Privacy Policy
Last updated: July 9, 2026
What we collect
When you create an account, we collect the signup and account details needed to set up your workspace, including name, work email, phone, business name, business type, website or Facebook Page URL, location, role, expected monthly eligible sends, channel interest, and consent records.
When you or your customers interact with a connected Facebook Page, we may collect Facebook Page-Scoped User IDs (PSIDs), message content, delivery events, and engagement data needed to operate Messenger messaging through the platform.
How we use it
Your information is used to create and manage your account, provide onboarding and support, operate billing and usage controls, send and receive messages through connected channels, maintain safety controls, and comply with platform or legal obligations. We do not sell your personal data.
Data retention
Message logs are retained for 30 days for operational purposes and then automatically purged where supported by the Service. Account, billing, signup intake, consent, and audit records are retained while your account is active and as needed for legal, security, billing, and operational recordkeeping. Contact information associated with your connected Pages is retained only while your account is active or as otherwise required to provide the Service.
Data security
Your data is stored in a secured PostgreSQL database hosted in the United States. All data is transmitted over HTTPS. We implement access controls to limit who can access stored data.
Your rights & data deletion
You have the right to request access to, correction of, or deletion of your personal data at any time. To request deletion of your data:
- Email privacy@threadlabs.tech with the subject line “Data Deletion Request”
- Include the Facebook Page name or other account details needed to locate your data
- We will acknowledge the request and explain any records that must be retained for security, billing, audit, or legal reasons
See our Data Deletion Instructions for the supported request and Meta callback paths. We do not claim deletion is complete until the applicable review and processing are finished.
Contact
ThreadPilot is operated by Thread Labs LLC, a South Carolina limited liability company. For any privacy-related questions, contact privacy@threadlabs.tech.