Why do you need my personal data?

We collect personal data to provide, support, and improve our services. The information helps us deliver a secure and reliable experience for you and your visitors.

What we collect

  • Account and contact details: for example, your email address when you sign up.

  • Usage and technical data: IP addresses, browser type, device details, and other information gathered automatically to help the service work and to diagnose issues.

  • Cookies and similar technologies: used to remember preferences, enable the chat widget, and understand how visitors use the service.

Why do we collect this data

We only collect data that we need to provide our services and to make them work well. That includes:

  • Delivering the chat widget and connecting visitors with agents.

  • Improving performance and reliability.

  • Preventing fraud and protecting accounts.

  • Providing customer support and troubleshooting.

How we use cookies and similar technologies

We use cookies and related tools to process information (for example, IP addresses) and to understand user behaviour. The widget relies on these technologies to enable effective communication between you and your customers. To learn more, see this guide: What are tawk.to cookies and what do they do?

Where your data is stored

Your data is stored in the United States on Google Cloud services. We also use a global Content Delivery Network (CDN) to ensure fast and reliable performance worldwide. To learn more, see: Where and how do we host our data?

Who can access your data

Access is limited to authorized tawk.to staff who need it to provide and support the service. We may also share data with third-party subprocessors for hosting, email, analytics, and delivery of our services. A current list of subprocessors is available on our Data Protection page. 

How we protect your data

We protect data using encryption and strict access controls. Data is encrypted in transit and at rest using industry-standard protocols. We limit internal access and use the data only for service provision, support, and improvement, except where compelled by law. We follow data protection frameworks, including the EU-U.S. Data Privacy Framework, the UK extension, and the Swiss-U.S. DPF. 

Legal requests and U.S. law

As a U.S.-based company, we comply with applicable laws and may be required to respond to valid legal requests, including those under FISA Section 702. 

How long do we keep your data

We retain your data until you ask that we delete it. You can delete chats and tickets in your dashboard. If you want your account information removed, contact us and we will delete your data from our servers. Note that deleted data cannot be recovered.

Additional considerations

  • Third-party subprocessors
    We rely on third parties for hosting, email, analytics, and other services. Review our Data Protection page for the current list of subprocessors.

  • Security limitations
    While we use encryption and best practices, no system is perfectly secure. Avoid sharing highly sensitive data unless necessary.

  • Legal requirements
    In some cases, we must comply with lawful requests from authorities. If you have concerns about legal access to data (for example, FISA-related requests), see our Privacy Policy.

Related guides


If you have feedback about this article, or if you need more help:

Was this article helpful?

292 out of 413 liked this article

Still need help? Message Us