Privacy Policy

Last Updated: June 23, 2026

1. Introduction

At AdsOptimize ("we", "us", "our"), the security and privacy of your personal data is our highest priority. This Privacy Policy explains how we collect, use, share, and protect your data when you use the AdsOptimize platform — including when you connect your Meta (Facebook/Instagram) and TikTok advertising accounts. This policy is compliant with the EU General Data Protection Regulation (GDPR), the Turkish Personal Data Protection Law (KVKK), and the California Consumer Privacy Act (CCPA).

2. Data We Collect

We collect the following types of data to provide our services:

  • Account Information: Name, email address, password (hashed), company name, and billing details.
  • Meta Advertising Data: Once you authorize via Facebook OAuth: your advertiser accounts, campaign / ad set / ad configurations, performance metrics (impressions, clicks, spend, conversions), creative assets, and audience definitions. This data is retrieved through the Meta Marketing API solely within the permissions you grant.
  • TikTok Advertising Data: Once you authorize via TikTok OAuth: your advertiser accounts, campaign / ad group / ad configurations, performance metrics, creatives, and audience information. Retrieved through the TikTok Marketing API and processed in compliance with TikTok Developer Terms of Service.
  • Content & Creative Data: Image, video, and text ad assets you upload, plus website URLs you provide for AI ad analysis.
  • Usage Data: Your in-platform interactions, session information, browser and device data, IP address, and approximate geographic location.
  • Payment Data: Metadata for subscription payments (via PayTR, Iyzico, Cryptomus). Full payment details such as card numbers are NEVER stored by us; they are passed directly to the payment processor.

3. How We Use Your Data

We use the data we collect for the following purposes:

  • To create, update, and report on campaigns in your connected Meta and TikTok advertiser accounts.
  • To run AI-powered content analysis (via Google Gemini) and generate campaign objectives, audiences, ad copy, budget, and creative recommendations.
  • To display performance reports in your dashboard and provide ongoing optimization suggestions.
  • Account management, security (sessions, fraud detection), and customer support.
  • Subscription and payment processing.
  • Anonymized usage analytics to improve the platform.
  • To fulfill legal obligations.

4. Third-Party Service Providers

We work with the following third-party providers to deliver our services. Each is subject to their own privacy policies:

  • Meta Platforms, Inc.: Facebook/Instagram ad management (Marketing API + OAuth).
  • TikTok Pte. Ltd.: TikTok ad management (Marketing API + OAuth).
  • Google LLC (Gemini): AI analysis and content generation. Your website content is sent to Google for analysis.
  • Cloudinary: Storage and delivery of images and videos you upload.
  • MongoDB Atlas: Database hosting (EU and US data centers).
  • Vercel: Website and API hosting (global edge network).
  • PayTR / Iyzico / Cryptomus: Payment processing.

5. Data Sharing

We DO NOT SELL your data to third parties. We share your data only with: (a) the service providers listed above as strictly necessary to deliver our services, (b) with your explicit consent, or (c) when required by a legal obligation (court order, regulatory request).

6. Data Retention

We retain your data as long as your account is active. When you delete your account, your personal data is permanently deleted within 30 days; limited data required by law (e.g., invoicing records) may be archived for up to 10 years. Data within your connected advertising accounts is subject to the respective platform's (Meta, TikTok) own policies.

7. Your Rights (GDPR / KVKK / CCPA)

You have the following rights regarding your personal data:

  • Right to access and request a copy of your personal data.
  • Right to request correction of inaccurate or incomplete data.
  • Right to request deletion of your data ("right to be forgotten").
  • Right to object to or restrict processing.
  • Right to data portability (transfer to another service).
  • Right to withdraw consent at any time (including disconnecting Meta/TikTok).
  • Right to lodge a complaint with a data protection authority (e.g., your local DPA in the EU, KVKK in Turkey, AG in California).

8. International Data Transfers

Some of our service providers (Google, Meta, TikTok, MongoDB Atlas, Vercel, Cloudinary) may process your data on servers outside the EU and Turkey (e.g., the US). These transfers are governed by Standard Contractual Clauses (SCC) under GDPR Article 46 or equivalent safeguards.

9. Data Security

Your data is protected with industry-standard encryption (HTTPS/TLS 1.2+ in transit, AES-256 at rest). Meta and TikTok integrations use OAuth 2.0; we DO NOT have access to your platform passwords and do not store them. Only temporary access tokens are stored, encrypted, in our database.

10. Children's Privacy

AdsOptimize is not intended for users under the age of 18. We do not knowingly collect data from anyone under 18.

11. Cookies

We use cookies to personalize your experience and analyze traffic. See our Cookie Policy for details.

12. Changes to This Policy

This Privacy Policy may be updated from time to time. Material changes will be notified at least 30 days in advance to the email associated with your account. Continued use of the platform after the effective date constitutes acceptance of the updated policy.

13. Contact

For any privacy questions or to exercise your data subject rights, contact us at info@adsoptimize.ai. We will respond within 30 days.