Privacy Policy
Last updated: 26 September 2026
This policy explains what information Sifra Chat collects, why, and what we do with it. It covers our business customers (“clients”), the visitors who chat with a Sifra bot on a client's website, and our partners (web designers and agencies in the Sifra Partner Program).
1. Who we are
Sifra Chat is operated by Sujon Mir, Munshiganj, Bangladesh. For chats on a client's website, the client decides what the bot is used for; we process that information on the client's behalf. This policy also covers the Sifra Partner Program at affiliate.sifra.chat.
2. Information from business customers
- Account details: name, email, password (stored hashed) and contact preferences.
- Business details: business name, website, logo, Q&A and settings.
- Website access details you choose to give us for installation, stored encrypted.
- Team members' names and emails you invite.
- Billing records: plans, invoices and payments.
3. Information from website visitors
- Messages typed into the chat, and the page they were sent from.
- Name and email, only if the visitor chooses to leave them or asks to talk to a person.
- Technical data such as IP address, used briefly to prevent abuse and spam.
We do not sell visitor information or use it for advertising.
4. Information from partners
Web designers and agencies who apply to the Partner Program give us:
- Application details: name, studio or agency name, email, phone, portfolio link, where they are based and roughly how many sites they build.
- A password, stored hashed.
- Payout details (for example a mobile wallet, bank or international payout account). Changing them needs a code sent to the partner's email.
- Commission and payout records, including the exchange rate used for each payout.
5. Referrals
- When someone opens a partner's link, we count the click per day. We don't store who clicked.
- A
sifra_refcookie remembers the partner's code for 90 days, so the partner is credited if that person signs up. A client can also type a partner code when signing up. - A partner sees only the referred client's business name, website, plan, status and the commission it earned. Partners never see chats, leads, visitor details or the client's login.
- We check referrals for self-referral and misuse, and may hold commission while we review.
6. Bug reports and feedback
Logged-in clients and partners can use Report a bug (on sifra.chat or affiliate.sifra.chat). We receive what you write, the page it is about, and your account email. You can see each report and its status in your account, and we email you when it is fixed or added. We use this only to fix the problem and to reply to you.
7. How we use information
To answer visitors, deliver chats and leads to the right client, send notification emails and receipts, bill clients, credit and pay partners, fix reported problems, keep the service secure, and improve answers (for example, showing clients the questions the bot couldn't answer).
8. Service providers
We use trusted providers to run Sifra: Cloudflare (hosting and database), Resend (email delivery) and Google Firebase (app notifications). Partner payouts go through the payment service the partner chooses. They process data only to provide their service to us.
9. Cookies and browser storage
The chat widget saves a small token in the visitor's browser so a conversation can continue after the page is reloaded. Logged-in clients and partners use a session cookie. The sifra_ref referral cookie is described above. We don't use advertising cookies or cross-site tracking.
10. How long we keep data
Chats and leads are kept while the client's account is active, unless the client deletes them earlier. When an account is closed, its data is deleted on request. Pausing a bot does not delete anything. Billing, commission and payout records are kept as long as we need them for accounting. Bug reports are kept until the issue is closed and may then be deleted.
11. Security
Data is sent over encrypted connections. Passwords are hashed and website access details are encrypted. Only the client, their invited team and our support staff can see a client's chats. Payout detail changes need an email code.
12. Your choices
Clients can view, export and delete their data from the dashboard or by emailing us. Visitors who want their chat deleted can contact the business they chatted with, or email us. Partners can update their details in the partner dashboard and can ask us to close their partner account. A client who doesn't want to be linked to a partner can email us and we will remove the link.
13. Contact
Questions about privacy? Email [email protected]. Found a problem? Report a bug.