Teams and your data
Last updated: September 4, 2026
This page says what the admin of a Team can obtain from Buhata about what is written in that Team, how they obtain it, and what is never included. It sits alongside the Terms, the Privacy Policy and the Data Processing Addendum and forms part of them. Every sentence below describes something the software enforces, not a practice we intend to follow.
Who the admin is, and what they control
When you write in a Team, the admin of that Team is the controller of that content and Buhata processes it on their behalf. That is what makes it possible for the admin to ask us for a copy of what has been written in the Team. Your account is a different matter. Your email address, your sign-in details, your devices, your plan and anything you keep outside that Team belong to your account, of which Buhata is the controller, and none of it is ever included in what an admin can obtain.
There is no button
An admin cannot download a Team’s content themselves, and there is no control anywhere in the product that does it. They write to support, we verify that they are the admin of that Team, and a member of our staff fulfills the request with a written reason recorded against it. Every fulfillment is logged: who asked, why, when, and how much was released.
What is included
Threads, posts, chat messages, and the names of files, together with the display name shown on each. That is all.
What is never included
Your email address, your account, your devices, your sessions, your plan and billing, your bank connections, your private notes, and anything you have written in any other Space. A Household is never subject to this at all. In a Household nobody is the controller of the others, so no member can obtain a Household’s contents from us, and a request for one is refused.
Names first, files second
The first stage lists files by name only and does not release their contents. Releasing a file’s contents is a second, separate request, and it has to state a ground: a legal hold, a request from a regulator, a security or safety incident, or a member’s own request routed through their admin. A second request without a ground is refused. When files are released they are released one at a time, each one logged by name, through a link that expires after five minutes.
What you delete is gone
If you delete a message or a post of your own, its words are erased and its attachments are removed from storage. It does not appear in anything an admin can obtain, at either stage, because it no longer exists. A removal by a moderator is different: the words are kept so that a report and an appeal have something to point at, and that removal is recorded as a moderation action.
You are told inside the Team
This page is not the only place you learn this. The Team screen in the app says what the admin can and cannot ask for, to every member, whether or not they ever open a settings page.
Your own copy
You can ask for a copy of your own account data from the app at any time, and it arrives by email. If a request fails, the failure is recorded and our staff can see it.
Questions
Write to [email protected]. If you are the admin of a Team and need its content, that is the address to use, and this page is what you will be held to.
