EcomSolveBD
Legal & compliance

Last updated: 13 August 2026

Privacy Policy

EcomSolveBD ("we," "us," or "our") explains how we collect, use, disclose, and protect information when merchants use our ecommerce attribution, analytics, server-side tracking, ads reporting, and Inbox (Facebook Page / Instagram messaging) platform at ecomsolvebd.com and related services.

Who we are

EcomSolveBD provides a software-as-a-service (SaaS) platform that helps ecommerce merchants connect advertising accounts, sync conversions, send server-side events, analyze campaign performance, and manage Facebook Page and Instagram Inbox conversations (comments and messages) when they choose to connect a Page. This policy applies to merchant account holders, authorized users, and visitors to our marketing website.

Information we collect

We collect information in the following categories:

  • Account data: name, email, phone, business name, billing details, and authentication identifiers.
  • Store data: orders, products, customers (as provided by WooCommerce, Shopify, or similar), courier statuses, and operational metadata you connect.
  • Tracking data: page views, funnel events, session identifiers, UTM parameters, click IDs (gclid, gbraid, wbraid, fbclid, ttclid), device/browser signals, and hashed identity signals where configured.
  • Meta Inbox data (only if you click Connect Facebook Page in Inbox): Facebook Page and linked Instagram account metadata; Facebook post/ad comments and replies; Messenger conversations and message content; Instagram comments and Instagram Direct messages (including sender identifiers such as Page-scoped IDs / Instagram-scoped IDs, display names, profile pictures when available, timestamps, and thread metadata) needed to operate the merchant Inbox and optional automations you enable.
  • Integration credentials: OAuth refresh tokens and API credentials, stored encrypted at the application layer.
  • Support and communications: messages you send to our team, audit logs, and security events.

How we use information

We process data to provide and improve the service, including:

  • Operating dashboards, attribution reports, ROAS analytics, and unified ads reporting.
  • Sending server-side conversion events to Meta Conversions API, TikTok Events API, Google Ads API, and Google Analytics 4 when you enable those integrations.
  • Syncing campaign metrics from Meta Marketing API, TikTok Marketing API, and Google Ads API.
  • Operating the Inbox product: display and sync Facebook comments, Messenger threads, Instagram comments, and Instagram DMs for Pages you authorize; enable merchant replies and optional comment/DM automations you configure; and improve reliability of webhooks and sync.
  • Securing accounts, preventing fraud and abuse, debugging errors, and complying with law.

Meta Inbox / Facebook Page connection (App Review disclosure)

Separately from Meta Ads connection, merchants may connect a Facebook Page (and linked Instagram professional account) from Dashboard → Inbox via Connect Facebook Page. That flow uses Facebook Login and Page permissions solely to provide Inbox features the merchant enables. We do not use Inbox messaging or comment content to build ads audiences for EcomSolveBD, sell personal data, or contact end users on our own behalf.

  • Channels: FB comments (posts/ads), Messenger (Page inbox), IG comments (posts/ads), IG Direct messages.
  • Data is processed as a service provider / processor for the merchant who owns the Page.
  • Merchants can disconnect the Page in Inbox / Integrations; end users may also request deletion via our Data Deletion Instructions.
  • We comply with Meta Platform Terms, Messenger Platform policies, and Instagram Platform policies for messaging and comments.

Legal bases (EEA/UK)

Where GDPR applies, we rely on contract performance (providing the service), legitimate interests (security, product improvement, fraud prevention), consent (where required for marketing cookies or optional features), and legal obligation. For Meta Inbox content, we process on behalf of the merchant under their instructions (contract / processor role).

How OAuth and Meta connections work

When you connect Google, Meta, or TikTok, you are redirected to the platform's authorization screen. You choose which accounts or Pages to grant access to. We receive OAuth tokens scoped to the permissions you approve. We do not receive your platform passwords.

Meta Ads (Advertisement) and Meta Inbox (Connect Facebook Page) are separate connections with different permission sets. You can revoke either from our dashboard or from Meta Business Settings → Integrations / Connected apps.

Sharing and subprocessors

We share data only as needed to operate the service: with ad platforms you authorize, Meta Graph APIs for Pages/Inbox you connect, ecommerce platforms you connect, infrastructure providers listed on our Subprocessors page, and when required by law. We do not sell personal information. Inbox message and comment content is not sold or shared with third parties for their independent marketing.

International transfers

We may process data in the United States, Bangladesh, the European Union, and other regions where our infrastructure providers operate. We use appropriate safeguards such as Standard Contractual Clauses where required.

Retention

We retain account and integration data while your subscription is active and for a limited period afterward for backups, billing, and legal compliance. Inbox conversation caches follow the same account lifecycle unless you disconnect or request earlier deletion. You may request deletion as described in our Data Deletion Instructions.

Your rights

Depending on your location, you may request access, correction, deletion, portability, or restriction of processing. Contact contact@ecomsolvebd.com. California residents: see our CCPA page. EU/UK residents: see our GDPR page.

Children

Our service is for businesses. We do not knowingly collect data from children under 16.

Changes

We may update this policy. Material changes will be posted on this page with an updated date. Continued use after changes constitutes acceptance where permitted by law.

Contact

Contact: contact@ecomsolvebd.com

Frequently asked questions

Do you sell merchant or customer data?
No. We process data only to provide the service and integrations you enable.
Does Connect Facebook Page give EcomSolveBD access to Messenger and Instagram DMs?
Yes, only when a merchant authorizes Inbox. We use Page and Instagram messaging permissions to sync and display those conversations inside the merchant's EcomSolveBD Inbox so the merchant can reply and run optional automations. Disconnecting the Page stops new access; see Data Deletion for removal requests.
Who is the data controller for store customer data?
You (the merchant) are typically the controller for your customers' data. EcomSolveBD acts as a processor when handling that data on your instructions.

Need to delete your data?

Follow our step-by-step data deletion instructions or email our privacy team.