Privacy Policy for Shop Marketing Management System (SMMS)
Last Updated: June 23, 2026
Welcome to the Shop Marketing Management System ("SMMS", "we", "our", or "us"). We are committed to protecting your privacy and ensuring that your personal and business data is handled securely and responsibly. This Privacy Policy outlines how we collect, use, and protect your data when you use the SMMS desktop application and its associated services.
1. Information We Collect
a. User Authentication Data
When you create an account to use SMMS, we use Firebase Authentication. We collect basic profile information such as your email address and name to manage your account access securely.
b. Third-Party Integration Data (Meta/Facebook)
SMMS integrates deeply with Meta's platforms (Facebook, Instagram, and WhatsApp) using standard OAuth flows. When you connect your social media accounts, we collect and store:
- Access Tokens: Encrypted tokens to securely publish posts and retrieve analytics on your behalf.
- Account Identifiers: Facebook Page IDs, WhatsApp Business Account (WABA) IDs, and Instagram Business Account IDs.
- Business Data: Required data to manage campaigns, such as WhatsApp contacts and templates, page insights, and media you wish to broadcast.
Note: SMMS operates a local callback server (http://localhost:8080) during the authentication process strictly to receive authorization codes directly on your local machine securely.
c. Content and Media
- Media Files: Images, videos, and documents you upload for campaigns are securely stored using Cloudflare R2 and Firebase.
- Contact & Product Lists: Contacts and Product details imported via Excel (
.xlsx) or manually entered are stored in your private Firebase database to facilitate marketing campaigns.
2. How We Use Your Information
The information we collect is strictly used to provide the SMMS service functionalities, specifically to:
- Broadcast and schedule campaigns across your connected Facebook, Instagram, and WhatsApp accounts.
- Display analytics, engagement metrics, and inbox messages related to your social pages.
- Facilitate the upload, storage, and management of your digital assets (products and media).
- Authenticate your user session securely.
We do not sell, rent, or lease your personal or business data to third parties.
3. Data Storage and Security
- Backend Architecture: Your data is securely stored using Google's Firebase and Cloudflare R2 infrastructures, which adhere to high industry standards for security and encryption.
- Local Desktop: Certain cached data, access tokens, and temporary files may be stored locally on your desktop environment. We recommend keeping your machine secure to protect your active sessions.
4. Meta (Facebook) Data Handling & Deletion
As part of our integration with the Meta Graph API, you have complete control over the data we access:
- You can revoke SMMS's access to your pages and WhatsApp numbers at any time from your Meta Business Settings or directly within the "Social Integrations" tab in the SMMS app.
- Upon clicking "Disconnect" inside the SMMS app, your access tokens are immediately purged from our database and your local machine.
- To request the complete deletion of your account and all associated data, please contact our support email.
5. Third-Party Services
SMMS relies on the following third-party services, each governed by their respective Privacy Policies:
6. Changes to this Privacy Policy
We may update our Privacy Policy from time to time to reflect changes in our practices or technologies. We will notify you of any changes by updating the "Last Updated" date at the top of this document.
7. Contact Us
If you have any questions or concerns about this Privacy Policy or how your data is handled, please contact us at samrudhakshirsagar@gmail.com.