Ops Chat Privacy Notice
Updated 23 August 2026 — draft under legal review.
1. Who processes your data
Data controller
[RAGIONE SOCIALE — da completare] — [SEDE LEGALE — da completare]
Privacy contact: [EMAIL PRIVACY — da completare]
2. What we collect
- Mobile number, verified with an SMS code the first time you
sign in. It is your identity in the chat and is visible to the
people you communicate with, like on a phone.
- Account data: name, email address, profile photo if you
upload one.
- Message content (text, voice notes, photos, videos):
temporary by design. An unread message lives at most six
hours; a read message is deleted thirty minutes after being read.
Deletion happens on the server, for both sides, and covers audio
files and images too.
- Phone book: if you choose to use it, the numbers in your
phone book are sent to the server only to tell you who is already
on Ops Chat. We do not keep them as your contact list and we do not
send invitations on your behalf: invitations go out from your own
phone.
- Traffic data: the fact that two accounts wrote to or called
each other — date, time, type of communication and call outcome —
with no content whatsoever. We retain it along the lines of
what Italian law requires of communication providers (art. 132
of the Italian Privacy Code), to be able to answer requests from
the judicial authority.
- Technical logs: sign-ins and service events, for security
and diagnostics.
- Notifications: if you enable them, the technical delivery
address provided by your browser or phone.
3. Why we process it, and on what basis
- To provide the messaging and calling service
(performance of the contract).
- To verify your number via SMS (performance of the contract).
- For service security and troubleshooting (legitimate interest).
- To retain traffic data (compliance with legal obligations).
- For notifications on your device (consent, given when you enable
notifications and withdrawn by disabling them).
4. For how long
- Message content: up to six hours if never read, thirty minutes
after being read. Then it no longer exists.
- Account data: for as long as the account is active.
- Traffic data and logs: for the period required by applicable
law.
5. Who it may go to
- Openapi S.p.A., which delivers the verification SMS
(data processor).
- The infrastructure provider the service runs on, with servers in
the European Union (data processor).
- The judicial authority, in the cases provided for by law.
We do not sell your data, we do no advertising profiling, and we do
not transfer data outside the European Union.
6. Your rights
You may request access, rectification, erasure, restriction and
portability, and object to processing, by writing to [EMAIL PRIVACY — da completare]. You may
also lodge a complaint with the Italian data protection authority
(gpdp.it).
7. Minors
The service is for people aged 14 or over; below that age the consent
of a parent or guardian is required.
8. Cookies
We only use technical cookies: the session (to recognise you after
sign-in) and the language. No tracking, no third-party cookies.