MsgHub ("we," "our," or "us") is committed to protecting your privacy.
This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you
use our message management platform (the "Service"). By using the Service, you agree to the collection
and use of information in accordance with this policy.
2. Information We Collect
2.1 Information You Provide to Us
Account Information: When you create an account, we collect your username and a securely hashed password. We do not collect or store your email address unless you provide it through Facebook Login.
Facebook Account Data: When you connect a Facebook account via OAuth, we receive and store your Facebook user ID, name, and email address (as shared by you during authorization), along with OAuth access tokens required to provide the Service.
Page Information: We retrieve and store information about the Facebook Pages you manage, including page names, categories, cover images, and page access tokens necessary to send and receive messages on your behalf.
2.2 Information Collected Automatically
Message Data: When users send messages to your connected Facebook Pages, we receive and store the message content, sender identifiers, timestamps, and message metadata as transmitted by the Meta Platform.
Webhook Events: We log raw webhook payloads received from Meta for debugging, reliability monitoring, and service improvement purposes.
Activity Logs: We record actions performed within the Service (e.g., sending a reply, connecting a Facebook account) for operational auditing and security purposes.
3. How We Use Your Information
We use the information we collect solely for the following purposes:
To provide, maintain, and operate the core functionality of the Service — enabling you to view and respond to messages sent to your connected Facebook Pages.
To authenticate you and maintain your session within the Service.
To display the list of Facebook Pages you manage so you can select which ones to monitor.
To store and display message history for your review and response.
To debug issues, monitor service health, and improve the reliability of message delivery.
To comply with legal obligations and enforce our Terms of Service.
4. Data Sharing and Disclosure
We do not sell, rent, or trade your personal information. We may share your information only in the following limited circumstances:
With Meta Platforms, Inc.: We use the Meta Graph API to send and receive messages. Data transmitted to Meta is governed by Meta's own privacy policy.
Within Your Organization: If multiple users within your organization use the Service, message data from commonly managed Pages may be visible to those authorized users.
Service Providers: We may engage third-party hosting providers to operate the Service infrastructure. These providers have access to data solely for hosting purposes.
Legal Requirements: We may disclose information if required to do so by law or in response to valid legal requests.
5. Data Retention
We retain your account information and connected Facebook account data for as long as your account remains active.
Message data is retained for as long as necessary to provide the Service to you. Webhook logs are retained for a
maximum of 90 days for debugging purposes. You may request deletion of your data at any time by contacting us
or using the Data Deletion feature described in Section 8.
6. Data Security
We implement industry-standard security measures to protect your information, including:
encryption of data in transit (HTTPS/TLS), secure hashing of passwords, least-privilege access controls
for API tokens, and regular security reviews of our infrastructure. However, no method of electronic storage
or transmission is 100% secure, and we cannot guarantee absolute security.
7. Your Rights and Choices
Access and Portability: You may access your account data and message history through the Service interface. You may revoke our access to your Facebook data at any time through your Facebook account settings.
Correction: You may update your connected Facebook account information by re-authorizing through the Service.
Deletion: You may request deletion of your account and all associated data at any time. See Section 8 for instructions.
Disconnect: You may disconnect any Facebook account from the Service at any time, which will immediately stop message processing for associated Pages and remove stored access tokens.
8. Data Deletion Instructions
You have the right to request deletion of your personal data. To request data deletion, you may:
Visit our User Data Deletion page and follow the instructions provided there.
Contact us at the email address listed in Section 10.
Upon receiving a verified deletion request, we will remove your account, connected Facebook account tokens,
all associated Page data, stored messages, and activity logs from our systems within 30 calendar days.
Please note that messages already sent to end users through the Meta Platform cannot be recalled.
9. Third-Party Services
Our Service integrates with the Meta Platform (Facebook, Messenger, and Instagram APIs). Your use of
these integrated services is also subject to Meta's
Privacy Policy
and
Platform Terms.
We encourage you to review these policies.
10. Contact Us
If you have any questions about this Privacy Policy or wish to exercise your data rights, please contact us at:
Please include "Privacy Request" in your subject line for faster processing.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting
the new Privacy Policy on this page and updating the "Last updated" date. Your continued use of the Service
after any changes constitutes your acceptance of the revised policy.