Privacy Policy

Last Updated: February 2, 2026

1. Introduction

This Privacy Policy describes how we collect, use, store, and protect your information when you use our application (the "Service"). We are committed to protecting your privacy and handling your data in an open and transparent manner.

By using our Service, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Information You Provide

When you create an account or use our Service, we collect:

  • Email address
  • Name
  • Profile picture (if provided)

2.2 Information from Meta (Facebook)

When you connect your Meta account through our secure OAuth 2.0 integration, we collect and store:

  • Meta User ID
  • Name associated with your Meta account
  • Email address associated with your Meta account
  • Profile picture from your Meta account
  • Access tokens for Meta API (encrypted and stored securely)
  • List of Meta Ad Accounts you explicitly authorize
  • List of Meta Pages you manage
  • List of Meta Businesses you have access to
  • Information about your ad campaigns, ad sets, and ad creatives (only for authorized accounts)

2.3 Automatically Collected Information

  • Usage data and analytics
  • Log data (IP address, browser type, pages visited)
  • Session information

3. How We Use Your Information

We use the collected information for the following purposes:

  • To provide and maintain our Service
  • To manage your Meta ad campaigns, ad sets, and ad creatives on your behalf
  • To authenticate you and provide secure access to your account
  • To communicate with you about your account or our Service
  • To analyze usage and improve our Service
  • To comply with legal obligations
  • To detect, prevent, and address technical issues or fraud

4. Data Storage and Security

4.1 Security Measures

We implement industry-standard security measures to protect your data:

  • Encryption: All Meta access tokens are encrypted using AES-256-GCM encryption before storage
  • Secure Storage: Data is stored in secure, encrypted databases
  • Server-Side Token Management: Access tokens are never exposed to client-side code
  • HTTPS: All data transmission uses encrypted HTTPS connections
  • OAuth 2.0: We use Meta's secure OAuth 2.0 protocol for authentication

4.2 Data Retention

We retain your information only as long as necessary to provide our Service and for legitimate business purposes. When you delete your account or disconnect your Meta account, we delete or anonymize your data within 30 days.

5. Data Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:

  • With Meta: We communicate with Meta's API to manage your ad accounts as authorized by you
  • Service Providers: With trusted service providers who assist in operating our Service (e.g., hosting, analytics)
  • Legal Requirements: When required by law, court order, or governmental authority
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • With Your Consent: When you explicitly authorize us to share your information

6. Your Rights and Choices

You have the following rights regarding your personal information:

  • Access: You can access your personal information through your account settings
  • Correction: You can update or correct your information at any time
  • Deletion: You can request deletion of your account and all associated data
  • Disconnect Meta Account: You can disconnect your Meta account at any time from Settings
  • Manage Ad Account Access: You can add or remove authorized Meta ad accounts at any time
  • Data Portability: You can request a copy of your data in a portable format
  • Opt-Out: You can opt out of non-essential communications

7. Meta Platform Policies

Our use of information received from Meta APIs is subject to Meta's Platform Terms and Policies, including:

  • We comply with all Meta Platform Terms and Policies
  • We only access Meta data you have explicitly authorized
  • We do not use Meta data for purposes other than providing our Service to you
  • You can revoke our access to your Meta data at any time through Meta's settings or our application
  • We follow Meta's Data Deletion Request guidelines

For more information about how Meta handles your data, please review Meta's Privacy Policy.

8. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to track activity on our Service and hold certain information:

  • Session cookies to maintain your logged-in state
  • Authentication cookies for security purposes
  • Preference cookies to remember your settings

You can configure your browser to refuse cookies, but some features of our Service may not function properly.

9. Children's Privacy

Our Service is not intended for users under the age of 18. We do not knowingly collect personal information from children under 18. If you are a parent or guardian and believe your child has provided us with personal information, please contact us, and we will delete such information.

10. International Data Transfers

Your information may be transferred to and maintained on servers located outside of your state, province, country, or other governmental jurisdiction where data protection laws may differ. We take appropriate safeguards to ensure your data is treated securely and in accordance with this Privacy Policy.

11. Changes to This Privacy Policy

We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. You are advised to review this Privacy Policy periodically for any changes. Changes are effective when posted on this page.

12. Data Deletion Requests

Users can request deletion of their data at any time. When you delete your account or disconnect your Meta account:

  • We delete all personal information associated with your account within 30 days
  • Meta access tokens are immediately invalidated and deleted
  • All campaign data associated with your account is deleted or anonymized
  • We may retain certain data for legal compliance or legitimate business purposes (e.g., audit logs)

To submit a data deletion request, please contact us using the information below or use the account deletion feature in Settings.

13. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us:

For Meta-specific data deletion requests, you can also use Meta's Data Deletion Request Form.