WrapDesk privacy

User Data Deletion

Last updated July 21, 2026

This page explains how to request deletion of personal information from WrapDesk, including information connected to Facebook, Instagram, WhatsApp Business, Pages, business portfolios, messaging, and other Meta services.

You do not need to log in to use these instructions. This page is publicly accessible and is intended to serve as the User Data Deletion Instructions URL for the WrapDesk Meta app.

Meta app reviewers

The public deletion instructions URL for the WrapDesk Meta app is:
https://www.wrapdesk.app/user-data-deletion

WrapDesk's privacy policy is available at https://www.wrapdesk.app/privacy. WrapDesk's terms are available at https://www.wrapdesk.app/terms-of-service.

Requests can be sent to support@wrapdesk.app. This email is monitored for privacy and deletion requests.

How to request deletion

Email support@wrapdesk.app with the subject line WrapDesk data deletion request. Include enough information for us to find the relevant record and confirm that the request is legitimate.

  • Your full name.
  • The email address, phone number, or WhatsApp number associated with the request.
  • Your WrapDesk role, such as shop owner, staff member, installer, customer, or website visitor.
  • The shop name, workspace, booking link, quote link, or installer profile involved, if known.
  • For Meta-related requests, the Facebook Page, Instagram account, WhatsApp Business Account, phone number, Meta business portfolio, or message thread involved, if known.
  • A short description of what you want deleted, such as your account, installer profile, customer record, Meta-connected messages, integration tokens, or all data connected to a specific shop workspace.

If you can log in to WrapDesk, you may also disconnect integrations or request account help from inside the app where those controls are available. Installer mobile app users can request account deletion from the mobile app or by emailing us.

Facebook, Instagram, and WhatsApp data

If you connected a Facebook Page, Instagram account, WhatsApp Business Account, Meta business portfolio, or Meta messaging channel to WrapDesk, you can ask us to delete the Meta-related data that WrapDesk stores or processes for that connection.

If you communicated with a shop through Facebook, Instagram, or WhatsApp and your conversation was handled through WrapDesk, you can also request deletion. In that case, the shop may control some records, and WrapDesk may need to coordinate with the shop before deleting or anonymising customer, lead, quote, booking, payment, or job records.

For Meta-related requests, we may take actions such as:

  • Disconnect or revoke stored access tokens and integration credentials controlled by WrapDesk, where the workspace owner or authorised admin requests it.
  • Delete or anonymise Meta page IDs, account IDs, sender IDs, usernames, profile details, message metadata, webhook events, and imported messages where WrapDesk is able to do so and no lawful retention reason applies.
  • Remove stored media, attachments, contact details, and linked CRM records created from Meta channels where deletion is available and appropriate for the requesting user or workspace.
  • Coordinate with the relevant shop where the shop controls the customer, lead, booking, quote, message, or job record.

You may also remove app access from your Facebook account by going to Facebook's Apps and Websites settings and removing the app. If Meta sends WrapDesk a deletion request for an app-scoped user ID, we will use that identifier to search our records and delete, anonymise, or document the absence of matching records as appropriate.

Shop customer records

Many customer records in WrapDesk are controlled by the shop that created or received the record. This can include enquiries, leads, quotes, booking requests, deposits, jobs, vehicle photos, messages, invoices, review requests, and service history.

If you are a shop customer, you may contact either the shop or WrapDesk. When WrapDesk acts as a service provider to the shop, we may need the shop's instruction before deleting or changing records in that shop's workspace, unless the law requires us to respond directly.

If you are a shop owner or authorised workspace admin, tell us whether you want to delete a single person's records, a connected Meta integration, a staff account, an installer record, or the entire workspace.

What we delete

After verification, and where deletion is available, we will delete, anonymise, disconnect, or restrict personal information associated with the request. This may include:

  • WrapDesk account profile details, role details, contact details, login access, mobile push tokens, and installer profile information, where applicable.
  • Connected integration tokens, Meta access tokens, page or account identifiers, Google Calendar connection data, and other credentials stored by WrapDesk, where applicable.
  • Customer, lead, quote, booking, job, message, media, portfolio, file, note, and support records where WrapDesk controls the data or where the controlling shop authorises deletion.
  • Imported or generated data tied to Meta services, such as Facebook, Instagram, or WhatsApp sender identifiers, messages, message metadata, webhooks, media, and connected account details, where applicable.
  • Operational preferences, notification tokens, opt-out records, and non-essential analytics or support records where deletion is available.

We will also make reasonable efforts to tell relevant service providers to delete or disconnect the same data where they process it for WrapDesk and deletion is available through that provider.

What we may keep

Some records cannot be deleted immediately or completely. Where we retain records after a deletion request, we limit use of those records to the retention reason and do not use deleted account data for active product features unless needed for that reason.

  • Payment, payout, subscription, tax, accounting, chargeback, refund, dispute, fraud-prevention, or compliance records.
  • Security logs, audit logs, abuse-prevention records, error logs, and records needed to protect WrapDesk, users, customers, connected platforms, or payment providers.
  • Records that a shop, installer, or customer needs for a live booking, quote, payment, warranty, legal claim, safety issue, dispute, or completed service history.
  • Records that must be retained under law, court order, regulator request, platform request, contractual duty, insurance need, or professional advice.
  • Backups and disaster-recovery copies until they are overwritten or deleted on the ordinary backup cycle.
  • Aggregated, de-identified, or anonymised information that no longer reasonably identifies you.

If we refuse part of a deletion request, we will explain the reason where we are legally allowed to do so.

Verification

To protect users, shops, installers, and customers, we may ask for additional information before deleting data. We will only ask for what is reasonably needed to verify your identity, authority, or connection to the record.

We cannot delete someone else's account, workspace, customer record, Meta connection, payment record, or shop records unless you have the authority to request that deletion or the law requires us to act.

Timing and confirmation

We aim to acknowledge deletion requests within 10 business days and complete verified deletion requests within 30 days where reasonably possible. Some requests may take longer if they are complex, involve a shop-controlled workspace, require provider action, involve backups, or require legal, security, payment, fraud, tax, or dispute review.

When the request is complete, we will send confirmation to the contact method used for the request or another verified contact method. If Meta sends WrapDesk an automated request with a confirmation requirement, we will provide the required status information through the response path available for that request.

Contact

Send deletion, access, correction, privacy, opt-out, or complaint requests to support@wrapdesk.app.

You can also review the WrapDesk Privacy Policy, Terms of Service, and Government Requests Policy.