Skip to content
Privacy

Deleting your data

How to request deletion of your data from Labeeb, what is actually erased, and how long it takes.

Who owns the data, and who processes it

Labeeb is a chat automation tool operated by PHIBIT LTD. If you messaged a business on Instagram, Messenger or WhatsApp and that business uses Labeeb, we process the conversation on their behalf: the business is the data controller, we are the processor.

You can ask us directly and we will erase your data from our systems. We also recommend contacting the business itself: it may hold its own copy outside our systems (orders, invoices, manual notes) that we have no control over.

Three ways to request deletion

From your Facebook or Instagram settings — instant

Open your account settings → "Apps and Websites" → remove Labeeb, then choose to request data deletion. Meta sends us a signed request automatically, we erase your data within seconds and hand back a confirmation code plus a link to this page.

From inside the app — if you're a subscriber

Export your data first (the export gives you a file with every contact, tag, rule and conversation), then hit Disconnect. Disconnecting revokes our access at Meta and wipes the stored access token in the same moment. You can then ask us to delete the whole workspace.

By email — for anyone

Email [email protected] from the address on your account, or from any address quoting the business account you messaged on Instagram or Messenger and roughly when. We usually action it within 72 hours, and within 30 days at the latest as UK GDPR requires.

What gets deleted

  • The contact record: name, username, avatar, locale, phone if present
  • Every inbound and outbound message tied to you, text and logged attachments
  • Tags and custom fields applied to you
  • The raw Meta webhook payloads containing your messages
  • The linked account's access token — revoked at Meta and wiped from the database

The deletion is real: rows are removed from the database, not flagged as deleted.

What we keep, and why

  • A content-free audit trail: which account was connected or disconnected and when, and who ran an export — required for security and Meta's own obligations. It holds no name and no message text, only a one-way fingerprint that cannot be reversed
  • Billing records belonging to the account holder — UK company law requires six years
  • Aggregate counters that contain no personal data

Encrypted backups roll over within 30 days at most, after which nothing of the deleted data remains.

Just want the messages to stop?

Reply STOP — or «إيقاف» — in the conversation itself. The opt-out is recorded immediately and permanently for that channel and all automation stops, with nothing deleted. No rule or broadcast can override it.

Contact us

For any deletion, access or objection request, or if you have not heard back within 30 days:

PHIBIT LTD · Company no. 17261109 · 63 Gabriel Crescent, Lincoln, LN2 4ZD, United Kingdom
PhiBit Ltd