This page describes how Mersal handles personal data in line with data-protection principles, including the EU General Data Protection Regulation (GDPR) where applicable.
Who We Are
Our website address is https://mersal.it.
Mersal is a multi-channel bulk-messaging and marketing-automation platform — SMS, WhatsApp, and Email campaigns, CRM, automation, and AI tools — operated from Cairo, Egypt.
You can reach us any time at [email protected].
Our Role
Mersal may act as a data controller (for your account data) and a data processor (for the recipient data you upload and message through the platform). Data-protection inquiries can be sent to [email protected].
How Mersal Secures Communications
- No access to phone books: the platform does not access your device’s contact book; you control exactly which lists are uploaded.
- Encryption: WhatsApp messages are end-to-end encrypted to the recipient’s device, and all traffic between your application and Mersal is secured over HTTPS/TLS.
- Transit processing: message payloads are processed in real time as a transit gateway; we do not permanently write or index conversation contents onto our servers.
- Retention windows: media and delivery metadata are stored only for delivery purposes and purged automatically shortly afterwards.
- Ongoing audits: TLS encryption, scheduled security reviews, and automated scans across our infrastructure.
Your Data-Subject Rights
You may request access to, correction of, or deletion of your personal data at any time — see our Delete User Data page or contact [email protected].