Privacy Policy
Last updated: September 7, 2026
1. Who we are
Onedesk Pro — a product of Typetech IT ("Onedesk Pro", "we", "us") operates theOnedesk Pro customer-support workspace at onedeskpro.com and the application at app.onedeskpro.com. We are located in Mirpur DOHS, Dhaka, Bangladesh. For privacy questions, contact joshio@onedeskpro.com.
This policy explains how we handle personal data, including Platform Data received from Meta (Facebook, Instagram, Messenger, and WhatsApp Business).
2. Scope
This policy applies to:
- Visitors to our marketing website
- Workspace admins, agents, and other app users who create a Onedesk Pro account
- People who message, comment on, or otherwise interact with a Facebook Page, Instagram professional account, or WhatsApp Business number connected to Onedesk Pro (end customers)
3. Data we collect
3.1 Account and workspace data
- Name, email address, password or SSO identifiers, and profile photo
- Workspace name, members, roles, and billing details
- Support tickets, notes, and knowledge-base content you upload
3.2 Meta Platform Data (Facebook, Instagram, WhatsApp)
When you connect a Facebook Page, Instagram professional account, or WhatsApp Business account, we receive data needed to run the inbox and social tools, which may include:
- Identifiers: Meta user IDs, Page-scoped IDs (PSID), Instagram-scoped IDs (IGSID), Page IDs, Instagram account IDs, WhatsApp phone numbers
- Profile fields: name, username, and profile picture of people who message or comment on your business assets
- Messages and comments: text, attachments, delivery/read receipts, reactions, and public comments/replies on your posts
- Page and Instagram media: posts, captions, media URLs, timestamps, and engagement needed to display and moderate your content
- Tokens and secrets we store on your behalf: access tokens used to call Meta APIs (encrypted at rest). We also hold our own Meta app credentials.
3.3 Usage and technical data
- Log data, IP address, device/browser type, and approximate location
- In-app actions needed to operate, secure, and improve the service
We do not collect payment card numbers on this marketing site.
4. How we use data
We use personal data and Meta Platform Data only to:
- Provide the unified inbox, tickets, and channel tools (send/receive messages, show contact name and photo, moderate comments, publish or delete your Page/Instagram content when you ask us to)
- Authenticate users, secure the service, and prevent abuse
- Provide customer support to workspace operators
- Improve reliability and product features using aggregated or de-identified metrics
- Comply with law and Meta Platform Terms
We do not sell personal data. We do not use Meta Platform Data to build advertising audiences or to target ads. We do not use customer messages or profile fields for independent marketing.
5. Legal bases
Where GDPR or similar laws apply, we process data on these bases:
- Contract: to provide Onedesk Pro to the workspace that signed up
- Legitimate interests: to secure, operate, and improve the service
- Consent: where you connect Meta channels or we are required to obtain it
- Legal obligation: when we must retain or disclose data under law
The workspace (your organization) is typically the controller of end-customer conversation data. Onedesk Pro processes that data to provide the product.
6. Sharing and processors
We share data only with service providers that process it on our instructions, such as cloud hosting and storage used to run databases, cache, and file storage; workflow automation services (including n8n when enabled for your workspace); and vector search infrastructure used for knowledge-base retrieval. AI draft and auto-reply features run through workflow automation and related subprocessors that process prompts and retrieved knowledge on our instructions. We do not name a specific model vendor on this site at this time. Those providers may process data in countries including Bangladesh, India, and the United States.
We may also disclose data if required by law, or to a successor if the business is sold.
Meta receives data when you use Facebook Login for Business or when we call Meta APIs on your behalf. Meta's use of that data is governed by Meta's Privacy Policy and Platform Terms.
7. Retention
We keep workspace and conversation data for as long as the workspace remains active, or until you delete it. Disconnecting a channel stops new data for that channel and revokes stored tokens; it is not the same as deleting an account or a whole workspace. After an account or channel deletion request, we permanently delete or anonymize associated personal data within 30 days as described on the Data Deletion page (owner vs member outcomes differ), unless a longer period is required by law (for example security logs or legal claims).
8. Security
We use technical and organizational measures including:
- TLS encryption in transit and encryption of sensitive tokens at rest
- Access controls and authentication for workspace users and staff
- Webhook signature verification for Meta events
- Least-privilege access to production systems
9. Your rights
Depending on your location, you may request to:
- Access or receive a copy of your data
- Correct inaccurate data
- Delete your data (see Section 10 and our Data Deletion page)
- Restrict or object to certain processing
- Withdraw consent, including disconnecting Meta channels
Workspace users can update profile and channel settings in the app. To exercise other rights, email joshio@onedeskpro.com. End customers who messaged a business on Facebook, Instagram, or WhatsApp should contact that business first; we can assist if needed.
10. Disconnecting Meta and deleting data
You can disconnect Facebook, Instagram, or WhatsApp in Onedesk Pro channel settings. That revokes stored tokens and stops new webhook delivery. Disconnect does not by itself delete historical conversation data. For account or workspace deletion — including who can request what when you are an owner versus a member — follow Data Deletion or email joshio@onedeskpro.com. We complete eligible deletion within 30 days.
If you remove Onedesk Pro from Facebook Settings → Apps and Websites or Business Integrations, we will also stop using that authorization.
11. Children
Onedesk Pro is for business users aged 18 or older. We do not knowingly collect personal data from children.
12. International transfers
We are based in Bangladesh and use infrastructure that may process data in other countries. Where required, we use appropriate safeguards for those transfers.
13. Changes
We may update this policy. The "Last updated" date above will change, and we will notify workspace admins of material changes by email or in-app notice.
14. Contact
- Privacy, support, and sales: joshio@onedeskpro.com
- Address: Mirpur DOHS, Dhaka, Bangladesh
- Related: Terms of Service · Data Deletion
