Privacy Policy

Last updated: 4 September 2026

1. Who operates Marketing OS

Marketing OS (“the application”) is operated by [COMPANY LEGAL NAME — TO BE COMPLETED], [REGISTERED ADDRESS — TO BE COMPLETED](“we”, “us”), which acts as the controller of the data described below. You can reach us at [privacy@your-domain — TO BE COMPLETED].

2. What Marketing OS is

Marketing OS is a private, internal analytics dashboard used by a single marketing agency to review the performance of its own clients’ marketing channels in one place. It is not a public service, it has no self-registration, and accounts are created only for named members of the agency and its clients.

The application is read-only with respect to every platform it connects to. It never publishes, comments, messages, advertises or changes anything on your behalf.

3. Data we process

We process two distinct kinds of data.

a) Account data of the people who use the application

  • Name and email address, used to identify you when you sign in.
  • A password, stored only as a one-way hash — we cannot read it.
  • Your role and which client workspaces you may access.
  • An audit record of security-relevant actions you take in the application, such as connecting or disconnecting an integration.

b) Marketing performance data from connected platforms

When a workspace connects a platform (for example Meta, WooCommerce, MailerLite, EasyTools, BaseLinker or WebinarJam), we retrieve aggregate performance figures for that account and store them so the reports can be displayed. These are counts and totals — impressions, reach, clicks, spend, orders, revenue and similar — not information about individual members of your audience.

4. Data obtained from Meta (Facebook and Instagram)

When you connect a Meta account, you grant the application read-only access. We then retrieve and store:

  • The identifier and name of the Facebook Page you select, and of the Instagram Business account linked to it, so we know which account to report on.
  • Daily aggregate Page and Instagram statistics: reach, impressions, engagement, profile views and follower count.
  • For your own posts and Reels published in the reporting period: the media identifier, media type, publication date, permalink, thumbnail URL, caption, and the aggregate performance of that post — reach, impressions, plays, likes, comments, saves, shares and total interactions.
  • Advertising performance for the ad accounts you select: campaign, ad set and ad names and identifiers, spend, impressions, clicks, and conversion results.

We do not retrieve or store your followers’ identities, demographics, private messages, or the content of comments. We do not request or hold any permission that would allow the application to write to your Meta account.

Your Meta access token is stored encrypted at rest and is used solely to make the read requests described above.

5. Why we process this data

The sole purpose is to display marketing analytics inside the application to the agency and to the client the data belongs to. We process this data to perform the analytics service the agency has agreed to provide to its client.

6. What we never do

  • We never sell, rent or trade your data.
  • We never use your data for advertising, profiling or automated decision-making.
  • We never share your data with another client of the agency — each client workspace is isolated at the database level.
  • We never publish, post, comment, react or send messages through any connected platform.
  • We never transfer your data to third parties, other than the infrastructure providers named below acting on our instructions.

7. Where the data is held

The application runs on Vercel and stores its data in a managed PostgreSQL database hosted in the European Union. Both act as processors on our behalf and have no independent right to use the data. Access within our organisation is limited to the people who operate the application.

8. How long we keep it

Analytics data is retained for as long as the corresponding client workspace exists in the application, because year-on-year comparison is a core function of the product. When a workspace or client is deleted, all of its stored analytics — including everything retrieved from Meta — is deleted with it.

Access tokens are removed immediately when an integration is disconnected. Account data is retained for as long as the account exists.

You can request deletion at any time, regardless of the above — see Data Deletion Instructions.

9. Your rights

You may ask us to give you a copy of the data we hold about you, to correct it, to delete it, or to restrict or object to our processing of it. Write to [privacy@your-domain — TO BE COMPLETED] and we will respond within 30 days. If you believe we have handled your data improperly, you may also complain to your local data protection authority.

10. Changes to this policy

If we change how we process data, we will update this page and the “Last updated” date above.

11. Contact

[COMPANY LEGAL NAME — TO BE COMPLETED], [REGISTERED ADDRESS — TO BE COMPLETED] [privacy@your-domain — TO BE COMPLETED]