Privacy Policy

Effective date: July 23, 2026

Marketing OS (“the Service”) is operated by KeyesCode LLC (“we”, “us”). This policy describes what information we collect when you use the Service, how we use it, and the choices you have — including how to have it deleted.

Information we collect

Account information. When you register we collect your name, email address, and a password (stored only as a cryptographic hash). You may also provide business details such as your business name, website, industry, and economics like average deal value — used to tailor recommendations to your business.

Meta advertising data. If you connect a Meta (Facebook) ad account, we access — through Meta’s official Marketing API and with your explicit authorization via Facebook Login — the ad account you select, including its campaigns, ad sets, ads, budgets, statuses, and performance metrics (spend, impressions, clicks, and conversions). We store a copy of this data to power reporting and recommendations. The OAuth access token Meta issues is stored encrypted (AES-256) at rest.

Usage records. We keep records of actions taken in the Service — for example which recommendations you approved or rejected — so the Service can function and improve its suggestions for you.

How we use information

We use the information above solely to provide the Service to you:

  • Displaying your advertising performance in dashboards and reports.
  • Generating optimization recommendations and campaign plans. To do this, relevant advertising performance data is processed by our AI provider (Anthropic) as a service provider on our behalf.
  • Applying changes you explicitly approve to your ad account via the Meta Marketing API.
  • Operating, securing, and supporting the Service.

We do not sell your data, use it for advertising of our own, use one customer’s data to serve another customer, or share Meta platform data with third parties except the service providers listed below.

Service providers

We use a small number of infrastructure providers to run the Service: cloud hosting and managed databases (Railway), and AI processing (Anthropic). Each processes data only as needed to provide their service to us and is bound by their own contractual and security obligations. We comply with Meta’s Platform Terms and Developer Policies in our handling of all data obtained from Meta.

Data retention and deletion

We retain your data while your account is active. You can delete your data at any time:

  • Disconnect Meta: disconnecting your ad account in Settings revokes our access going forward.
  • Remove the app on Facebook: removing Marketing OS from your Facebook account’s Apps and Websites settings automatically revokes our access.
  • Request deletion: initiating a data deletion request through Facebook triggers automatic deletion of the advertising data we obtained through your authorization — the stored connection, the synced ad account and its campaigns, ad sets, ads, metrics, and derived recommendations — and returns a confirmation code and status page. You can also email us at tanner@keyescode.com to request deletion of your entire account.

Security

All traffic to the Service is encrypted in transit (HTTPS). Meta access tokens are encrypted at rest with AES-256; passwords are stored as salted hashes and are never retrievable. Access to production systems is restricted to KeyesCode LLC.

Cookies

The Service uses only the cookies required to keep you signed in (authentication session cookies). We do not use advertising or cross-site tracking cookies.

Your rights

Depending on where you live, you may have rights to access, correct, export, or delete your personal information. Contact us at tanner@keyescode.com and we will honor applicable requests. The Service is intended for business use and is not directed at children under 16.

Changes to this policy

If we make material changes we will update the effective date above and, where appropriate, notify you in the Service or by email.

Contact

KeyesCode LLC · tanner@keyescode.com