Kavimia · עברית

Privacy Policy

Effective Date: October 1, 2026 Last Updated: October 1, 2026

This Privacy Policy explains how Netanel Amram, operating as a licensed dealer (osek murshe) under the Kavimia brand ("Kavimia", "we", "us", or "our"), collects, uses, stores, and shares personal information in connection with the Kavimia website, Kavimia Order Messaging plugins, Kavimia Order Messaging Pro, related support services, and purchases processed through Freemius. Seller details appear at the end of this Policy.

1. Scope

This Policy applies to: - visitors to the Kavimia website; - users of the free Kavimia Order Messaging WordPress plugin; - customers and users of Kavimia Order Messaging Pro; - people who contact us for support; - personal information processed by Kavimia Order Messaging in connection with WooCommerce order notifications.

Individual WooCommerce merchants using Kavimia Order Messaging are responsible for their own stores, customers, legal notices, consent mechanisms, and compliance obligations.

2. Information We Collect

Website and support information: name; email address; support correspondence; technical information voluntarily supplied in support requests; IP address and standard server-log information where collected by the hosting environment. Please do not send passwords, access tokens, payment-card details, or other unnecessary sensitive credentials through support messages.

Kavimia Order Messaging configuration information. Kavimia Order Messaging may store locally on the merchant's WordPress installation: plugin settings; customer consent status; notification settings; WhatsApp template mappings and status information; operational send markers used to prevent duplicate notifications; message-delivery logs; safe provider error codes; WooCommerce order references; masked phone numbers; keyed hashes of phone numbers for operational matching; provider message identifiers where returned by the messaging provider. Kavimia Order Messaging is designed not to store Meta access tokens in its message log.

WooCommerce customer information. When a configured order notification is sent, Kavimia Order Messaging may process information associated with the relevant WooCommerce order, including: customer phone number; customer first name or other configured template values; order number; order status; order total; other order information specifically included by the merchant in an approved message template. The exact information transmitted depends on the templates and settings selected by the merchant.

For personal data processed within a merchant's WooCommerce store, the merchant generally determines the purposes and means of processing and remains responsible for its customers' data. Kavimia Order Messaging normally processes this information locally on the merchant's WordPress installation and sends configured message data directly to Meta. Kavimia does not ordinarily receive the merchant's customer order or phone data unless the merchant voluntarily provides it to us for support or another specific purpose.

3. WhatsApp Cloud API and Meta

Kavimia Order Messaging connects directly to the WhatsApp Cloud API provided by Meta Platforms. When a merchant enables and sends a notification, Kavimia Order Messaging may transmit to Meta information necessary to deliver the message, including the recipient's phone number; message-template name; message language; template parameters; and relevant WooCommerce order information required by the selected template.

The merchant is responsible for having an appropriate Meta account, complying with Meta's applicable terms and policies, using approved templates where required, and obtaining any consent or other lawful basis required for communications with customers.

Kavimia does not control Meta's infrastructure, review process, availability, message-delivery decisions, template approvals, account restrictions, or independent processing of information by Meta. Users should review Meta's applicable privacy policy, WhatsApp Business terms, and data-processing terms.

4. Customer Consent

Kavimia Order Messaging includes an optional customer-facing consent mechanism for WhatsApp order updates. Where enabled, the checkbox is designed to be optional and unchecked by default unless WooCommerce legitimately restores a customer's previously saved preference.

Merchants remain responsible for determining whether consent is required in their jurisdiction and whether additional notices or lawful bases are necessary. Kavimia Order Messaging does not make a merchant legally compliant merely by displaying a checkbox.

5. Freemius

Kavimia uses Freemius for software licensing, checkout, subscription management, updates, and commercial transactions. Freemius acts as merchant of record for purchases processed through its checkout and may process information such as: customer name; email address; billing information; country and tax information; payment-related information; license information; subscription information; transaction information.

Payment-card and PayPal payment processing is handled through Freemius and its payment providers. Kavimia does not need to receive full payment-card numbers.

The Kavimia Order Messaging plugin also includes the Freemius SDK. If a user chooses "Allow & Continue" or otherwise opts into Freemius-related data sharing, technical and account information described on the applicable opt-in screen may be transmitted to Freemius. Declining optional Freemius telemetry does not disable the core functionality of Kavimia Order Messaging Free. Activating a paid license necessarily transmits the license key and limited site/technical information required by Freemius to validate and manage that license, even where optional usage tracking was not accepted.

Users should review Freemius' Privacy Policy, Terms, Data Processing Addendum, and buyer terms.

Website hosting. The Kavimia website is delivered through Cloudflare, which provides hosting/CDN, DNS and security services and may process technical request information such as IP addresses and request metadata for delivery and security purposes.

6. Purposes of Processing

We process personal information where reasonably necessary to: provide and operate Kavimia Order Messaging; send configured WooCommerce notifications; manage licenses and subscriptions; process purchases and refunds; provide technical support; prevent duplicate messages; diagnose failures; maintain security; comply with legal obligations; protect our rights and users; improve the product using information lawfully available to us.

Where GDPR applies, the applicable lawful basis may include performance of a contract, compliance with legal obligations, legitimate interests, or consent, depending on the processing activity.

7. Local Logs and Retention

Kavimia Order Messaging stores operational message logs in a dedicated local WordPress database table. By default, Kavimia Order Messaging automatically deletes message-log records older than 180 days. A WordPress developer may alter this period using the documented Kavimia Order Messaging retention filter.

Operational idempotency markers used to prevent duplicate notifications may remain on WooCommerce orders even when other Kavimia Order Messaging personal data is erased, because those markers are designed to record only whether an event was already processed and not to contain message content or contact information.

Website, support, billing, accounting, and legal records may be kept for longer periods where reasonably necessary for legal, tax, fraud-prevention, dispute-resolution, or business-record obligations.

8. Data Export and Erasure

Kavimia Order Messaging integrates with WordPress personal-data export and erasure tools. Depending on the stored information, these tools may export or erase Kavimia Order Messaging consent metadata and Kavimia Order Messaging message-log entries associated with an identified customer or order.

Certain minimal operational records may be retained where necessary to prevent duplicate sending, comply with law, establish or defend legal claims, or maintain system integrity.

9. Data Subject Rights

Subject to applicable law, you may have rights to request: access to personal information; correction of inaccurate information; deletion of information; restriction of processing; objection to certain processing; portability of information; withdrawal of consent where processing is based on consent.

Israeli privacy rights are governed principally by the Privacy Protection Law, 5741-1981, as amended, and applicable regulations. Where the GDPR applies, additional rights may apply under European data-protection law.

To submit a privacy request, contact netanelnati29@gmail.com. We may need to verify identity before fulfilling a request.

10. International Processing

Meta, Freemius, hosting providers, payment processors, and other service providers may process information outside Israel or outside the country in which the data subject resides. Where required, appropriate contractual, regulatory, or other lawful transfer mechanisms should be used by the relevant parties.

11. Security

We use reasonable technical and organizational measures intended to protect information against unauthorized access, disclosure, loss, alteration, or misuse. Kavimia Order Messaging is designed to: keep Meta access tokens out of normal logs; restrict administrative actions through WordPress permissions and nonce validation; mask phone numbers in operational logs where practical; avoid storing raw provider error responses; use secure WordPress HTTP APIs for outbound communication. No internet-connected system can be guaranteed to be completely secure.

12. Children

Kavimia Order Messaging is intended for businesses and website operators, not for direct use by children.

13. Changes to This Policy

We may update this Policy when our services, laws, or third-party providers change. The current version will be published with an updated effective or revision date.

14. Contact

Netanel Amram, Kavimia, Siglit 1212, Mazkeret Batya, Israel Email: netanelnati29@gmail.com · Business number: 201040284