Mazen Command Centre

Privacy policy

Privacy policy and data-deletion instructions for a personal career-management tool and its WhatsApp connection.

Last updated: 19 September 2026 · Personal WhatsApp integration

1. Who operates this tool

Mazen Command Centre is operated by Mazen Akram Salem as a private career-management workspace. It organizes job opportunities, CVs, application information and follow-up tasks. Its WhatsApp connection is restricted to the owner's configured phone number; this configuration is not a public messaging service.

This notice covers data handled by the Command Centre. It does not replace WhatsApp's, Meta's or other providers' own privacy notices.

2. Information the tool handles

  • Messages deliberately sent to the connected WhatsApp number: text, sender identifiers, message IDs, timestamps, attached files and message delivery information.
  • Career records: job descriptions and links, employer and contact details, CVs and other uploaded documents, application notes, statuses, deadlines and tasks.
  • Processing and security records: extracted document text, analyses, workflow results, errors, reviewed-action approvals, audit records and login sessions.

The connection does not import the owner's entire personal WhatsApp history, address book or unrelated chats. Messages from senders other than the configured owner are not admitted to the application's message inbox. Meta and the connection provider may still process delivery traffic before the application rejects it.

Only send information you are entitled to share. A forwarded vacancy or CV can include another person's information.

3. Why information is used

Information is used to record and review opportunities, organize career documents, extract relevant details, answer supported commands, track follow-ups and keep a record of approved actions. Incoming messages may create internal records automatically.

Outgoing WhatsApp replies require an explicit reviewed approval. Adding a job to the tracker is not the same as submitting an application to an employer. This setup does not automatically send job applications.

The inspected configuration contains no advertising, sale-of-data or public-profile features.

4. Services involved

  • Meta / WhatsApp: delivers messages, attachments and delivery events through the WhatsApp Business Platform. Approved replies and their recipient details are sent to Meta for delivery.
  • Cloudflare Tunnel: carries HTTPS webhook traffic to the local receiver during testing. This traffic can include message content and metadata. The private dashboard and its export and document routes are not exposed through this receiver.
  • Cloudflare Pages: hosts this public informational page, not the private Command Centre. Cloudflare may process visitors’ IP addresses and technical traffic information to deliver and protect its services. See Cloudflare’s privacy policy.
  • The owner's Mac: stores the Command Centre database, uploaded files, processing results and locally created backups.

No AI provider, email, calendar, Google Drive or Notion connection is configured in the inspected setup. If one is enabled later, this notice must first be reviewed to identify the provider, information sent and purpose. The same applies to a change in hosting or intended users.

Provider processing and retention are governed by each provider's own terms and privacy notices and may involve processing outside the owner's country. Deleting local records does not delete all provider-held copies.

5. Storage, access and retention

Records are kept in a local database and private upload directory. Access to the dashboard requires a login. Incoming webhooks are checked for Meta's signature, the configured business phone-number ID and the permitted sender. Credentials are stored separately in a restricted-permission local configuration file.

The application currently has no automatic retention or deletion schedule. Records remain until manually removed. Backups and exports are separate copies and require separate review and removal. This notice does not claim that the database or backups are encrypted at rest.

The dashboard uses an essential sign-in cookie. This informational page adds no analytics, advertising scripts or tracking cookies. Cloudflare processes technical traffic information as described above.

6. Request access, correction or deletion

To ask about information relating to you, request a correction or request deletion, contact the operator using the email below. You do not need to disclose a password, access token, identity document or your entire chat history.

  1. Use the subject Command Centre — data request.
  2. Say whether you want access, correction or deletion. Identify the relevant phone number or record and approximate date so the operator can locate it.
  3. The operator will check the requester's relationship to the information before disclosing or deleting it, and confirm the outcome or explain any information that cannot be removed.

Deletion requests require manual handling. They should cover relevant inbox events, derived job records, documents and uploaded files, workflow and approval records, and backups or exports held by the operator. Deleting only an application in the dashboard does not remove every related message, audit record or backup.

Stopping messages, disconnecting an integration or removing the app from Meta does not by itself erase existing local records. Local deletion does not remove a message from another recipient's device or control records retained independently by Meta, WhatsApp, Cloudflare or an employer.

Requests are handled manually through the contact below. No automated deletion endpoint or guaranteed response period is currently implemented.

7. Changes to this notice

The operator will review this notice when the tool's data use, providers, access model or retention practices change. The updated notice will show its revision date and a way to contact the operator.

8. Contact

Operator: Mazen Akram Salem
Privacy email: mazenakram123@gmail.com