WhatsApp Messaging & Opt-in Policy
Last updated: October 5, 2026
Summary in plain English
Restaurants using Mikky may only transmit messages to diners who have explicitly and verifiably opted in to receive updates.
Purchased lists, scraped directories, or unauthorized databases are strictly banned and result in immediate account termination.
All outbound marketing messages must use pre-approved Meta message templates, include clear opt-out instructions, and require owner or manager approval before dispatch.
Complies fully with Meta's WhatsApp Business Messaging Policy and the Digital Personal Data Protection Act, 2023.
1. Mandatory diner opt-in consent
Mikky is built to cultivate long-term guest relationships, not spam. Under Indian regulations and Meta's WhatsApp Business Policy, restaurants may message only individual diners who have explicitly opted in to receive communications from that specific brand.
The restaurant must retain timestamped, auditable evidence of consent for every imported phone number.
2. Permitted and prohibited opt-in sources
Permitted opt-in channels
- Physical or digital POS checkout: Diner confirms opt-in when receiving an e-bill or printed receipt.
- QR table ordering & Wi-Fi portals: Diner checks an explicit consent box during self-service ordering or guest login.
- Direct inbound WhatsApp message: Diner initiates a reservation or inquiry to the restaurant's official WhatsApp number.
- Loyalty registration: Diner completes an explicit sign-up form in the restaurant or on the brand website.
Strictly prohibited sources
- Third-party marketing databases or bought phone lists.
- Scraped directories from Google Maps, aggregators, or social media.
- Shared diner numbers obtained from unrelated events or sister businesses without consent.
- Pre-checked opt-in boxes or coercive access walls.
3. Pre-approved Meta templates only
All outbound marketing messages initiated by Mikky must strictly utilize Meta-approved WhatsApp message templates. Free-form text or unverified promotional links are technically prevented by the system.
Templates must be clear, professional, respectful of the recipient's time, and accurately describe the offer without clickbait or deceptive claims.
4. Human owner approval requirement
To prevent unauthorized blasts or algorithm runaway, every campaign batch generated by our AI engine requires a named marketing manager or restaurant owner to manually authorize the send. No campaign is dispatched automatically.
5. Automated STOP and opt-out handling
Every promotional template must carry a clear opt-out notice (e.g., “Reply STOP to unsubscribe”). When a diner replies with STOP, UNSUBSCRIBE, or similar sentiment:
- Our webhook automatically updates their profile state to unsubscribed.
- Outbound marketing to that number is blocked across all campaigns for that outlet.
- The opt-out is recorded permanently with an immutable timestamp.
6. Quality rating and sending tier safeguards
Meta evaluates every WhatsApp Business phone number using a real-time Quality Rating (High, Medium, Low). To safeguard your number:
- Daily message dispatch caps are phased gradually (Tier 1K, 10K, 100K).
- Campaigns to unengaged cohorts are throttled automatically.
- If negative feedback (user blocks or spam reports) increases, campaigns are paused.
7. Prohibited content categories
In alignment with the WhatsApp Commerce Policy, restaurants must never transmit:
- Promotions for tobacco, vaping, or nicotine products.
- Direct sale or promotion of alcoholic beverages in restricted Indian territories.
- Gambling, betting, or speculative lotteries.
- Misleading health claims or unregulated supplements.
8. Enforcement and violation consequences
Compliance with this policy is mandatory. Failure to maintain verifiable opt-ins or repeated spam flags will result in immediate suspension of campaign dispatch capabilities and termination of the restaurant's service agreement without refund.
For questions, contact support@mikky.in.
Governing Law: Indian Law. Exclusive jurisdiction: Courts at Bengaluru, India.
Reference: Digital Personal Data Protection Act, 2023 (DPDP Act) & Information Technology Act, 2000.