PRIVACY & DATA PROTECTION

Privacy Policy

This Privacy Policy explains how COSMOS STATIONARY SHOP handles information in connection with its Messenger chatbot, social media management dashboard and related authorized integrations.

Effective date: 27 August 2026. This policy applies to services operated by COSMOS STATIONARY SHOP.

1. Overview

COSMOS STATIONARY SHOP provides a SaaS platform that helps authorized clients manage social media operations such as Facebook Page content, comments, Messenger conversations and basic performance information from a unified dashboard.

We process information only to provide the requested service, maintain the platform, support security and comply with applicable obligations.

2. Scope of This Policy

This policy applies to information processed through:

  • Our Messenger chatbot.
  • Our social media management dashboard.
  • Authorized Facebook Page and Messenger integrations.
  • Related support, account and technical service functions.

3. Data We Process

Depending on the client's authorization and enabled features, we may process:

  • Page names, Page IDs and basic Page metadata.
  • Published posts and other Page content.
  • Comments and replies connected with authorized Page content.
  • Messenger or private-message content made available through authorized APIs.
  • Basic Page and content performance metrics permitted by the platform.
  • Authorization data, account identifiers and technical integration information.
  • Information submitted directly by the client for service administration or support.
We aim to access and retain only the information reasonably necessary for the functions requested by the client.

4. Sources of Information

Information may come from:

  • The client directly.
  • Connected social media platforms through official APIs after authorization.
  • Technical logs and service events generated while operating the platform.

5. How We Use Data

We use information to:

  • Display authorized Page, post, comment and message data in the client workspace.
  • Allow authorized users to read and reply to messages and comments.
  • Allow content creation and publishing where the relevant permissions are available.
  • Provide basic operational analytics and reporting.
  • Maintain service functionality, security, abuse prevention and troubleshooting.
  • Respond to support requests and comply with applicable legal or platform requirements.

We do not use connected client data for independent advertising, behavioral profiling, data brokerage or unrelated marketing purposes.

6. Facebook and Messenger Data

Access to Facebook Page and Messenger data occurs only after the relevant client completes the official authorization process and grants the permissions required for the selected features.

We use information obtained from Meta platforms only in connection with the functionality for which it was authorized. If authorization is revoked, expires or is removed, further access through the integration will stop, subject to technical and legal requirements.

8. Data Sharing and Service Providers

We do not sell personal data. We do not share client or platform data with third parties for their independent advertising, profiling or unrelated commercial use.

Service providers may process limited information on our behalf when reasonably necessary to provide hosting, infrastructure, security, technical support or similar operational services. Such providers are expected to handle information only for the contracted purpose.

9. Data Retention

We retain information only for as long as reasonably necessary to provide the service, maintain account continuity, support security, satisfy applicable legal requirements, or meet relevant platform obligations.

10. Authorization Revocation and Data Deletion

A client may revoke authorization, disconnect a connected social account or request deletion of relevant stored information. After revocation, we will stop further access to the affected platform data through the revoked integration.

Following a valid deletion request, associated stored data will be deleted as requested and as required by applicable law and platform policies. We may retain limited information where required for legal, security or fraud-prevention reasons.

11. Security

We use reasonable administrative, technical and organizational safeguards intended to protect information against unauthorized access, alteration, loss, disclosure or destruction. No online service or storage system can be guaranteed to be completely secure.

12. Client and User Rights

Subject to applicable law, clients or individuals may have rights to request:

  • Access to certain personal information.
  • Correction of inaccurate information.
  • Deletion of eligible information.
  • Restriction or objection in certain circumstances.
  • Information about how relevant data is processed.

Requests can be submitted using the contact details below.

13. International Processing

Depending on infrastructure and service providers used to operate the platform, information may be processed in jurisdictions different from the client's location. Where required, appropriate safeguards will be applied in accordance with applicable law.

14. Children's Privacy

Our service is intended for business and professional social media management and is not designed to knowingly collect personal information from children in violation of applicable law.

15. Changes to This Policy

We may update this Privacy Policy to reflect changes in our services, legal obligations or platform requirements. The revised version will be posted on this page with an updated effective date.

16. Contact Information

For privacy questions, data-access requests, deletion requests or other privacy-related matters, contact:

Legal Company Name
COSMOS STATIONARY SHOP
Address
3rd Floor, Prince Tailor Building, Tadong, Deorali, Tadong
Gangtok, SIKKIM 737102
India

Data Deletion Requests

To request deletion of data associated with the service, contact the company using the phone number above and provide enough information for us to identify the relevant client account or connected Page.