Privacy Policy
How Trestme handles your data
Trestme Corp ("Trestme"), based in Puebla, Mexico, is responsible for the personal data collected on trestme.com, its subdomains and the platforms we operate, including Trestme Pulse. This policy is issued under Mexico's Federal Law on the Protection of Personal Data Held by Private Parties.
1. What we collect and why
Data you give us. Our forms and WhatsApp channel ask for your first name, last name, email, phone number and the address of your store or site. We use them to reply, to prepare the analysis you requested and, with your consent, to send you information about our services.
Browsing data. We use Google Analytics and the Meta Pixel to measure how the site is used: pages viewed, clicks, traffic source, device and approximate location. These tools use their own cookies and identifiers under Google's and Meta's policies. You can limit them in your browser settings.
Data from the platforms our clients connect to Trestme Pulse. Pulse is a reporting platform that reads, with the client's explicit authorization, performance data from their accounts on Meta (Facebook and Instagram), Google (Analytics, Search Console, Merchant Center, Google Ads), LinkedIn (Campaign Manager and company pages), TikTok and their online store (Shopify, Tiendanube, WooCommerce or others). The data read are business metrics: ad spend, impressions, reach, clicks, conversions, sessions, search queries, orders, products and inventory, and post and follower statistics.
2. How Trestme Pulse accesses platforms
- Always with read-only permissions, through each platform's official APIs and under their terms: Meta Platform Terms, LinkedIn API Terms of Use, the Google API Services User Data Policy (including the Limited Use requirements) and each store's policies.
- Access is granted by the client from their own account (partner access, system user or OAuth authorization) and can be revoked at any time from the platform or by asking us. Once revoked, we stop reading data immediately.
- We never ask for or store passwords of our clients or of third parties.
3. Our clients' end customers
When reading a store's orders, Trestme Pulse does not keep any personal data of buyers: no names, emails, phone numbers or addresses. Repeat purchase is measured with an irreversible identifier (hash) from which the original value cannot be recovered. Reports show aggregated figures only.
4. Where and for how long data is stored
Platform data is stored in private code repositories with restricted access (GitHub) and published in reports protected by a private identifier (Vercel). It is kept for the duration of the service relationship and up to 12 months afterwards, unless the client requests deletion earlier, in which case it is deleted within 30 days. Form data is kept while a business relationship exists or until you request its removal.
5. Who we share data with
We do not sell or rent personal data. It is processed only by providers of infrastructure or services under their own confidentiality commitments: GitHub and Vercel (storage and publishing), Google, Meta and LinkedIn (data sources and measurement), Stripe (payments) and Anthropic (AI-assisted writing of analyses from aggregated figures, with no personal data). We may share data when required by a competent authority.
6. Your rights
You can exercise your rights of access, rectification, cancellation and objection, withdraw consent or limit the use of your data by writing to us through the contact form or WhatsApp. We reply within 20 business days. If you are a Trestme Pulse client, revoking access to your platforms takes effect immediately.
7. Changes to this policy
Any change will be published on this page with its update date. Last updated: September 12, 2026.