Privacy Policy
Last updated: 29 August 2026
CommentWatchdog ("we", "us") provides comment moderation for Facebook and Instagram pages at commentwatchdog.com and app.commentwatchdog.com (the "Service"). This policy explains what data we handle, why, and the choices you have.
1. Data we collect
- Account data: your name, email address, password (stored as a salted hash, never in plain text), language and timezone preferences, and workspace details.
- Meta platform data: when you connect your Facebook account, we receive access tokens for the pages you choose, page names and identifiers, and the content the Service exists to manage: comments, commenter names and public profile pictures, direct messages sent to your pages, and related metadata such as timestamps and post identifiers.
- Billing data: payments are processed by Stripe. We store your plan, subscription status and invoice references. We never see or store your full card number.
- Usage and log data: standard technical logs (IP address, browser type, actions taken in the Service) used for security and troubleshooting.
2. How we use it
- To run the Service: fetching, classifying, hiding, deleting and replying to comments and messages on the pages you connected, according to the rules you set.
- To classify comments (for example profanity or negativity), the text of a comment is processed by our AI provider. Comment text sent for classification is not used to train AI models.
- To send you service emails such as team invitations, password resets and the digests you enable.
- To bill you, prevent abuse, and comply with law.
We do not sell your data. We do not use your data for advertising.
3. Meta platform data
Our use of data received from Meta's APIs complies with the Meta Platform Terms and Developer Policies. Page access tokens are used only to operate the features you configure, are never shared with third parties, and are deleted when you disconnect a page or your Facebook account. Disconnecting is available at any time inside the Service under Settings, then Pages.
4. Where data lives and how long
- Data is stored on servers operated by Hetzner Online GmbH in the European Union, with nightly encrypted backups.
- Comment and message history is kept while your account is active so your inbox and insights keep working.
- If your account is deleted, all associated data, including comment history, tokens and backups, is removed within 30 days.
5. Who else touches data (subprocessors)
- Hetzner Online GmbH (Germany): hosting and backups.
- Stripe, Inc.: payment processing.
- Meta Platforms, Inc.: the platform APIs the Service is built on.
- AI processing providers: comment text is sent for classification and, when you use those features, translation and reply drafting.
- Cloudflare, Inc.: bot protection on our sign-in forms.
6. Your rights
You can access, correct, export or delete your data. Team owners control workspace data; commenters whose content appears in a workspace can contact us for requests concerning their data. Where GDPR or similar laws apply, you also have the right to object to processing and to lodge a complaint with a supervisory authority.
7. Data deletion
To delete your data:
- In the app: Settings, then Account, then Delete account. This permanently removes your workspace, connected pages, tokens and all comment and message history.
- To remove a single page: Settings, then Pages, then Remove. To disconnect Facebook entirely: Settings, then Pages, then Disconnect Facebook.
- By email: write to support@commentwatchdog.com from your account email and we will complete deletion within 30 days and confirm.
8. Security
All traffic is encrypted in transit (TLS). Access tokens and credentials are stored on hardened servers with restricted access. Passwords are hashed with bcrypt. Sessions are revoked on password reset.
9. Changes and contact
If this policy changes materially we will notify you by email or in the Service. Questions: support@commentwatchdog.com.