Messages, attachments, read acknowledgements and delivery evidence

Load up to 200 messages

This guide explains that a conversation request returns a bounded page to protect the browser and server. The guide then takes you through the correct route, the checks to complete before making changes, the workflow in order, and the evidence to review afterwards.

Audience: Authorised inbox staffPermission: Per-account Reply for sending; View for reading and downloadingModule v1.0.0 · 2026.07.30-r20.5
Jump to steps
Where to goAdmin Area → WhatsApp → Inbox → Open conversation
Before you start
  • Verify the module is active and select the intended WhatsApp account before changing any operational record.
  • Use an account with the stated native CRM capability and per-account access.
  • Test with controlled customer/contact data before relying on live verification, email or CRM automation.

What you’ll accomplish

Understand that a conversation request returns a bounded page to protect the browser and server. These instructions follow the supplied r20.5 controller, model, view, installer, connector and automation flow.

Follow these steps

  1. Go to Admin Area → WhatsApp → Inbox → Open conversation.
  2. Select the correct account, conversation, customer, staff member or session before you load up to 200 messages.
  3. Complete the visible fields and confirmation prompts exactly as described below.
  4. Select the available action once and wait for its success or validation response.
  5. Check the result in the operational record and, where applicable, in Audit Trail or the linked native CRM record.

Fields and options to review

Reply textmaximum 10,000 characters
Attachmentoptional when text is present
Maximum attachment sizeadministrator setting, 1–32 MB
Message direction and WhatsApp message IDMessage direction and WhatsApp message ID

Rules the system enforces

  • A send request requires reply permission and either non-empty text or one accepted attachment.
  • The server validates MIME type using file content and stores a randomised filename in the protected upload area.
  • Opening an unread conversation asks the linked device to send a real read acknowledgement before clearing CRM unread state.
  • Understand that a conversation request returns a bounded page to protect the browser and server.

How to confirm it worked

  • The requested action completes without a permission, validation, connector or native CRM error.
  • The selected account or conversation shows the expected state without changing another account’s data.
  • Where the action creates evidence, confirm the message, native record, verification event, portal history or audit entry is present.

Security, privacy and troubleshooting checks

  • Never expose connector tokens, loopback ports, authentication directories or raw customer verification replies.
  • Use the supported Connections, Access Control, Settings and Audit Trail pages rather than editing runtime or database records directly.
  • If the expected control is missing, verify both native capability and per-account permission before treating it as an installation fault.