Back to Home
Privacy & Security

Privacy & Data Policy

Last Updated: February 2026

This Privacy Policy governs the collection, encryption, and transmission of data when you connect your advertising accounts (Google Ads, Meta Ads, TikTok Ads, Shopify, and Google Analytics 4) to our Model Context Protocol (MCP) server.

1. OAuth 2.0 Token Encryption & Storage

When you link ad channels to our MCP server, API access tokens are encrypted using AES-256 at rest and transmitted exclusively via TLS 1.3 encrypted Server-Sent Events (SSE). We do not store ad creative assets or customer credit card information on our servers.

2. Zero Model Training Policy

Your private campaign performance metrics, conversion funnels, keyword bids, and ROAS data are used exclusively to fulfill live MCP tool requests within your authenticated AI session. We never sell your data or use your campaign data to train public foundational AI models.

3. Human-in-the-Loop Safeguards

To protect your ad budget, all MCP tools categorized as “Write” operations (including campaign budget updates, ad set activations, and bid changes) enforce explicit human confirmation before dispatching API mutations to ad networks.

4. Ad Network Policy Compliance

Our MCP server strictly adheres to the developer policies of Google Ads API, Meta Marketing API, and TikTok for Business API. You may revoke API access tokens instantly from your dashboard at any time.