information may also be retained because it no longer identifies an individual.

6. Contacts whose information was added by a business user

If you are not a Nelkins account holder but your information appears in a brokerage user's CRM, contact us using the same email address and identify the business or agent who contacted you. We will assess the request and, where appropriate, coordinate with the relevant account holder as data controller.

7. Confirmation

When deletion is completed, we will send confirmation to the verified requester. If we cannot fulfil part of a request, we will explain the reason where legally permitted.