InsideDMInsideDMInsideDM
Pricing
Sign inStart free
By channel
InstagramCapture from comments, stories & DMsWhatsAppSoonConvert & retain, with consent built inCommerceSell from your real catalog, in chat
One workspaceThe two-channel dashboardEvery conversation, agent action, handoff and sale from Instagram + WhatsApp, in one place.Explore the platform
Sell in the chat6Open the page
CheckoutProduct, quantity, name, phone and address, collected in the conversationLive catalogPrices and stock straight from Shopify, WooCommerce, Google Sheets or your sitePaymentsRazorpay and Cashfree links in the thread — UPI, cards and netbankingPaid at the counterA UPI payment over your Razorpay QR settles the chat order it belongs toOrdersEvery sale becomes a record — status, payment, and “where is my order?” answered from itCOD confirmationA confirmation before dispatch, so fewer cash-on-delivery parcels come back
CheckoutProduct, quantity, name, phone and address, collected in the conversationLive catalogPrices and stock straight from Shopify, WooCommerce, Google Sheets or your sitePaymentsRazorpay and Cashfree links in the thread — UPI, cards and netbankingPaid at the counterA UPI payment over your Razorpay QR settles the chat order it belongs toOrdersEvery sale becomes a record — status, payment, and “where is my order?” answered from itCOD confirmationA confirmation before dispatch, so fewer cash-on-delivery parcels come back
Instagram and WhatsApp connect through a single Meta login.
All industriesSee how insideDM fits any business
Retail & D2C
Fashion & ApparelSizes, drops & restocks, answered instantlyBeauty & CosmeticsRecommend shades & routines, then sellJewellery & AccessoriesShare prices & close in the DMFood & GourmetTake orders & delivery slots in chatHome & DecorAnswer specs & ship from your catalog
Services & local
Clinics & HealthcareBook appointments from DMsFitness & WellnessSell plans & handle sign-upsSalons & SpasBookings & offers on autopilotReal EstateQualify & route serious buyersTravel & HospitalityAnswer, quote & book trips
Creators & teams
Creators & InfluencersSell offers & handle FAQs at scaleCoaches & ConsultantsQualify leads & book callsEdTech & CoursesQualify & convert course leadsAgenciesRun many accounts from one place
Learn
DocsSetup & API referenceSetup GuidesGo live in an afternoon
Company
BlogPlaybooks & growth ideasBook a demoSee it on your account
Legal

Privacy Policy

Last updated 29 August 2026·

InsideDM answers your customers on Instagram and WhatsApp, sells from your catalogue, and follows up after the sale. Doing that means handling two very different sets of people’s data: yours, and your customers’. This page explains what we hold, why, for how long, who else sees it, and how any of it gets deleted.

It is written to be read rather than survived. Where a number exists, we give the number. Where something is a limitation rather than a promise, we say so.

Privacy PolicyTerms of Service → The agreement between us
Your customers are yours

The people who message your business are your contacts, not ours. We hold their data on your instruction, never message them for our own purposes, and never sell it — to anyone, at any price.

Your conversations don't train AI

We use AI models to write replies. We do not use your conversations to train, fine-tune or improve any model — ours or anyone else's — in raw, aggregated or derived form.

Deletion is engineered, not promised

Every table in our database that holds something about a person is listed in a registry with a recorded decision about what erasure does to it. The build fails if someone adds a table and doesn't decide.

We say where data actually sits

Including the parts we don't control. WhatsApp messages pass through Meta's servers outside India before they ever reach us, and no provider in this market can change that.

On this page
  1. 01Two kinds of people, two different roles
  2. 02What we collect
  3. 03Why we use it
  4. 04How AI is used, and what that means for your data
  5. 05Consent, and how opt-outs work
  6. 06Who else touches the data
  7. 07Where the data actually sits
  8. 08How long we keep things
  9. 09How deletion actually works
  10. 10Your rights, and how to use them
  11. 11How we protect it
  12. 12Cookies and the website
  13. 13Children
  14. 14Changes, contact and complaints
01

Two kinds of people, two different roles#

Nearly every privacy policy in this market describes website visitors and goes quiet about the customers whose messages actually flow through the product. This one starts there.

InsideDM sits between a business and its customers, so we handle two categories of personal data under two different legal roles. Which one you are decides which half of this page applies to you, and who you go to when you want something changed or deleted.

If you are…Our roleWho decides what happens to your data
A business using InsideDM, and the people on your teamData fiduciary / controllerWe do. This page describes it, and you can reach us at the address in section 14.
Someone who messaged a business on Instagram or WhatsAppData processor, acting on that business's instructionThe business you messaged. We hold your data for them, do only what they configure, and delete it when they say so — or when you ask.
A visitor to insidedm.inData fiduciary / controllerWe do, though there is little to decide. See section 11.
If you messaged a business and want out, you can come straight to us
Normally you’d ask that business — they control the data and can erase you from inside InsideDM in a few clicks. But you should not have to chase someone to be left alone. So every business using InsideDM instructs us, in advance, to act on two requests made directly to us by the people they message: stop messaging me, and delete my data. Write to privacy@insidedm.in with the business’s Instagram handle or WhatsApp number and the account you messaged from. You never need an InsideDM account, and we will not send you back to the merchant first.

Where we act as processor, the business sets the purposes and we follow them. We do not decide what a business asks its customers, we do not build a profile of anyone for our own use, and we do not move data between businesses. Each business’s data is stored separately from every other business’s — a hard requirement of Meta’s Platform Terms for technology providers, and one that also rules out anything built by pooling conversations across our customers.

02

What we collect#

Itemised, by where it comes from. Nothing here is a category invented to sound thorough — each row is data the product actually stores.

From you, when you sign up and use InsideDM

DataWhy we have it
Name, work email, passwordTo create your account and sign you in.
Business name, category, websiteTo set up your workspace and teach the assistant about your business.
Team members you invite, and their rolesSo the right people see the right parts of the dashboard.
Billing details and payment historyTo charge you. Card details go to our payment provider, never to us — see below.
Support messages you send usTo answer them.
Log data: IP address, browser, timestamps, pages usedSecurity, debugging, and knowing which features get used.

From Instagram, when you connect your account

Received through Meta’s Instagram Platform APIs under permissions you grant during setup. You can revoke them at any time in your Instagram settings, which stops the flow immediately.

DataWhy we have it
Your professional account's ID, username and profileTo connect the account and reply as you.
The content of direct messages, comments and story replies — text, media, reactions and button tapsThis is the product. The assistant reads the message to answer it, and the thread is kept so the next reply has context and you can read the history.
Each customer's Instagram-scoped ID and username, and their profile picture and display nameTo know who is talking to you and show a recognisable thread. Instagram-scoped IDs are specific to your account — they are not a person's global Instagram identity.
Delivery and read status of messages we sendTo show you whether a reply landed.
What we deliberately don't touch
Instagram also exposes follower counts, verification status and whether someone follows you. Meta’s Developer Policies allow that metadata to be used only to support the messaging experience — not to score leads or build audiences. We don’t read those fields at all: they appear nowhere in our code.

From WhatsApp, when you connect a business number

DataWhy we have it
Your WhatsApp Business account and phone number IDsTo send and receive on your number.
The content of messages to and from your customers, including mediaTo answer them, and to keep the thread readable.
Your customer's phone number and WhatsApp profile nameTo identify the conversation and, where you have consent, to message them again.
Which template you sent, when, and whether it was delivered, read or failedBilling, deliverability, and the campaign reporting in your dashboard.
Opt-ins and opt-outs, recorded per purposeTo decide whether a message may be sent at all. See section 5.
A phone number carries more risk than most personal data
It is a direct line to a person and often their only stable identifier. We treat it accordingly: used only for the purposes in section 3, access restricted, never sold or shared for anyone else’s marketing. Where a phone number or payment identifier has to be stored so it can be matched later, it is encrypted under a key unique to that one person — so erasing the key destroys the value.

From your store and payment provider, if you connect them

DataWhy we have it
Your catalogue: titles, descriptions, prices, variants, stock, imagesSo the assistant sells what you actually stock rather than inventing it.
Orders and their status, with the customer name, email, phone and address attachedTo answer “where is my order”, to confirm and follow up on a sale, and to attribute revenue to the conversation that produced it.
Payment events: amount, currency, status, timestamp, referenceTo know an order is paid, and to reconcile your billing.
Public pages of your website, if you ask us to read itTo learn your policies, delivery areas and FAQs so the assistant answers correctly. We read only what any visitor could.
We never see or store card numbers
Card details are entered on the payment provider’s own page and go straight to them. Under the Reserve Bank of India’s card-on-file rules, storing raw card numbers is prohibited for merchants and platforms regardless of anyone’s consent — so we hold no card number, no CVV and no expiry date, and there is no configuration in which we could.
03

Why we use it#

An exhaustive list. If a use isn't here, we are not permitted to do it — Meta's and Shopify's terms both make this page the boundary of our lawful use, not a description of it.

  • To run the assistant. Read an incoming message, work out what it asks, look up the answer in your catalogue or knowledge base, and write a reply.
  • To keep conversations coherent. Hold the thread so the next reply knows what was already said, and so you can read the history and take over at any point.
  • To take and track orders, send payment links, and confirm and follow up on a sale.
  • To send the campaigns and follow-ups you configure— and to block the ones consent doesn’t allow.
  • To show you your own business back to you: which conversations converted, what customers keep asking, which products come up.
  • To bill you, including counting the AI and messaging usage your plan charges for.
  • To keep the service up and safe: debugging, fraud and abuse prevention, rate limits.
  • To meet legal obligations — tax records, and lawful requests we are required to answer.
What we will not do with it
We do not sell, rent or licence personal data. We do not use it for advertising or ad targeting, or share it with ad networks. We do not use it to build or augment profiles of individuals for our own purposes. We do not use it for surveillance, or for decisions about anyone’s credit, housing, employment, insurance, education, benefits or immigration status. We do not contact your customers for our own marketing. Several of these are flat prohibitions under Meta’s Platform Terms; all of them are our position regardless.

Where the law asks us to name a legal basis: for your account and billing data we rely on performance of our contract with you, and for security and product improvement, our legitimate interests. For your customers’ data we act on your documented instruction as processor — and the lawful basis for collecting it in the first place, including consent to be messaged, is yours to establish. Section 5 describes the machinery we give you for that.

04

How AI is used, and what that means for your data#

The section most policies in this market leave out entirely, or answer in one sentence naming no vendor and no number.

No training — in raw, aggregated or derived form
We do not use your messages, your customers’ messages, your catalogue or your knowledge base to create, develop, train, fine-tune or improve any machine-learning or AI model — ours or a third party’s. That covers derived artefacts too: embeddings, intent labels and evaluation sets built from your conversations are your data, and are not pooled, reused across businesses, or used to improve a model. WhatsApp’s Business Solution Terms prohibit this outright, and we apply the same rule to Instagram and to everything else in the product.

What actually happens when the assistant replies

We use large language models for inferenceonly: the model is asked a question and returns an answer. To generate a reply we send it the customer’s message, the recent conversation, and the relevant slice of your catalogue and knowledge base. Nothing is sent to a model vendor beyond what the table below describes.

Where AI is usedWhat is sentTo whomTrains on your data
Writing replies to customersThe message, recent thread, catalogue and knowledge extractsOpenAI (United States)No
Finding the right answer in your knowledge baseShort text passages, converted to embeddingsOpenAI (United States)No
Reading your website when you connect itPublic page content only — no customer dataOpenAI (United States)No
Diagnosing why the assistant answered as it didTraces of an agent run, which include message contentLangfuse (United States)No
OpenAI's API terms provide that data submitted through the API is not used to train their models. We require the same of every vendor on this list.
One limitation, stated plainly
Under OpenAI’s standard API terms, inputs and outputs may be retained by OpenAI for a limited period for abuse monitoring before deletion. That retention is theirs, not ours, and it is not training — but it is real, and you should read it here rather than discover it later.

The assistant says that it is one

Automated replies identify themselves as automated at the start of a conversation, and again when a chat moves between the assistant and a human — because Meta requires it, and because pretending otherwise is a bad way to treat someone. You can take over any conversation at any time.

AI output can be wrong, and output that reads as confident because it is specific can still be materially inaccurate. It is a drafting tool, not an oracle. Do not rely on it for decisions with legal, financial, medical or safety consequences, and do not present it as reviewed by a person when it wasn’t. We do not use AI to make automated decisions producing legal or similarly significant effects for anyone.

05

Consent, and how opt-outs work#

Consent to hear that your order shipped is not consent to receive offers. We keep those apart in the database, not just in the copy.

Under WhatsApp’s Business Messaging Policy you may only message someone who gave you their number and opted in, and the opt-in has to cover the kind of message you want to send. InsideDM enforces that rather than trusting it: consent is stored per person, per channel and per purpose, and a send with no matching consent is refused.

PurposeWhat it permitsWhat it never permits
MarketingCampaigns, offers, win-backs.—
Order updatesConfirmed, ready, dispatched, delivery coordination — granted when a customer moves their own order to WhatsApp.Marketing. Moving your order to WhatsApp is not an opt-in to be sold to.
Loyalty programmeBalance, tier changes, expiry warnings, reward unlocks.Weekend offers. Someone who wants to know their points expire has not asked for promotions.
Loyalty payment matchingLinking a payment identifier to a member. Authorises processing, not messaging.Sending anything at all.
An opt-out outlives an erasure
When someone opts out we keep the minimum record needed to keep them suppressed — even if they later ask to be erased. Deleting the row that says “this number opted out” would make the erasure itself the reason they start hearing from the business again, which is the precise opposite of what they asked for. We keep the suppression and the evidence behind it, and nothing else.

Opt-outs are honoured whether they arrive through InsideDM or anywhere else — including someone replying “stop”, or blocking the business on WhatsApp. As the business you are responsible for obtaining valid consent before you message anyone and for keeping the record of it. We give you the machinery and enforce it, but we are not the party who obtained it.

06

Who else touches the data#

The full list, with what each one does. Every vendor here is contractually barred from using the data for its own purposes.

WhoWhat they doWhat reaches them
Meta (Instagram & WhatsApp)The channels themselves — every message travels through themMessage content, phone numbers, account identifiers
Google Cloud (asia-south1, Mumbai)Runs the applicationEverything, in transit and in memory
SupabaseManaged PostgreSQL — the primary database, and sign-inEverything we store
OpenAILanguage-model inference and embeddingsMessage content, catalogue and knowledge extracts
LangfuseTracing, so we can diagnose why the assistant replied as it didAgent traces, which include message content
Razorpay / CashfreePayment processing, whichever you connectOrder amounts and payer contact details. Card data goes to them directly, never through us.
ShopifyCatalogue and order sync, if you connect a storeWe read from Shopify; we send them no customer data
ResendSends notification emails, if you enable themEmail addresses and the notification text
CloudflareDNS, CDN and protection for the websiteNetwork-level request data
Payment providers act as independent controllers of payment data under their own policies and RBI authorisation — not as our processors. Everyone else on this list processes only on our instruction.

A vendor only appears in your stack if you use the feature it serves. Never connect a store and Shopify receives nothing; never enable email notifications and Resend is never called.

You get 30 days' notice before this list changes
Before a new sub-processor starts handling your data, we tell every account holder — by email and in the dashboard — at least 30 daysbeforehand. You don’t have to subscribe to anything to be told. If you object and we can’t find a way around it, you may end your subscription for that reason and we will refund the unused part of what you’ve paid. A list you can’t object to is just a disclosure; this is the part that makes it a commitment.

Beyond this list we disclose personal data only where the law requires it, or to protect against fraud, abuse or a threat to someone’s safety. If we are served with a legal demand for a business’s data we will tell that business before responding, unless we are legally prohibited from doing so. If InsideDM is ever acquired or merged, data moves with the business and this notice continues to apply until you are told otherwise.

07

Where the data actually sits#

Including the part we don't control, which no provider in this market does.

Our application runs in Google Cloud’s asia-south1 region in Mumbai. Our database is hosted by Supabase in the region configured for our project.

WhatsApp messages pass through Meta's servers outside India
Every WhatsApp Business message is delivered through Meta’s Cloud API, whose data centres are in North America and the European Union, and Meta holds messages there transiently for delivery. This happens before a message ever reaches us, and applies to every product built on the WhatsApp Business Platform — data localisation is not offered for that leg, by anyone. We tell you because the alternative is letting you assume otherwise.

Some of our vendors — OpenAI, Langfuse, Cloudflare — process data outside India. Those countries may not have equivalent data protection law and, in some cases, may be less protective. Where transfers are subject to European or UK law we rely on the European Commission’s Standard Contractual Clauses and the UK Addendum. Wherever it is processed, we protect it as described here.

08

How long we keep things#

Actual windows. The pattern across this market is precise numbers for marketing cookies and silence about message archives; this is the reverse.

WhatHow longThen what
Conversations and messagesWhile your account is activeDeleted when you delete the contact or conversation, when you disconnect the channel, or when your account closes.
Detailed agent traces (why the assistant answered as it did)90 daysPruned automatically by a scheduled job.
Contacts, profiles and consent recordsWhile your account is activeErased on request. Opt-out suppression records survive, and only those — see section 5.
Orders and payment eventsAs long as tax and accounting law requiresIdentifying details stripped on erasure; the amount and date remain as an anonymous business record.
Your account and billing recordsWhile your account is active, then as tax law requiresDeleted.
Security and application logsAs long as we need them for security and debugging, and for any period Indian law requiresRotated out automatically. CERT-In's directions set a floor here, so this is one window the law lengthens rather than shortens.
Encrypted backupsUntil they age out of their own rotationA deletion removes the record from live systems straight away, but backups are point-in-time and still hold the older copy until they expire. For anything held under a per-person key — phone numbers, payment identifiers — this doesn't matter: erasure destroys the key, so the value is unreadable in the backups too, immediately.

When you close your account or disconnect a channel we delete the personal data we held for you, except where we are legally required to keep something — in which case we keep only that, and only while the requirement lasts. Where you connected Shopify, an uninstall or a customer-redaction request from Shopify is acted on within the 30 days their platform requires.

Deleting a customer does not delete your books
A completed sale is your business record — your accounts and your tax position depend on it continuing to exist. So erasing a customer strips their identity from the order and leaves the amount and the date. That is deliberate: destroying the record itself wouldn’t be privacy, it would be destroying your books.
09

How deletion actually works#

Erasure fails by omission, and omission is invisible — a successful-looking erasure that quietly left data behind. Here is the machinery that stops that.

Every table in our database that holds something about a person is listed in a registry, and each carries a recorded decision about what erasure does to it: delete the row, strip the identifying columns, replace the identifier with one that resolves to nobody, or deliberately keep it. A test walks the database schema against that registry, so a new table holding personal data fails our build until somebody has decided, in writing, what erasing a person means for it. Deciding to keep something is allowed. Deciding nothing is not.

Some records must keep existing without keeping the person. Phone numbers and payment identifiers that need to be matched later are encrypted under a key belonging to that one person, held apart from the records referencing them. Erasure destroys that key, which destroys every value under it at once, while the surrounding records keep an identifier that now resolves to nobody. There is no configuration in which those values are stored unencrypted — the system refuses to start rather than fall back to plain text.

  • You can erase a contact yourself, from inside InsideDM. Their conversation history goes with them.
  • A person can come to us directly to stop being messaged or to be deleted, without going through the business first — see section 1.
  • Meta’s deletion requests are honoured.When someone removes an app’s access or asks Meta to have their data deleted, that request reaches us and we act on it.
  • Shopify’s redaction requests are honoured — customer and shop redaction requests are processed within their required window.
  • You can delete your whole account from your settings. We show you what will be removed before you confirm.

Every one of these routes, with the exact wording to send us and what to expect back, is on one page: Delete your data.

10

Your rights, and how to use them#

You can ask us to show you the personal data we hold about you, correct it if it is wrong, complete it if it is partial, update it, and erase it. You can withdraw consent as easily as you gave it. You can ask for a copy in a portable form, ask us to restrict or stop a particular use, and nominate someone to exercise these rights if you cannot. You can complain to us, and escalate if we don’t resolve it.

Some of these come from the GDPR and UK GDPR, where those apply to you. The rest come from India’s Digital Personal Data Protection Act, 2023 — whose substantive obligations commence in May 2027. We don’t propose to wait: the rights above are available now, and we would rather build the habit early than discover in 2027 that we can’t honour them.

We will not charge you more, or give you a worse service, because you exercised any of these rights.

If you're a customer of a business that uses InsideDM
For most requests — seeing your data, correcting it — the business decides, so ask them: they hold the relationship and the context. For the two that shouldn’t require anyone’s cooperation — stopping messages and deleting your data — write straight to us and we will act. Either way, if you can’t reach the business or they don’t respond, come to privacy@insidedm.in and we will identify the business, pass the request on, and act ourselves where we are able to identify you. We will not leave you with nowhere to go.

To make a request, write to privacy@insidedm.in. We may need to verify who you are first — mainly so we don’t hand your data to someone claiming to be you. We acknowledge within 24 hours and complete the request within 30 days. If we can’t do what you asked, we tell you which rule prevents it and what we did instead, rather than going quiet.

11

How we protect it#

  • Encrypted in transit, and at rest in our managed database.
  • Merchant credentials and access tokens are encrypted with a dedicated key, never stored in plain text.
  • Personal data that must survive the deletion of surrounding records is encrypted under a per-person key, so erasure can destroy it precisely.
  • Each business's data is stored separately from every other business's, and access is scoped per workspace with roles and permissions.
  • Staff access to production data is limited to the people who need it to run the service.
  • Webhooks from Meta, Shopify and payment providers are signature-verified before we act on them.
The honest limit
No method of transmitting data over the internet, and no method of storing it, is completely secure. We can tell you what we do and be held to it; we cannot promise you a breach will never happen. If one does and it affects your data, we will tell you and the relevant authority as the law requires.
12

Cookies and the website#

We use cookies to keep you signed in and to keep your session secure. We also use one analytics tool, Microsoft Clarity, to see how our pages are used — which links people click, where they scroll, and where a page confuses them.

Clarity records a session as a picture of the page and the actions taken on it. On our public website that picture is ordinary marketing copy. Inside the dashboard it is masked: we send the shape of the screen — layout, clicks, scrolling — and none of the words. Your customers’ names, phone numbers, and the text of their messages never leave your browser for Clarity. Anything you type into a field is never captured, anywhere on the site.

Clarity sets its own cookies, and Microsoft sets cookies of its own alongside them — including one (“MUID”) that Microsoft also uses for advertising on its own services. We do not advertise, we run no ad campaigns, and we do not build profiles of you or target you. But we should be straight about it: Microsoft receives this data as an independent controller, under its own privacy statement, not merely as a supplier acting on our instructions. Recordings are kept for 30 days and heatmaps for nine months. If you would rather not be included, your browser’s “do not track” and cookie-blocking settings will exclude you, and you can write to us at the address in the Contact section.

Beyond that there are no advertising pixels and no other third-party analytics on insidedm.in.

Our web server keeps ordinary request logs — IP address, browser, page and time — for security and debugging.

13

Children#

InsideDM is a tool for businesses and is not intended for anyone under 18. We don’t knowingly create accounts for children, and wedon’t use anyone’s data for behavioural advertising or build profiles of anyone — which the DPDP Act prohibits for children specifically, and which we don’t do for anyone. The one qualification is the analytics cookie described in “Cookies and the website” above, which Microsoft may use for its own advertising; that is Microsoft’s processing, not ours, and it is why we say it there rather than leaving it implied here.

If a business uses InsideDM to talk to customers who may be children, that business is responsible for the consent the law requires, including verifiable parental consent where it applies. If you believe a child’s data has reached us without that consent, tell us and we will delete it.

14

Changes, contact and complaints#

The date at the top of this page is the date it last changed. When a change materially affects how we handle your data, we tell account holders by email or in the dashboard before it takes effect — rather than updating the page and relying on you to re-read it. Because Meta’s and Shopify’s terms make this notice the limit of what we may do with your data, we update it before shipping something new, not after.

For anything about this notice or your data, write to privacy@insidedm.in. For everything else, support@insidedm.in.

The company behind InsideDM

InsideDM Technologies Private Limited
5-9-30/1/24-25, Flat 301, P Colony, Basheerbagh,
Himayathnagar, Hyderabad 500029, Telangana, India
CIN: U62099TS2026PTC221059

Grievance Officer

As required by the Information Technology Rules and, from May 2027, the Digital Personal Data Protection Act, 2023, a named officer is responsible for complaints about how we handle personal data. If you are unhappy with how we’ve dealt with your data or your request, write to them directly.

Our grievance timetable
We acknowledge every complaint within 24 hours and resolve it within 7 days. Where something genuinely can’t be settled in that time we will tell you why and finish within 30 days at the outside. These are the timelines the Information Technology Rules require of us as amended in February 2026 — we publish them so you can hold us to them rather than guess.
Priyum Agrawal — Grievance Officer
InsideDM Technologies Private Limited
5-9-30/1/24-25, Flat 301, P Colony, Basheerbagh,
Himayathnagar, Hyderabad 500029, Telangana, India
grievance@insidedm.in · +91 70175 03575

The full procedure — what to include, what happens at each stage, and where to appeal — is on our Grievance Redressal page.

If our Grievance Officer’s answer doesn’t satisfy you, you have somewhere else to go. Under the Information Technology Rules you may appeal to a Grievance Appellate Committee within 30 days of our decision. Once the Digital Personal Data Protection Act commences in May 2027 you will also be able to complain to the Data Protection Board of India. And if the GDPR applies to you, you may complain to your local supervisory authority at any time.

InsideDMInsideDMInsideDM

Turn Instagram & WhatsApp into your best storefront — capture, sell, get paid and follow up, all on autopilot.

Product
  • Instagram
  • WhatsApp
  • Commerce
  • Dashboard
  • Pricing
Company
  • About
  • Customers
  • Blog
  • Careers
Resources
  • Help center
  • Contact us
  • Changelog
  • Status
Legal
  • Terms
  • Privacy
  • Delete your data
  • Grievance Redressal
InsideDM Technologies Private Limited
5-9-30/1/24-25, Flat 301, P Colony, Basheerbagh, Himayathnagar, Hyderabad 500029, Telangana, India
CIN: U62099TS2026PTC221059 · support@insidedm.in · +91 91299 30999
© 2026 InsideDM · Made in India, ready for the world
TermsPrivacyDelete your data
InsideDM