P2P Labs

Privacy Policy

Effective 28 August 2026

AtlasNow is a local-demand and conversations platform operated by P2P Labs. This policy explains what we collect, why we collect it, and how you can ask us to delete it. It applies to agency staff, client staff, and people whose messages appear in a client inbox after they contact a connected Facebook Page, Instagram Professional account, WhatsApp number, TikTok Business account, or other linked channel.

Who we are

P2P Labs (“we”, “us”) operates AtlasNow at https://atlasnow.co. We act as a processor for business clients who use the product to manage their locations, reviews, and customer conversations. For our own website, login, and billing records we act as a controller.

Contact: hello@atlasnow.co

Information we collect

Account data: name, email, password hash, role, and which clients or locations you may access. If you create an account with Google or Facebook we receive the name and email on that account so we can open your workspace. We do not post to your personal profile. WhatsApp is not used to create an AtlasNow login.

Business data: client and location profiles (name, address, phone, maps or Google Business Profile IDs) that staff enter or import.

Google Business Profile data, when a client connects Google: listing details, reviews, and related metadata needed to operate Reputation and Data Health.

Meta / Facebook and Instagram data, when a client clicks Connect Meta: Facebook user ID of the person who authorized, the Pages they granted, Page access tokens, Page name and ID, and if the Page is linked to an Instagram Professional account, that account’s id and username. When Messenger is enabled we receive messaging webhooks: Page ID, the sender’s Page-scoped ID (PSID), message text, attachments metadata, and timestamps. When Instagram Messaging is enabled we receive the same kind of webhook for that Professional account: Instagram-scoped ID (IGSID), message text, attachments metadata, and timestamps. We do not receive the sender’s phone number from Messenger or Instagram Direct. We do not post to personal profiles, publish on the Page or Instagram grid, or read insights.

WhatsApp data, when a location is connected through our WhatsApp bridge: phone number or WhatsApp LID, chat text, media references, and session status.

TikTok data, when a client clicks Connect TikTok: TikTok user open_id of the person who authorized, the TikTok Business Account id and handle they granted, and access tokens for that account. When Business Messaging is enabled we receive webhooks: Business Account id, the customer’s open_id, message text, attachments metadata, and timestamps. We do not receive the sender’s phone number from TikTok Direct. We do not publish videos, run ads, or read TikTok insights.

Technical logs: request metadata and error reports used to keep the service running.

How we use information

Provide the product: inboxes, location records, reviews, channel connections, and agency tools.

Map a Facebook Page, Instagram Professional account, WhatsApp session, or TikTok Business handle to the correct client location so conversations land in the right inbox.

Authenticate users, prevent abuse, and debug failures.

We do not sell personal data. We do not use Facebook, Instagram, or TikTok platform data to build independent advertising profiles, and we do not transfer that data to other advertisers or data brokers.

Facebook and Instagram Platform data

AtlasNow uses Facebook Login for Business so a client (or an agency sitting with that client) can connect Facebook Pages they administer and, when linked, the Instagram Professional account on that Page. We request only these permissions: pages_show_list (list Pages they admin so they can map a Page to a branch); pages_messaging (receive and reply to Messenger conversations in the Conversations inbox); pages_manage_metadata (subscribe the Page to our webhook so new messages arrive); instagram_basic (read the linked Instagram Professional account id and username for mapping); instagram_manage_messages (receive and reply to Instagram Direct messages in the same inbox); business_management (required by Meta as a dependency of the Page and Instagram messaging permissions — we do not manage the client’s Business Manager, ad accounts, or Business users). We do not request permissions to publish posts, run ads, or read insights.

Page tokens and Messenger / Instagram events are stored so the client’s Conversations inbox can show incoming DMs and so a human agent can reply. That platform data is used only to operate that messaging feature and related support. We do not use it to build advertising profiles or to target ads. If a client disconnects Meta we stop ingesting new events and we can delete stored Page tokens and Messenger / Instagram threads on request.

End customers who write to a Page or Instagram Professional account are not asked to create an AtlasNow account. Their PSID or IGSID and message content are visible to the Page owner’s authorized AtlasNow users (that client’s staff and, when the agency operates the workspace, P2P Labs operators working on that client).

TikTok Platform data

AtlasNow uses TikTok’s official Business Messaging so a client (or a group sitting with that client) can connect TikTok Business accounts they administer. We request only what is required to list those accounts, receive Direct messages, and send a human agent’s reply in the Conversations inbox. We do not request permissions to publish videos, run ads, or read insights.

Account tokens and TikTok Direct events are stored so the client’s Conversations inbox can show incoming DMs and so a human agent can reply. That platform data is used only to operate that messaging feature and related support. We do not use it to build advertising profiles or to target ads. If a client disconnects TikTok we stop ingesting new events and we can delete stored tokens and TikTok threads on request.

End customers who write to a connected TikTok Business account are not asked to create an AtlasNow account. Their open_id and message content are visible to the brand’s authorized AtlasNow users (that client’s staff and, when the group operates the workspace, P2P Labs operators working on that client). We do not treat a TikTok open_id as a phone number.

TikTok GO Dining (Local Service API) is separate: we store merchant id, shop mapping to outlets, and voucher query/redeem events at the till. WhatsApp deal notices about GO vouchers go only to Atlas customers who opted in on the HQ number — not to a TikTok phone book, and not as a CSV. We do not send the voucher QR payload on WhatsApp.

Who can see data

Authorized users of the same client workspace (and agency operators for that client).

Infrastructure we use to host the app and, where a client has connected them, Google, Meta, TikTok, and the WhatsApp session provider. Those parties process data under their own terms.

We may disclose information if required by law or to protect the service from abuse.

Retention

Account and business records are kept while the workspace is active.

Conversation messages stay until the client deletes them, disconnects the channel and asks us to purge, or a valid deletion request is completed.

Error logs are rotated and are not a customer archive.

Your rights

You may ask for access, correction, or deletion of personal data we hold. Workspace users can also disconnect Google or Meta from Channels, and Page owners can remove the app from Facebook Page settings (that also drops the linked Instagram Professional account).

People who only messaged a connected Page, Instagram Professional account, WhatsApp number, or TikTok Business account can request deletion at https://atlasnow.co/data-deletion or by emailing hello@atlasnow.co. We aim to complete verified requests within 30 days. Deleting our copy does not delete the conversation on Facebook, Instagram, WhatsApp, or TikTok themselves.

Children

AtlasNow is a business tool. It is not directed at children under 13 (or the equivalent minimum age in your country).

Cookies

We use a small set of first-party cookies to sign you in and remember language. Google or Meta may set their own cookies when you connect those services. We do not place Google Analytics, Google Ads, or Meta Pixel cookies on https://atlasnow.co. Details: https://atlasnow.co/cookies.

Changes

We will update this page if our practices change and revise the effective date above.