Legal
Data Deletion Instructions
Last updated: September 2026
Amboras, Inc. operates an eCommerce platform that merchants use to run their online stores. This page explains how to ask us to delete the data we hold about you, and how to disconnect a Meta (Facebook or Instagram) account you previously connected to an Amboras store.
You do not need an Amboras account to submit a request, and we do not charge for it.
If you connected a Meta account to an Amboras store
When a merchant connects their Meta account to Amboras, we store a limited set of records so that we can send advertising and conversion data to Meta on that merchant's behalf:
- An encrypted Meta access token issued to us when you granted access.
- The identifiers of the Meta assets you selected, such as the Meta Pixel ID, ad account ID, Business Portfolio ID and name, and Page ID.
- Optional configuration you entered yourself, such as a Meta test event code.
- A delivery log of conversion events we sent to Meta. This log records the event name, event ID, timestamp, page URL, the outcome returned by Meta, and the names of the customer-matching fields that were present. It does not store the values of those fields or their hashes.
Remove it yourself, immediately
The fastest route is to disconnect the integration from inside Amboras. Open your store dashboard, go to the Meta Ads integration, and choose Disconnect. This deletes our copy of your Meta access token and clears the stored asset identifiers, and we stop sending events to Meta straight away.
You can also revoke our access from Meta's side at any time, independently of Amboras. In Facebook, go to Settings & Privacy → Settings → Apps and Websites, select Amboras, and choose Remove. Meta then notifies us and we delete the associated token and identifiers.
Or ask us to do it
Email privacy@amboras.com with the subject line “Data Deletion Request” and tell us which Meta account or Amboras store the request concerns. See How to submit a request below for what to include.
What we cannot delete for you
Deleting your data from Amboras does not delete data that already reached Meta. Conversion and advertising data that we previously sent to Meta at a merchant's instruction is held by Meta under Meta's own policies. To have that removed, contact Meta directly or use the privacy controls in your Meta account.
Similarly, if you disconnect the integration, we cannot retroactively withdraw events that Meta has already ingested.
If you shopped at a store hosted on Amboras
When you buy from a store built on Amboras, the merchant, not Amboras, is the controller of your personal data. Amboras processes that data on the merchant's behalf. Because of that, deletion requests from shoppers are best sent to the merchant directly, using the contact details in that store's privacy policy. The merchant can delete your customer record and order history from their store dashboard.
If you cannot reach the merchant, or you are not sure which store holds your data, write to us at privacy@amboras.com and we will identify the relevant merchant and pass the request on, or act directly where the law requires us to.
How to submit a request
Email privacy@amboras.com with the subject line “Data Deletion Request” and include:
- The email address associated with your Amboras account, or the email address you used when ordering.
- The store name or web address, if your request concerns a specific storefront.
- Your Meta account name or Business Portfolio ID, if your request concerns a connected Meta account.
- Whether you want deletion of all data we hold, or only the data tied to a specific integration.
- Whether you are submitting the request as someone else's authorized agent. If so, attach written authorization.
What happens next
- We acknowledge every request within 5 business days.
- We verify your identity before acting, so that we do not delete someone else's data on an unverified request. We may ask you to confirm from the email address on the account.
- We complete verified deletion requests within 30 days. Where the law allows a longer period or an extension, we will tell you before the initial 30 days are up.
- We confirm in writing once the deletion is done.
We may retain a limited amount of data after a deletion request where we are legally required to, for example transaction and tax records, or where we need it to resolve disputes, prevent fraud, or enforce our agreements. We will tell you if any such exception applies to your request, and we delete that data once the legal basis for keeping it ends. Backups are purged on our normal rolling schedule.
Related pages
For the full picture of what we collect and why, see our Privacy Policy. For other privacy rights such as access, correction, and portability, see Your Privacy Choices.
Postal mail reaches us at Amboras, Inc., and any request sent to privacy@amboras.com will be handled by the same team.