Privacy Policy
Last updated: 28 April 2026
1. Who We Are
Badilisha Insurance Brokers Ltd (“Badilisha”, “we”, “our”) is an Insurance Regulatory Authority (IRA) licensed insurance broker operating in Kenya. We provide insurance products and customer support services via WhatsApp, our website, and our internal CRM platform.
Contact:info@badilisha.africa | Nairobi, Kenya
2. What Data We Collect
When you interact with Badilisha via WhatsApp or our platform, we may collect:
- WhatsApp phone number — the number you use to contact us
- WhatsApp display name / profile name — as provided by WhatsApp
- Message content — the text, images, or documents you send us in the course of your insurance inquiry or support request
- Transaction reference numbers — shared by you when reporting payment or claim issues
- Policy information — details you provide to obtain an insurance quote or policy (e.g. vehicle number plate, ID number)
We do not collect financial account numbers, passwords, or any data beyond what is necessary to provide our insurance and support services.
3. How We Use Your Data
We use your data solely to:
- Respond to your insurance inquiries and process policy applications
- Provide automated customer support via our WhatsApp bot
- Route complex queries to a human support agent
- Send you policy documents, payment confirmations, and renewal reminders
- Comply with regulatory obligations under Kenyan insurance law
We use the WhatsApp Business API (provided by Meta Platforms, Inc.) to deliver messages. We access only the permissions required to send and receive messages on behalf of our business number. We do not use your data for advertising, profiling, or any purpose beyond direct customer service.
4. How We Store & Protect Your Data
- All data is stored in a secure, encrypted PostgreSQL database hosted on Supabase (EU-West region).
- Access to the database is restricted to authorised Badilisha staff and system processes only.
- Passwords for staff accounts are hashed using bcrypt and never stored in plain text.
- All data is transmitted over HTTPS/TLS.
- We retain conversation data for up to 2 years for compliance and dispute resolution purposes, after which it is deleted.
5. Data Sharing
We do not sell your data. We share your data only with:
- Meta Platforms (WhatsApp Business API) — as the channel through which messages are delivered
- Underwriting insurance partners — only the data required to issue a policy on your behalf
- Regulators — where required by Kenyan law (IRA, KRA)
6. Your Rights
Under the Kenya Data Protection Act 2019, you have the right to:
- Access — request a copy of the personal data we hold about you
- Correction — ask us to correct inaccurate data
- Deletion — request deletion of your data (subject to regulatory retention requirements)
- Opt-out — stop receiving WhatsApp messages from us at any time by sending “STOP” to our number
To exercise any of these rights, email us at info@badilisha.africa.
7. WhatsApp & Meta Policy Compliance
Our use of the WhatsApp Business API complies with Meta's WhatsApp Business Policy and Commerce Policy. We only message users who have initiated contact with us or have opted in to receive communications from Badilisha.
8. Cookies & Analytics
Our website uses only essential, functional cookies (e.g. authentication session cookies). We do not use third-party advertising or tracking cookies.
9. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated via WhatsApp or email. Continued use of our services after the effective date constitutes acceptance.
10. Contact Us
For any privacy-related queries:
Badilisha Insurance Brokers Ltd
Email: info@badilisha.africa
WhatsApp: +254 700 000 000
Nairobi, Kenya