Viewbook
WhyHow it worksPricingFAQClient login

Privacy notice

Last updated 12 September 2026. Applies to viewbook dashboards, buyer pages and the WhatsApp assistant.

1. Who we are

Chinmoy Goswami, trading as Viewbook ("Viewbook", "we") provides an AI assistant that brokerages ("clients") use to answer property buyers on WhatsApp. Contact: the contact details on this site.

2. Two roles

For buyer conversations, the client is the data controller and Viewbook is its processor: we handle buyer data only on the client's instructions and under a data processing agreement. For client accounts (logins, billing, support) Viewbook is the controller.

3. What we process

  • Buyers: WhatsApp number, name and what they tell the assistant (budget, area, timeline, preferences, whether they have proof of funds), bookings, and enquiry details forwarded from property portals (name, phone, email, message).
  • Clients: business contact details, login email, consultants' names and WhatsApp numbers, calendar availability, listings, uploaded documents, usage and billing records.
  • Buyers' AI assistants (only where the client switched it on): the assistant's search, Passport reads and viewing requests, the assistant's name or software signature, and the buyer's name and number it supplies; nothing is booked until the buyer confirms on WhatsApp.
  • Buyer pages: which sections of a Property Passport were opened and, where a video tour exists, how much of it was watched, attributed through an opaque token, never a name, to measure what helps buyers decide.
  • Client logins: email, hashed password, optional two-factor secret and backup codes (hashed), sign-in times and addresses.
  • Technical: server logs, health checks, message delivery status.
  • Conversation patterns (shared across clients, de-identified): once a conversation has been quiet for a day, the kind of question a buyer asked and what the assistant did are rewritten as generic templates (for example "buyer says the budget is below every listing; assistant says so plainly and offers a consultant call") together with what happened next (a reply, a Passport opened, a viewing booked, silence). Names, phone numbers, prices, amounts, dates, areas, buildings, listings and links are removed before anything is stored, and a check discards the item if any survived. This store is used to improve reply quality for every client and never to train AI models. Any client can switch it off for its own conversations.

4. Why and on what basis

  • To answer buyers and book viewings: performance of the service the client asked for, and the buyer's request when they message the number.
  • To remind buyers of bookings and to hand over to a consultant: legitimate interest of the client in serving its buyer.
  • To run, secure, bill and support the service: contract and legitimate interest.

5. Who else sees data (sub-processors)

Anthropic (AI model, USA and EU regions), Meta Platforms and Twilio (WhatsApp delivery), Google (maps, geocoding, commute times), Voyage AI (document search, optional), Resend (email), Polar (payments), Hetzner (hosting, EU). Each is bound by contract and processes data only to provide its part of the service. We do not sell data and we do not use buyer conversations to train models.

6. Where and how long

Data is stored on servers in the EU. Buyer conversations are kept while the client uses the service and deleted within 30 days of the client leaving. A client can delete any buyer's messages and details from the dashboard at any time; backups roll off within 14 days.

7. Your rights

Under UK GDPR, EU GDPR, the UAE Personal Data Protection Law and similar laws you can ask for access, correction, deletion, restriction, portability and to object. Buyers should contact the brokerage they messaged; we help the client answer within the legal time. You can also contact us at the contact details on this site. You may complain to your data protection authority (in the UK, the ICO).

8. Security

Signed webhooks, encrypted transport, per-client isolation, two-factor sign-in, roles, login throttling and a sign-in log, data and backups held in an encrypted volume on the server, nightly backups kept 14 days with an encrypted offsite copy (Cloudflare R2, EU jurisdiction), tested restores, and a monitored health check on every client's connection.

9. Changes

We will post changes here and tell clients by email for material ones.

© Chinmoy Goswami, trading as Viewbook · PrivacyTermsData processing agreement
Book a demo on WhatsApp