Meta & Facebook Login Compliance ยท Nepal Privacy Act 2075

User Data Deletion Instructions

Last Updated: September 2026 ยท Effective Date: Immediate

In accordance with Meta Platform Terms and the Individual Privacy Act 2075 of Nepal, users of RUN-Ecommerce (operated by Growth Catalyst Pvt. Ltd.) have the complete right to request the deletion of their personal data, revoke social authorization tokens, or disconnect Facebook Login.

1. Overview & User Rights

When you log into a store on the RUN-Ecommerce platform using Facebook, we only request the minimal public profile information (such as your name, profile picture, and verified email address) necessary to create your customer account and fulfill orders.

You may terminate this association and delete your user data at any time through any of the three methods outlined below.

2. How to Remove the App via Facebook Settings

If you signed in using Facebook and want to remove our application and invoke the automated data deletion callback, follow these steps in your Facebook account:

1

Open Settings

Log in to Facebook, tap your profile icon at the top right, and navigate to Settings & Privacy > Settings.

2

Apps and Websites

In the left sidebar menu, scroll down to the Your activity or Permissions section and click Apps and Websites.

3

Locate RUN-Ecommerce

Look through your active connected applications list and locate RUN-Ecommerce (or the relevant store name).

4

Click Remove

Click the Remove button. Optionally check the box to remove past interactions, then click Remove to confirm.

๐Ÿ’ก Automated Meta Webhook Callback: Once removed, Facebook automatically communicates with our server via an encrypted signed callback. Our server revokes all authentication tokens, unlinks your Facebook identity, and creates a unique deletion confirmation code for your records.

3. In-App Self-Service Deletion via Customer Account

You can also manage or delete your data directly from within your customer storefront dashboard:

  1. Log into your customer account on the store where you transacted (e.g. /account/login).
  2. Navigate to Account Settings > Profile & Security.
  3. Under Linked Social Accounts, find Facebook and click Disconnect to remove social login privileges.
  4. To terminate your entire account, click Delete Account. You will be prompted to confirm your action with your password or one-time email OTP.
Loading interactive tools...

6. What Data Is Purged Upon Deletion

When a data deletion request is fulfilled, the following categories of information are permanently removed from our active databases:

  • Social Login Identifiers: Facebook User ID (Scoped ID), OAuth access tokens, refresh tokens, and linked profile metadata.
  • Customer Profile: Full name, profile avatar URL, and marketing communication preferences.
  • Saved Shopping Data: Wishlists, active shopping carts, and saved shipping addresses.
  • Session Logs: IP address logs and device fingerprint sessions associated with social login.

7. Statutory Legal Retention (Nepal Law)

Please note that under the statutory commercial and revenue regulations of Nepal, certain transactional records cannot be immediately erased:

  • Tax Invoices & Fiscal Records: Under the Value Added Tax Act 2052 and Income Tax Act 2058, sales invoices and purchase bills must be preserved for statutory audit purposes for a minimum of 6 fiscal years.
  • Courier & Delivery Proofs: Consignment notes and proof-of-delivery receipts are retained for 180 days to resolve chargebacks and logistics disputes.

Retained records are strictly isolated, encrypted at rest, and accessible only to authorized accounting personnel for statutory compliance.

8. Contact Our Data Protection Officer

For questions regarding our privacy practices, data deletion requests, or compliance with Meta Developer Policies, reach out to our dedicated privacy desk:

Company: Growth Catalyst Pvt. Ltd. (RUN-Ecommerce)

Address: Sital Height, Mahalaxmi 06, Lalitpur, Bagmati Province, Nepal

Email: [email protected] / [email protected]

Helpline: +977 9851425426

Data deletion requests are acknowledged within 24 business hours and completed within 30 days.