Trust
Security
On this page
The short version
- You sign in on Facebook. We never see or store your Facebook password.
- On the pages you add, the app reads comments and messages and can hide, delete or answer them. It cannot publish posts, touch your ads, or act on a page you did not add.
- Your data is stored in the European Union, backed up daily, and removed when you disconnect a page or delete your account.
- You can remove our access in Facebook at any time. Facebook tells us the moment you do.
Every statement on this page describes the product as it runs today. The privacy policy is the binding text.
How the connection works#
When you press Connect Facebook, Facebook opens its own dialog. You choose the Pages, the businesses and the Instagram accounts, review the list of permissions, and press Save. Meta then gives CommentWatchDog a token for each Page. Your password never passes through us.
Tokens are stored on our servers, used only for the features you set up, never shown in your browser or to anyone else, and deleted when you disconnect a page or your Facebook account.
What the app can and cannot do#
The permissions below are the ones Facebook shows you in the connect dialog, in Facebook's own words. Each one maps to something you can see in the app.
Can
- Show the Pages and Instagram accounts your login managesso you can choose which to add.
Show a list of the Pages you manageAccess profile and posts from the selected Instagram accountManage your business - Read the posts and comments on the pages you addedwhich is what fills the inbox and lets the rules run.
Read content posted on the PageRead user content on your Page - Hide, unhide, delete and answer comments as the pagethe moderation actions under each comment.
Manage comments on your PageManage comments for the selected Instagram account - Read and answer Messenger and Instagram messagesfor the Messages tab and for private replies to comments.
Manage and access Page conversations in MessengerManage and access messages for the Instagram account - Be told the moment a comment or message arrivesinstead of checking. Facebook groups this with account and settings management in one permission; we use it for the event subscription and nothing else.
Manage accounts, settings, and webhooks, and access content enforcement data for a Page
Cannot
- See or store your Facebook password.You sign in on Facebook, and Meta gives the app a token for each page.
- Publish posts, reels or storieson your page or account.
- Create or change ads, or spend from your ad account.The app asks for no ad permission.
- Read or act on a page you did not add,even though your login manages it.
- Read your personal profilebeyond your name and Facebook user ID, which the Pages tab shows as Connected as.
- Keep access after you remove it.Removing the app in Facebook ends every token, and Facebook notifies us the same moment.
What we store#
- Your account: name, email, and a hash of your password. Never the password itself.
- Your workspace: rules, agents, automations, saved replies, roles and page access.
- Your pages' comments and messages: the text, the author's name, the page, the labels and the actions taken, so the inbox, the Bin and Insights work.
- Billing: your plan, its status and invoice references. Card details stay with Stripe; we never see the full number.
Where it lives and how it is protected#
Everything runs on servers operated by Hetzner Online GmbH in Germany, in the European Union. Traffic is encrypted in transit with TLS, and browsers are told to use HTTPS only. Access to production systems is limited to the people who operate the service. Passwords are hashed with bcrypt, and a password reset signs out every other session.
Backups are taken daily, copied to a second server, and roll off after 14 days. When you delete your account, your data is removed immediately and leaves the backup cycle within 14 days.
AI checks and translation#
Four rules read meaning: Profanity, Negativity, Custom topics and Impersonators. For those, the comment text, the author's display name (for Impersonators) and your rule notes are sent to an AI API, OpenAI or a compatible provider. Your account details and your page tokens never go with it. Translation works the same way: the text you ask to translate is sent, nothing else.
When the AI is unavailable, the text rules keep running and the AI checks retry on their own. Nothing is skipped silently.
Payments#
Payments run on Stripe. You enter your card on Stripe's pages and manage it in Stripe's billing portal. We keep the plan, its status and invoice references, and nothing about the card.
Your team#
Four roles: owner, administrator, manager and moderator, plus page access that limits a manager or a moderator to the pages you tick. Removing someone ends their access on every device immediately.
Ending our access#
Three ways, and none of them needs our permission.
- Disconnect Facebook on the Pages tab. Every page stops receiving comments; your settings stay for when you reconnect.
- Remove CommentWatchDog in Facebook under Settings, then Business integrations. If you also choose Delete data there, Facebook sends us a deletion request and we erase everything that came from your connection.
- Delete account under Settings, then Account. Only the owner can do it. It removes the workspace, cancels the subscription, disconnects the pages and confirms by email. It cannot be undone.
Reviewed by Meta#
Meta reviews an app before it may use permissions that read or change Page content. The permissions above went through that review, and the list Facebook shows you in the connect dialog is the reviewed list. Facebook's Business integrations page is the authoritative record of what you granted, and you can check it at any time.
Report a security issue#
If you find something that looks wrong, write to support@commentwatchdog.com with what you saw and where. A person reads every report and answers. Please do not put a token or a password in the email.
