Government & Public Authority Data Request Policy
Effective date: 6 July 2026
This policy governs how uni-msg handles any request from a public authority — law enforcement, a regulator, or another government body — for personal data or personal information of users, including data received via Meta’s platform.
1. Legality review
Every request is reviewed before any response to confirm that it is legally valid: issued by an authority with jurisdiction, in the legally required form, and properly scoped. Requests that fail this review are not fulfilled. Where needed, external counsel is engaged before responding.
2. Challenging unlawful or overbroad requests
If a request appears unlawful, overbroad, or improperly served, uni-msg will push back: seek narrowing, require proper legal process, or challenge the request through available legal channels before disclosing anything.
3. Data minimization
When a valid request must be fulfilled, uni-msg discloses only the minimum data necessary to satisfy the specific request — never full-account exports where a narrower response suffices.
4. Documentation
Every request, its legality assessment, all correspondence, the legal basis relied upon, the actors involved, and exactly what data (if any) was disclosed is recorded in a request register retained for at least five years.
5. Notification
Where the law permits, affected business customers are notified of requests concerning their workspace data before disclosure.
6. Meta Platform Data
Requests touching data obtained through Meta’s APIs are additionally evaluated against our obligations under the Meta Platform Terms and the WhatsApp Business Terms of Service.
Contact
Public authorities must submit requests in writing to [email protected].
This document is provided by uni-msg; consult your counsel for jurisdiction-specific requirements.