Privacy

Privacy Policy

This page is maintained by the app owner and describes the app's current behavior. It is not legal advice.

What we collect

  • Your Meta user id, ad account ids, and campaign metadata returned by the Meta Graph API.
  • A short-lived session identifier stored in a Secure HttpOnly cookie.
  • Operational logs (timestamps, tool names, HTTP status codes) needed to run the service.

What we do not collect

  • Your Meta password.
  • Content from your Facebook profile beyond what Meta returns for the granted scopes.
  • Any tokens or secrets in the browser — Meta access tokens are held server-side, encrypted at rest.

How we use it

We use the information above solely to render the app, execute the eight deployed MCP tools you invoke, and enforce the confirmation flow. We do not sell your data.

Retention

Sessions expire when the underlying Meta authorization expires. You can disconnect at any time from Facebook's Business Settings; the backend receives the deauthorization webhook and revokes your session. See Data deletion for removal.

Contact

Questions about this policy should be directed to the app owner listed on the Security page.