Legal

Privacy Policy

Last updated: June 25, 2026

adpulse is a reporting and budget-pacing platform for advertising agencies, operated by Digital Ten X as a joint venture with Agence3A. This policy explains what data we process, why we process it, who we share it with, and the choices and rights available to you. "adpulse", "we", "us", and "our" refer to the service operated under Digital Ten X; "you" refers to the agencies and authorised users who use the service.

1. Data we process

We process two broad categories of data:

  • Agency and account data. The information you provide to set up and run your workspace: names, work email addresses, login credentials, agency and team details, roles and permissions, the client names you choose to add, and branding assets such as logos and colours.
  • Connected ad-platform reporting data. When you authorise a connection, we retrieve performance and account metadata from Meta Ads and Google Ads through their official APIs. From Meta specifically, using the ads_read permission, we read: ad-account and campaign metadata (account ID, name, currency, status; campaign ID, name, objective, status) and performance insights (spend, impressions, clicks, reach, CTR, CPC, CPM, conversions, and conversion value/ROAS). We also store, once, the connecting business's client_business_id to scope the connection. We retrieve reporting data only; we never create, edit, pause, or otherwise manage your campaigns, ad sets, ads, budgets, or audiences.
  • Connection credentials. To run the daily report sync without you signing in each time, we store the access token issued when you connect (for Meta, a non-expiring Business Integration System User token; for Google Ads, an OAuth refresh token). Tokens are held encrypted at rest in Supabase Vault, are never displayed back in the app, and are deleted when you disconnect or delete the workspace.
  • Usage and technical data. The basic logs needed to operate and secure the service, such as sign-in events, actions taken in the app, device and browser information, and IP address.

2. How we use data

We use the data above to provide and improve the service, specifically to:

  • Sync your connected accounts and present dashboards, pacing, and benchmark grading.
  • Generate the client-ready, white-label reports you configure.
  • Authenticate users, enforce roles and permissions, and keep your workspace secure.
  • Provide support, communicate about the service, and diagnose and resolve issues.
  • Maintain, monitor, and improve the reliability and performance of the platform.

We do not sell your data, and we never use your connected ad-platform reporting data to advertise to you or to train unrelated products.

3. Third-party platforms & processors

adpulse relies on a small set of trusted sub-processors to operate. These are: the ad platforms you connect (Meta Platforms and Google); Supabase (database, authentication, and encrypted secret storage); Vercel (application hosting); and Resend (transactional email). We may also use a hosted error- and performance-monitoring service to keep the platform reliable. Each processes data only on our instructions and under contractual confidentiality and security obligations. We do not sell, license, rent, or otherwise share your connected Meta or Google data with any other third party. Your use of connected platforms also remains subject to those platforms' own terms and privacy policies.

4. Security & data isolation

Security is foundational to the service. Each agency's workspace is logically isolated from every other agency's, so your clients, accounts, and reports are yours alone and are never visible across tenants. We protect data in transit and at rest with industry-standard encryption, restrict internal access on a need-to-know basis, and store platform credentials and access tokens in protected, access-controlled storage. No method of transmission or storage is perfectly secure, but we maintain safeguards designed to match the sensitivity of the data we hold.

5. Data retention

We retain agency and reporting data for as long as your workspace is active and as needed to provide the service. When you disconnect a platform, remove a connection, or close an account, we delete the associated stored access token and the reporting data we pulled for that connection within a reasonable period, except where we must retain certain records to meet legal, accounting, or security obligations. Aggregated or anonymised statistics that cannot identify you or your clients may be kept to operate and improve the service.

If you remove adpulse from your Meta account, Meta notifies us and we automatically delete the stored Meta token and the Meta reporting data for that connection. You can also request deletion of your Meta-derived data at any time — see our Data Deletion page for instructions and to check the status of a request.

6. Your rights

Depending on your location, you may have the right to access, correct, export, or delete personal data we hold about you, to object to or restrict certain processing, and to withdraw a connection or consent at any time. Because adpulse acts as a processor for much of the data within a workspace, requests relating to a specific agency's data are typically directed to that agency as the controller. To exercise a right, or to ask us to route a request to the appropriate controller, contact us using the details below.

7. Changes to this policy

We may update this policy as the service evolves or as legal requirements change. When we make material changes, we will update the "Last updated" date and, where appropriate, notify you within the app or by email.

8. Contact

Questions about this policy, or requests relating to your data, can be sent to privacy@adpulse.ca or submitted through our contact page. adpulse is operated by Digital Ten X.

Want to see how adpulse handles your real Meta and Google data before connecting anything? Book a demo and we'll walk you through it.