friendly.
Friendly testing prototype

Privacy policy

Effective and last updated: 1 October 2026

This policy covers Friendly’s limited Instagram and WhatsApp testing prototype and this information website. Friendly is a product operated by BRUTANIX; Lokesh MV manages this pilot and is not affiliated with, endorsed by or sponsored by Meta or Instagram.

Who the test is for

Friendly is currently for the operator and invited testers only. It is not a publicly available assistant. Do not send confidential information, passwords, financial information or other sensitive personal data to the test account.

Information processed during testing

Meta may deliver events from other people who message the connected account. Those messages may be recorded locally, but automated replies and downloads are limited to test senders approved by the operator. Please contact the operator if you messaged the test account unintentionally and want your data removed.

Why the information is used

Information is used to test receiving messages, saving and retrieving Reel links, categories, public video downloads, replies, duplicate prevention and troubleshooting. The pilot transcribes downloaded Reel audio using Sarvam when configured, and uses local models for sampled-frame analysis, summaries and questions. It stores transcripts, summaries, personal context and processing status. Audio is sent to Sarvam for transcription; results may be incomplete or inaccurate. WhatsApp linking processes your phone number, one-time connection message, consent, reminder requests and delivery receipts. Requested reminders are sent only when the configured messaging window or approved-template requirements allow it. Reply STOP on WhatsApp to disconnect and stop pending WhatsApp reminders; this is separate from deleting your data.

Where information goes

Instagram messages and account operations are processed through Meta. During connected tests, webhook events and authenticated library access may travel through a temporary Cloudflare tunnel to the operator’s Mac. The tunnel is stopped between testing sessions. The prototype stores its database, credentials and downloaded media locally. The operator can inspect test records and media for troubleshooting.

This public information website is hosted using Vercel and its hosting infrastructure. Visiting it may cause the hosting provider to process ordinary request information such as your IP address, browser information and access times for site delivery and security. This public information site does not display private test records. The separate authenticated test library displays only the signed-in user’s saved items. Its login sessions use cookies; private login links expire and are single-use. Provider processing may take place in countries other than yours.

Website cookies and analytics

Friendly does not add advertising trackers, analytics scripts, sign-up forms or its own cookies to this website. Hosting providers may use infrastructure necessary to deliver and secure the site. Following an Instagram link takes you to a separate service governed by Meta’s policies.

Retention and deletion

Test messages, linked identities, consent, reminders, transcripts, summaries, saved links, categories, downloaded media and operational records remain in local test storage until the operator deletes them. Automatic expiry is not implemented in this prototype. You may request deletion at any time using the data-deletion instructions. The operator handles requests manually and can remove records and files associated with your test identity. Provider logs are subject to the relevant provider’s retention practices.

Security and your choices

Friendly validates Meta webhook signatures, limits test replies to approved senders, and keeps its setup page off the public tunnel. Credentials are stored in a local file with restricted file permissions; they are not encrypted separately by the prototype. No system is completely secure, so use only appropriate test content.

You can stop participating at any time, request deletion, or remove any Friendly authorization you granted through Instagram’s Apps and Websites settings. Removing authorization stops that access but does not itself delete records already stored by Friendly.

Contact and changes

Contact the operator, Lokesh MV, by sending a direct message to @lokesh__mv on Instagram. Start privacy questions with “Friendly privacy” and deletion requests with “Friendly delete my data”. These requests are handled manually, not by an automated deletion command.

This policy will be updated before materially different data uses are introduced. The date above identifies the current version. For provider information, see Meta’s privacy policy, Cloudflare’s privacy policy and Vercel’s privacy policy.