Skip to content

Privacy Policy

How BrandMilo collects, uses, shares, and retains personal information.

Effective date
July 26, 2026
Last updated
July 26, 2026
Version
1.0
Canonical path
/legal/privacy

Scope

This Privacy Policy explains how Eazivon Technologies (Private) Limited (“Eazivon,” “Company,” “we,” “us,” or “our”) collects, uses, discloses, and retains personal information when you use BrandMilo, visit brandmilo.com, connect third-party accounts, communicate with us, or use related services.

It does not replace the privacy policies of Etsy, Pinterest, Meta, TikTok, OpenAI, payment providers, or other third parties.

Information we collect

Account and profile

  • Email address, password hash, and account status
  • Workspace name, membership role, and timezone

Third-party integrations (when you connect them)

  • Etsy and Pinterest account identifiers, shop or board identifiers, display names
  • Granted scopes, authorization status, encrypted OAuth tokens, and token expiry
  • Connection errors and technical metadata
  • Facebook, Instagram, TikTok, and other planned providers: not processed until that integration is enabled and you connect it

Commerce and product content

  • When Etsy sync runs: listing identifiers, titles, descriptions, URLs, prices, tags, materials, images, and sync metadata
  • BrandMilo does not collect Etsy order, buyer, or transaction information

Pinterest board data

  • When Pinterest is connected: board identifiers, names, and related sync metadata used to choose a destination

AI and publishing

  • Draft titles, descriptions, captions, alt text, keywords, selected destinations, schedules, approvals, publication IDs, and errors
  • Model, prompt version, token usage, and generation status metadata when AI generation is used

Device, usage, and communications

  • IP address and request metadata used for security, rate limiting, and logs
  • Browser or device information present in standard HTTP requests
  • Login events, API request identifiers, and error data
  • Support emails you send us

Analytics, billing, and backups (not yet processed as described elsewhere)

  • Product analytics (PostHog): not loaded and not collected until analytics is enabled and you opt in
  • Billing: not collected until checkout is enabled
  • CookieYes CMP: not used; current consent is first-party localStorage

How we use information

  • Create and secure accounts and workspaces
  • Connect and maintain authorized integrations
  • Synchronize selected product data and generate AI-assisted drafts
  • Schedule and publish approved content
  • Provide support, security, fraud prevention, and service communications
  • Comply with law, contracts, and platform requirements

How we share information

We share information with connected platforms you select, service providers listed on the Subprocessors page (/legal/subprocessors), workspace administrators according to role, and when required for legal or safety reasons. Current infrastructure processors include Amazon Web Services, Inc. (AWS) for the API, database, cache, and object storage, and Vercel Inc. for the public website. OpenAI OpCo, LLC processes listing facts you submit for AI drafts when generation runs. We do not sell personal information for money. If activity is considered “sale” or “sharing” under applicable law, we will provide required notices and opt-outs.

Retention

BrandMilo retains account and workspace data while an account remains active. After a verified deletion request, applicable records are removed from active production systems through an operator-handled process. Operational, security, and audit logs are retained only as long as reasonably necessary for security, troubleshooting, legal and compliance obligations, and service operations. Exact automated retention periods will be published once those jobs are implemented and enforced.

Category-level handling:

  • Account and workspace data: while the account is active; removed from active systems after a verified deletion request
  • OAuth tokens: until disconnect, revocation, or account deletion
  • Imported listings and media: until a deletion request, or account deletion (disconnect alone may leave imported records)
  • AI inputs and outputs: until a deletion request or account deletion
  • Drafts and publication history: while the workspace exists unless deleted by request
  • Background job records and audit logs: retained only as long as reasonably necessary for security, troubleshooting, legal and compliance obligations, and service operations; exact automated periods will be published once implemented
  • Support emails: retained as needed to handle the request
  • Analytics data: not processed until analytics is enabled and consented
  • Billing and tax records: not processed until checkout is enabled; if billing starts, records would be kept as legally required
  • Database backups: backup expiry is not published as a guaranteed automated window yet
  • Deletion request records: kept as needed to show the request was handled

Your choices and rights

Depending on location, you may have rights to access, correct, delete, port, restrict, or object to processing, and to withdraw consent. Submit requests by emailing privacy@brandmilo.com or using the public Data Deletion page (/legal/data-deletion). Settings → Data & privacy currently explains how to disconnect integrations and how to request export or deletion by email; in-app export and self-serve account deletion are not enabled. Address: Bahria Town, Lahore, Punjab, 53720, Pakistan.

Children

The Service is not directed to children under 18, and we do not knowingly collect personal information from children below the applicable age threshold.

Contact

Privacy questions: privacy@brandmilo.com · Bahria Town, Lahore, Punjab, 53720, Pakistan