Skip to content
JUSTPLOG-IT Compliance Center

Privacy Policy

Effective Date: September 12, 2026 • Applicable to AD-OS and all software services operated by JUSTPLOG-IT

Summary for Platform Users, Meta, Google & TikTok Reviewers

  • Operating Identity: This advertising operating system is operated by JUSTPLOG-IT (Registration Number: RC - 3186350) under the product name AD-OS.
  • Data Collection Scope: We collect only account credentials, authorized OAuth tokens, advertising campaign metadata, and platform-reported spend metrics necessary to provide multi-platform campaign creation, synchronization, and analytics.
  • No Sale or Brokering of User Data: We NEVER sell, rent, monetize, or trade your personal information, customer data, or advertising tokens to third parties or data brokers.
  • User Data Sovereignty & Deletion: You can disconnect ad accounts or request the immediate, complete deletion of all synced data and credentials at any time via our Data Deletion Portal or directly through your platform app settings.

1. Introduction & Scope

JUSTPLOG-IT (“Company”, “we”, “us”, or “our”) operates the AD-OS multi-platform advertising operating system (accessible at ad-os-patrick295s-projects.vercel.app and associated API endpoints). This Privacy Policy explains how we collect, use, process, protect, store, and delete personal information and platform-provided data when you connect advertising accounts, configure campaigns, monitor ad spend, and utilize our analytics and AI features.

By registering an account with AD-OS or connecting any third-party advertising platform (such as Meta Ads, Google Ads, or TikTok Ads), you acknowledge that you have read and understood this Privacy Policy.

2. Information We Collect

We collect information that is strictly necessary to deliver multi-platform advertising campaign orchestration, spend synchronization, and cross-channel performance analytics:

A. User Account Information
  • • Email address and authentication credentials
  • • Account profile identifier and timestamps
  • • User preferences and currency configurations
B. Advertising Account Credentials
  • • Connected Ad Account IDs & Business Account IDs
  • • OAuth access tokens & refresh tokens (encrypted at rest)
  • • Authorized Page, Ad Set, and Ad Creative identifiers
C. Ad Performance & Spend Metrics
  • • Daily platform ad spend amounts
  • • Impressions, clicks, conversions, CTR, CPC, and CPA
  • • Day-of-week and cross-channel performance aggregates
  • • Spend synchronization timestamps and status records
D. Payment & Ledger Records
  • • Platform usage fee records (10% platform fee)
  • • Paystack transaction reference codes & payment status
  • We never store credit/debit card numbers or security CVVs
🔴3. Google User Data Disclosures (Google Ads API)

When you connect your Google Ads account to AD-OS using Google OAuth (requesting the https://www.googleapis.com/auth/adwords scope), our application accesses, uses, stores, and shares Google user data in strict accordance with the Google API Services User Data Policy, including the Limited Use requirements:

  • Access: AD-OS accesses Google Ads customer client IDs, campaign structures, search keyword themes, and performance insights solely to enable you to manage campaigns and view synchronized spend from the AD-OS interface.
  • Use: Google user data is used exclusively to provide customer-facing advertising features requested by the user. We do not use Google user data to serve untargeted advertisements or build generalized surveillance profiles.
  • Storage: Google OAuth refresh tokens and customer account linkages are stored in encrypted format using AES-256 at rest in our secured database. Access tokens are kept transiently on the server and are never exposed to browser clients.
  • Sharing: We do NOT sell Google user data. We do NOT share Google user data with any third party except as strictly necessary to execute user-commanded advertising operations or comply with applicable legal obligations.
  • AI & Machine Learning: Data obtained via Google Ads OAuth is NOT used to train generalized artificial intelligence models or shared with external AI model trainers.

4. Meta Platform Data Disclosures (Meta Graph API)

When you connect your Meta advertising account (Facebook/Instagram), AD-OS requests authorized access via standard Meta OAuth scopes (ads_management, ads_read, pages_read_engagement). We use this access solely to:

  • Retrieve connected ad account IDs and page posts for creative boosting previews.
  • Create and update campaign allocations, budgets, and targeting configurations as authorized by you.
  • Synchronize daily impressions, clicks, conversions, and ad spend amounts.
  • Execute automated Data Deletion Request Callbacks when you remove the app from Facebook settings.

5. TikTok Advertising Platform Disclosures

Where TikTok advertising integration is configured, AD-OS accesses authorized TikTok for Business ad accounts strictly for campaign setup, video placement budget allocation, and analytics retrieval. All interactions comply with TikTok Developer Policies.

6. AI Processing & Google Gemini Strategic Intelligence

AD-OS uses Google Gemini to analyze public post creative content, infer product categories and commercial intent, and recommend audience targeting tags and budget distributions.

Strict Separation of AI & Financial Calculations: Gemini AI provides advisory recommendations only. The AI model is strictly prohibited from executing financial transactions, modifying billing ledgers, or computing the 10% platform fee. All financial amounts are calculated by deterministic application code with immutable audit logging.

7. Data Security & Encryption Standards

We implement comprehensive technical and organizational safeguards:

  • Encryption at Rest: All OAuth tokens, refresh tokens, and API secrets are encrypted using AES-256 before storage in our PostgreSQL database.
  • Encryption in Transit: All web traffic is strictly encrypted over TLS 1.3 using HTTPS.
  • Database Access Controls: Supabase PostgreSQL Row Level Security (RLS) ensures absolute data isolation between user organizations.
  • Secret Hygiene: API keys, service role credentials, and OAuth secrets are stored exclusively in secure server-side environment variables and are never transmitted to client browsers.

8. Data Retention

AD-OS retains information for as long as necessary to provide the service, comply with legal obligations, resolve disputes, enforce agreements, and maintain legitimate business records, subject to applicable law. When you disconnect an advertising platform account or delete your AD-OS account, all associated platform tokens and transient performance caches are permanently purged.

9. User Data Deletion & Statutory Rights

In accordance with Meta Platform Terms (Section 4.d), Google API User Data Policy, GDPR, and CCPA, you have the absolute right to request the complete deletion of your data and revocation of all stored tokens at any time:

  • Data Deletion Portal: Visit our dedicated Data Deletion Page to submit a request and obtain an immediate confirmation tracking code.
  • Platform Revocation: You can revoke permissions directly in your Facebook Settings (Apps and Websites) or Google Account Security (Third-party apps), which triggers our automated server-side token purging endpoint at /api/auth/meta/data-deletion.
  • Email Requests: Contact our compliance team at plogmadeit@gmail.com with the subject line “Data Deletion Request”.

10. Cookies & Local Storage

We use strictly necessary cookies and local storage tokens for user authentication session management, CSRF prevention during OAuth handshakes, and UI theme preferences. We do not use invasive cross-site tracking cookies.

11. Third-Party Service Providers

AD-OS interfaces with trusted infrastructure providers:

  • Database & Authentication: Supabase (PostgreSQL with RLS).
  • Hosting & Edge Delivery: Vercel.
  • Payment Processing: Paystack and Flutterwave for deterministic fee settlements.
  • Advertising APIs: Meta Graph API, Google Ads API, TikTok Marketing API.
  • AI Intelligence: Google Gemini API for strategic ad recommendations.

12. Children’s Privacy

AD-OS is an enterprise advertising management system intended exclusively for business owners, marketers, and authorized representatives aged 18 and older. We do not knowingly collect personal data from children under 18.

13. Changes to this Privacy Policy

JUSTPLOG-IT reserves the right to update this Privacy Policy to reflect platform policy enhancements, technical additions, or statutory changes. Updated versions will be published on this page with an updated “Effective Date”.

14. Contact Us & Privacy Officer

For questions regarding this Privacy Policy, your connected advertising tokens, or to exercise your statutory privacy rights, please contact our team:

Operating Entity: JUSTPLOG-IT

Registration Number: RC - 3186350

Physical Business Address: 61 Mabota Party Service Street, Life Camp Extension, Abuja, Nigeria

Product: AD-OS (AI Advertising Operating System)

Support & Privacy Email: plogmadeit@gmail.com

Website: ad-os-patrick295s-projects.vercel.app

© 2026 JUSTPLOG-IT. All rights reserved.