Privacy Policy

Cyber Solutions BD Support Portal — last updated 2026-05-11

1. What we receive

When a customer sends a message to our Facebook Page, or sends a WhatsApp message to our linked WhatsApp Business number, Meta forwards that message to our portal via Meta’s Webhooks. We receive:

  • The customer’s Facebook Page-Scoped ID (PSID) or WhatsApp phone number
  • The text content (and any attached images) of the message
  • The customer’s display name and public profile picture
  • The timestamp of the message

2. How we use it

Inbound messages are stored in our internal support database so that on-duty support representatives can read and respond to customer inquiries. When the customer’s phone number matches an existing subscriber record in our billing system, we attach the subscriber’s username to the conversation so the rep sees relevant account context (current package, online status, last-seen time).

3. Who can see it

Only authenticated employees of Cyber Solutions BD with the role admin or support can access the inbox. Access is gated by per-user authentication and audited.

4. Retention

Messages are retained for 12 months from the date of receipt and then deleted. Customers may request earlier deletion of their conversation history by contacting support@cybersolutions.bd.

5. Sharing

We do not share messages or any data derived from them with any third party other than Meta itself (which is the source of the data). We do not use the data for advertising, analytics, or any non-support purpose.

6. Security

Credentials used to call Meta’s APIs (App Secret, Page Access Token, Verify Token) are encrypted at rest using AES-256-GCM with a key derived from a server-only secret. Webhook payloads from Meta are validated using HMAC-SHA256 against the App Secret before any persistence step.

7. Contact

Questions about this policy or requests for data deletion: support@cybersolutions.bd.