Security & privacy

How Chato.pro treats your WhatsApp data

Public marketing pages are meant to be crawled. Your conversations, sessions, and dashboards are not.

What stays private

The inbox, chats, reports, billing, chatbot settings, and APIs that return user data require an authenticated session. Those routes are disallowed in robots.txt, marked noindex, and are not listed in the XML sitemap. Search engines and AI crawlers should not treat conversations as public content.

How a number is connected

You connect WhatsApp with a QR code, the same family of flow as WhatsApp Web. The phone that scanned remains part of the live session. You can disconnect a session in Chato when you want that number out of the dashboard.

Transit and storage

Chato uses HTTPS. Session data is stored so you can return to the same numbers after you sign in. Chato does not sell WhatsApp messages for advertising.

Accounts

Sign-in uses Google on the Chato login page. People who should share an inbox use the same Chato account. There is no public user directory.

Legal terms: Terms, privacy, refunds. Support: support@chato.pro.