Privacy Policy
Privacy Policy
AdHorde respects your privacy. This policy explains how we collect, use, and protect your personal information.
Effective Date: June 1, 2026 · Last updated: June 1, 2026
DATA WE COLLECT
Information We Collect
TransparencyWhen you register or use AdHorde to connect your Meta ad account, launch ads, or utilize Smart Rules automation, we may collect the following:
- Personal Information: name, email, billing details, Meta account details
- Transaction Information: ad campaigns, automation rules, services accessed
- Technical Information: IP address, browser type, OS, visit duration, pages viewed
- Account Details: information entered while configuring or managing your Meta ad account
- Analytics data via Google Analytics for service improvement and marketing optimization
THIRD-PARTY SERVICES
Third-Party Services & Tracking
IntegrationsWe use third-party services to operate AdHorde. These services may collect cookies, IP addresses, and usage data:
- Google Analytics — usage patterns and visitor statistics
- Meta Pixel — ad performance measurement and retargeting
- Stripe — secure payment processing
- Supabase (AWS) — secure database and storage
- Vercel — application hosting and CDN
- You may opt out via browser settings, though this may affect Service functionality
PAYMENT SECURITY
Payment Data Protection
Stripe PCI L1All credit/debit card details and personally identifiable payment information will NOT be stored, sold, shared, rented, or lent to any third parties. All payments are processed securely via Stripe (PCI DSS Level 1 certified). We never touch raw card data.
- Card data captured directly by Stripe — never touches our servers
- We store only Stripe customer IDs as payment references
- SSL/TLS encryption for all data transmission
- We do not process payments for OFAC-sanctioned countries
HOW WE USE YOUR DATA
Use of Information
Data UseWe use your information solely to provide and improve AdHorde. Specifically:
- Manage your account and process ad campaigns including subscription payments
- Prevent fraud, theft, or scams and protect your account security
- Connect and manage your Meta Ads accounts via OAuth
- Facilitate bulk ad launches and Smart Rules automation
- Improve our services, tools, dashboards, and user experience
- Send service updates and customer support responses
- Comply with legal investigations or regulatory requirements
DATA SHARING
Data Sharing & Disclosure
We Do Not Sell DataWe do NOT sell, rent, or share your personal information with third parties for their marketing purposes. We only share data when strictly necessary to operate the Service:
- Meta (via OAuth for ad management and campaign processing)
- Stripe (for secure payment processing)
- Google Analytics (for website analytics — you can opt out via browser settings)
- Legal authorities or regulatory bodies if required by applicable law
- We may send you service-related updates and promotional offers (opt-out available)
YOUR RIGHTS
Your Data Rights & Control
You Are In ControlYou have full control over your data. At any time you can:
- Access your personal data and request copies
- Request corrections or updates to inaccurate information
- Request deletion of your data (subject to legal retention requirements)
- Export your data in a portable format
- Opt out of marketing emails by following unsubscribe instructions
- Revoke Meta OAuth access at any time via your account settings or Facebook Settings
META PLATFORM
Meta Platform Integration
Meta Marketing APIWhen you connect your Meta account via OAuth, we request permissions: ads_management, ads_read, business_management, pages_show_list, pages_read_engagement. We collect and store your Meta user ID, ad account IDs, campaign metadata, advertising insights, and a long-lived access token (~60 days, auto-refreshed).
- We do NOT post content to your Facebook or Instagram profiles without your explicit action
- We do NOT access your personal timeline or private messages
- We do NOT sell or share Meta data with third parties
- AdHorde strictly adheres to Meta Platform Terms and Meta Developer Policies
- You can revoke access at any time in Facebook Settings → Business Integrations
- Revocation triggers deletion of your Meta credentials within 30 days
GDPR
GDPR Compliance (EU Customers)
EU CompliantFor customers in the European Union, we comply with the General Data Protection Regulation (GDPR). Our lawful basis for processing includes: contract performance (providing the Service), consent (marketing communications), and legitimate interests (fraud prevention, service improvement).
- Right to access, rectify, erase, or restrict processing of your personal data
- Right to data portability and right to object to processing
- Right to withdraw consent at any time without affecting prior processing
- Right to lodge a complaint with your local supervisory authority
- We do not transfer EU data outside the EEA without appropriate safeguards
- Contact contact@adhorde.com to exercise your GDPR rights
CCPA
CCPA Compliance (California Customers)
California ResidentsFor California residents, we comply with the California Consumer Privacy Act (CCPA). You have the right to know what personal information we collect, request deletion, opt out of the sale of personal information (we do not sell personal data), and non-discrimination for exercising your rights.
- Submit a CCPA request: email contact@adhorde.com with 'CCPA Request' in the subject
- We will verify your identity and respond within 45 days
- California residents may designate an authorized agent to make requests on their behalf
DATA DELETION
Data Deletion Requests
Right to DeleteYou have the right to request deletion of the data we hold about you at any time. You can delete your data in three ways:
- In-app: Account Settings → Privacy → Delete my data
- Email: send a deletion request to contact@adhorde.com from your account email
- Meta-initiated: removing AdSkull from Facebook Settings automatically triggers deletion of all Meta-related data
- We complete deletion within 30 days
- We may retain limited records (billing history, fraud-prevention logs) for legally required periods
- Deletion is irreversible — campaign history and ad-account data cannot be restored
SECURITY MEASURES
Data Retention & Security
AWS + VercelWe retain your data while your account is active and for up to 90 days after account deletion for legal, regulatory, and backup purposes. We employ industry-standard security measures:
- SSL/TLS encryption for all data transmission
- Secure cloud infrastructure (Supabase on AWS) with restricted employee access
- AES-256 encryption at rest on all database volumes
- Regular penetration testing and vulnerability scanning
- Row-level security on all database tables
Privacy Questions?
For data requests, GDPR/CCPA inquiries, or privacy concerns, contact us at:
contact@adhorde.com