Privacy Policy
Last updated: August 12, 2026
EcomHub ("we", "us") is an e-commerce operations platform available at getecomhub.com and app.getecomhub.com. This policy explains what data we process, why, and the choices you have. It applies to merchants who use EcomHub and to visitors of this website. For questions or requests, contact privacy@getecomhub.com.
Data we process, and why
Account data. Name, email address, and authentication data for the people on your team. Used to provide login, permissions and audit trails.
Store and operations data. Orders, products, inventory, shipments, invoices, customer contact details and support conversations that you import into EcomHub from your connected sales channels and couriers. We process this data solely to operate the platform for you. For your customers' personal data, you are the data controller and EcomHub acts as a processor on your instructions.
Integration data. When you connect a third-party service, we receive only what that integration needs (see the next section). Access credentials and tokens are stored encrypted (AES-256-GCM) and are never sold, shared or used for advertising.
Usage and diagnostics. Product analytics and error reports (PostHog, Sentry) that help us keep EcomHub fast and reliable.
Connected services
Sales channels (Shopify, WooCommerce, eMAG and similar): we sync orders, products, inventory and fulfillment status in both directions on your behalf.
Meta (Facebook & Instagram). If you connect a Meta account we access, with your explicit authorization: read-only advertising insights (spend, campaign performance) to show profitability reports, and messages sent to your Facebook Page or Instagram professional account so your team can answer them from the EcomHub inbox. We do not post on your behalf, do not manage your ads, and never use this data for our own advertising. Disconnecting Meta in Settings deletes the stored tokens immediately; synced data is deleted on request (see Data Deletion).
Google (Gmail). If you connect a Gmail mailbox, we sync support emails into the shared inbox and send your replies. EcomHub's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Gmail data is used only to provide the inbox feature, is never used for advertising, and is never transferred except as necessary to provide the feature.
Couriers, invoicing and communications providers (e.g. Sameday, DPD, GLS, FAN Courier, Oblio, SmartBill, Twilio, Resend): we exchange the shipment, invoice, call or notification data needed to perform the action you requested.
AI features. Some features (message drafting, call summaries) send the relevant text to Anthropic's Claude API for processing. This data is not used to train models.
Where data lives and how long
EcomHub is hosted in the European Union (Hetzner, Germany). Data is retained while your account is active. When you delete data in the product, disconnect an integration, or close your account, the related data is deleted or irreversibly anonymized within 30 days, except where law requires longer retention (e.g. invoices).
Your rights
Under the GDPR you can request access, correction, export, restriction or deletion of your personal data at any time by writing to privacy@getecomhub.com. If you are a customer of one of our merchants, please contact that merchant first — they control your data and we assist them in fulfilling your request. You may also lodge a complaint with your supervisory authority (in Romania: ANSPDCP).
Cookies
The app uses strictly necessary cookies for authentication and session security. The marketing site uses privacy-friendly analytics. We do not run third-party advertising cookies.
Changes
We will post any changes to this policy on this page and, for material changes, notify you in the product before they take effect.