Privacy policy
Last updated: 29 August 2026
Wenk Mi is a messenger running on a server belonging to the owner of wenkmi.com. There is no advertising company in between, and nothing here is sold or shared for advertising.
What is stored
- Your phone number or e-mail address — whichever you sign up with. It is what identifies you and where your sign-in code is sent.
- Your display name, status text and profile photo, if you set them. A profile photo is re-encoded on upload, which removes camera metadata such as the location where the picture was taken.
- Your contacts — the numbers or addresses you add yourself, so the app can show which of them use Wenk Mi.
- Your messages, whether each one was delivered and read, and any attachments.
- Your devices — the kind of device, the name of the app, when a device last connected, and the notification token the app needs to reach it once notifications are switched on, so you can see where you are signed in and switch a device off remotely.
- Server logs. They never contain message content, phone numbers or e-mail addresses. They do contain the network address a request came from, which is what makes it possible to slow down someone trying passwords or codes in bulk.
- Technical events from the app, so a fault on one phone can be found instead of guessed at. The app records when it connected to the server and when the connection dropped, whether a message was sent and acknowledged, whether a notification was shown, error codes it received, and whether it crashed. Each entry is an event name, the identifier of the device and of the conversation concerned, a number, and a short fixed label such as “muted” saying which of a handful of cases it was — never the content of a message, a phone number, a name or a file name. These entries are kept for fourteen days and then deleted automatically.
About the content of your messages
Messages are end-to-end encrypted. The operator of the Wenk Mi server cannot read the text of a chat, nor the bytes of any photo, voice note, video or file sent in it, nor the name of a file. The keys stay on the phones taking part; the copy you can keep on the server for a reinstall is itself locked with your own password, which the server never receives.
What the server operator can still see: which accounts and devices belong to a chat, when each message was sent, the declared type and size of each file and, for media, its width, height, duration and a voice note’s waveform; how often and how much two people talk; which message is a reply to which other message; and profile photos, which are not end-to-end encrypted.
What does not happen
- No advertising and no advertising trackers.
- No sale or transfer of your data to third parties for advertising.
- No usage statistics and no tracking of what you do in the app: nothing records which screens you open, what you tap or how long you stay. The technical events described above exist to find faults, not to measure you, and they carry nothing you wrote.
- No analytics on this website. The browser is told to refuse scripts from any source at all, which also stops the measurement script the hosting provider inserts into the page. Everything the page does load — the font included — comes from this server.
Where it is kept
Everything sits on a single server inside the European Union, together with attachment storage and the database. Two companies sit in the path and see something on the way: Cloudflare, which carries every connection to the app and to this website and therefore sees the network address and the address being requested, and the provider that delivers sign-in codes by e-mail and by SMS, which receives only the address or number the code is going to and the code itself. Neither is given your messages. Mail you send to the address below reaches us through the same kind of path — a forwarding service and a mailbox provider — which is worth knowing before you put anything in it that you would not otherwise write in an e-mail.
For how long
Your data is kept for as long as your account exists. Sign-in codes stop working after five minutes; the address they were sent to is kept until the request is cleaned up, which also covers someone who asked for a code and never finished signing up. Uploads that stall halfway are removed automatically within a couple of hours.
You can delete your account from the app itself: Settings, then Delete account. It asks you to type your own number first, because it cannot be undone. If you would rather someone did it for you, write to the address below. Nightly backups are kept for fourteen days, so a copy can survive that long before it ages out.
Your rights
You may ask what is stored about you, have it corrected or deleted, and object to the processing. Write to the address below; you will have an answer within a month. If you are unhappy with how that is handled, you may complain to your national data protection authority — in the Netherlands, the Autoriteit Persoonsgegevens.
Contact
Questions about your data go to privacy@wenkmi.com.
Changes
If what is stored changes, this page changes with it and the date at the top moves.