Privacy Policy

PPCAdvisor · Last updated July 11, 2026

PPCAdvisor ("we", "us") is an advertising-creative management service operated by RVK Holdings LLC. This policy explains what we collect, why, and the choices you have. It applies to the PPCAdvisor web application and its connected-assistant (MCP) endpoint.

Information we collect

How we use Google user data

PPCAdvisor's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We access your Google Ads data only to provide the features you see in the product — importing, analyzing, and (at your explicit request) editing your own ads. We do not sell Google user data, do not use it for advertising of our own, and do not allow humans to read it except with your consent, for security, or to comply with law. These commitments apply equally to raw Google user data and to any aggregated or anonymized data derived from it: neither is ever used for any purpose other than providing or improving the user-facing features described here, and neither is ever transferred or sold to data brokers, advertisers, or any other third party.

AI features and connected assistants

How we share information

We do not sell your data, raw or aggregated. We share it only with the service providers required to run PPCAdvisor: hosting infrastructure, Anthropic (AI features), and Resend (email, if enabled) — each bound to process it only for us and only to provide the features you use. We may disclose information if required by law.

Security

OAuth refresh tokens are encrypted at rest; session and API tokens are stored only as cryptographic hashes; all traffic is TLS; access is isolated per workspace. Our full security overview is available on request at the address below.

Data retention & deletion

Retention. Your change history, decisions, plans and measured outcomes are kept for the life of your workspace (they are your record). Operational logs — assistant call logs, AI usage detail, audit events, email recipients — are kept for 90 days, then deleted or rolled up into totals. Invoices and payment records are kept for 7 years as required by tax law.

Export. Admin → Your data → Request export gives you everything in your workspace as a machine-readable bundle (JSON, Parquet and CSV, plus your original creatives) with a published schema, within minutes; the download link lasts 7 days.

Disconnecting Google revokes Kleos's grant at Google immediately and deletes the stored tokens. You can also revoke access at myaccount.google.com/permissions.

Deleting your workspace (Admin → Your data) freezes it immediately — API keys, assistant grants and Google access are revoked and billing is cancelled — then erases every row and file after a 30-day grace period during which you can cancel. Our processors are instructed to delete too (Stripe customer deleted; invoices retained by law). You receive a deletion certificate listing what was erased and what was retained and why. Deleted data may persist in encrypted backups for up to 30 days and is never restored to production. Individual users can delete just themselves; their name on the workspace's shared history is replaced with a pseudonym. Requests made by email to the address below are honoured within 30 days.

Contact

Questions or deletion requests: privacy@rvkholdings.com.

Search Console and Google Analytics data (added 2026-08-26)

If you connect Google Search Console (webmasters.readonly) or Google Analytics (analytics.readonly), Kleos reads your own site's search performance (queries, pages, clicks, impressions, positions) and analytics (sessions, conversions, revenue by channel, landing page and product) and stores them in your workspace's private archive so you keep history beyond Google's retention. This data is used only to provide the features you see in the app, the REST API keys you create, and the AI-assistant connectors you authorize. We never use it to train AI models, never share it across workspaces, and never sell it. When you connect an AI assistant (Claude, ChatGPT) or use in-app AI features, the data you request is sent to that provider (Anthropic, OpenAI) as a processor acting on your instruction, under no-training API terms. Revoke access any time from Admin → Connections.