Legal
How adsboys handles the data it receives from Meta, from the businesses that use it, and from visitors to this site.
Last updated 14 August 2026
adsboys is operated by StackBinary, located in India. You can reach us at contact@stackbinary.io.
We act in two different roles, and it matters which one applies to you.
Access is granted asset by asset by the business, from their own Meta Business Manager. We only receive data for the ad accounts and Pages they explicitly assign.
| Category | What it includes |
|---|---|
| Advertising data | Ad accounts, campaigns, ad sets, ads, creatives, images, videos, saved audiences and conversion events, together with their performance metrics. This is business data and does not identify individual people. |
| Public comments | The text of a comment on a connected Page or Instagram account, the commenter's Meta-scoped user id, their username, and the id of the post or ad it was left on. |
| Private messages | The text of messages exchanged with a connected Page or Instagram account, and the sender's Meta-scoped user id. |
| Details you tell the business | If you mention a name, company, requirement, budget, timeline, email address or phone number while talking to an automated assistant, that detail is saved against your conversation so the business does not ask you for it twice. |
| Access tokens | The Meta access token the business granted, encrypted at rest. |
The Meta-scoped user id is not your real identity. Meta issues a different id for every business you interact with, so it cannot be used to recognise you anywhere else.
We do not buy data, we do not scrape profiles, and we do not build a record of anyone who has not actually contacted a connected business.
This section applies to visitors to adsboys.com. It is separate from the above because that information reaches us through a business connecting its Meta assets, whereas this does not.
| Category | What it includes |
|---|---|
| Enquiry details | The name, work email, company, budget range and message submitted through the demo request form. Name and email are required; the remaining fields are optional. |
| Referral data | The page from which an enquiry was submitted, any campaign parameters present in the link followed, and the referring website. |
| Usage analytics | Google Analytics 4 and Microsoft Clarity collect usage and interaction data on the public website, including page views and session activity. |
These analytics tools operate on the public website only. They are not present in the authenticated application, so no connected account, campaign or conversation data is recorded by them.
Enquiry details are used to respond to you and to correspond about adsboys. They are not sold, and are not disclosed beyond the providers listed below.
We do not use message content for advertising targeting, we do not sell it, and we do not use it to train our own models.
We use a small number of service providers. Each one processes data only to provide its service to us.
| Provider | What it does and what it sees |
|---|---|
| Vercel | Hosts the application. All requests pass through it. Server functions run in Meta's Mumbai region. |
| Supabase | Provides the Postgres database where advertising data, conversations and encrypted tokens are stored. Hosted in Mumbai. |
| OpenAI | Generates suggested replies, ad copy and written analysis, and transcribes the audio of video ads. Comment and message text is sent to OpenAI to produce a reply. Inputs are not used to train OpenAI's models. |
| Resend | Delivers operational email to the business, such as alert digests and weekly performance reports. These contain advertising metrics, not the content of conversations. |
| Provides Google Analytics 4, which measures usage of the public website. It does not operate within the application. | |
| Microsoft | Provides Microsoft Clarity, which measures interaction with the public website. It does not operate within the application. |
These are enforced in code rather than left to configuration, so they hold regardless of how a business sets up its rules.
We hold no security certifications today, and we would rather say so than imply otherwise. The security page describes the architecture in more detail.
Advertising data and conversation history are kept for as long as the business keeps its Meta assets connected, because the platform is a working record of their account rather than a temporary cache. There is no automatic expiry.
When a business disconnects a Meta connection, everything beneath it is deleted: businesses, ad accounts, campaigns, ads, insights, creative analysis, conversations, leads and audit records. That deletion is immediate and cannot be undone.
Enquiries submitted through this website are not held under a Meta connection and are therefore not covered by that deletion. They are retained for the duration of our correspondence and deleted on request.
Individual deletion requests are handled as described on the data deletion page.
Depending on where you live you may also have rights to correct data, object to processing, or complain to a data protection authority. Write to us and we will help.
If we change how data is handled, we update this page and the date at the top. Material changes are communicated to connected businesses directly rather than only being posted here.
Questions about any of this go to contact@stackbinary.io.