Privacy Policy

Last updated: July 31, 2026

PaceGuard is a budget-management service that helps agencies and advertisers plan, monitor, and control advertising spend. This policy explains what data we collect when you use PaceGuard, how we use and protect it, and how you can delete it.

Account information

When your organization creates a PaceGuard workspace, we collect the information needed to operate your account: your name, email address, and role within the organization. We use it to authenticate you, to send the alerts and reports you configure, and to administer your workspace. We do not sell this information or use it for advertising.

Advertising account data

With your explicit authorization, PaceGuard connects to advertising platforms — including Google Ads, Meta (Facebook) Ads, and LinkedIn Ads — and reads data from the ad accounts you choose to connect.

What we access

When you connect an advertising account, we access, through the platform's official API and only after you grant permission via OAuth:

  • Account and campaign structure — accounts, campaigns, ad sets / ad groups, and ads, and their status.
  • Budget and spend data — configured budgets, cost, impressions, clicks, conversions, and related delivery metrics.
  • Both the raw figures we retrieve and any aggregated or derived values we compute from them — pacing projections, spend-to-budget ratios, and the totals shown on dashboards and in reports — are covered by every restriction in this section.

For Google Ads we request a single OAuth scope, https://www.googleapis.com/auth/adwords, which is the only scope the Google Ads API accepts.

We read this data for reporting and monitoring. The only change PaceGuard makes to your advertising accounts is to pause a campaign that exceeds a spend cap you have configured, and to re-enable a campaign that PaceGuard itself previously paused — never a campaign paused by you or anyone else. We do not create, edit, or delete campaigns, budgets, ads, or targeting, we do not change bids or bidding strategies, and we do not perform automated campaign optimization.

How we use it

Advertising account data is used solely to provide the budget-management features you request: tracking spend against budgets, showing pacing dashboards, sending over- and under-spend alerts, and enforcing the spend caps you define. We do not use it for advertising, profiling, or any purpose unrelated to providing these features.

How we store and protect it

  • OAuth access and refresh tokens are stored encrypted at rest and are never exposed through our interfaces or logs.
  • We store only the account, campaign, and spend/metric fields needed to provide the feature; we do not collect personal information about the end users of your advertising campaigns.
  • All data is transmitted over encrypted (HTTPS/TLS) connections.

How we share it

We do not sell advertising account data, and we do not share it with third parties except service providers who process it on our behalf to deliver the feature, or where required by law. We do not transfer it for advertising purposes.

How long we keep it

We retain connected-account structure and spend/metric data only while the advertising account remains connected, because the dashboards, alerts, and spend caps are computed from that history.

When you disconnect an advertising account, we immediately revoke our access with the platform and delete the stored OAuth tokens, and the connection disappears from your workspace. The associated account, campaign, and metric records are then permanently purged by a scheduled job after a short grace period — currently 10 days — which exists only so an accidental disconnect can be undone. If you close your PaceGuard workspace, all connected-account data is deleted on the same schedule.

Your control and data deletion

You can disconnect an advertising account at any time from PaceGuard's Integrations page, which revokes our access and deletes the stored tokens. You may also revoke access directly from the platform:

For full instructions on deleting your data, including all stored advertising data, see our Data Deletion page.

Limited Use (Google API Services User Data Policy)

PaceGuard's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Data obtained from Google Ads is used only to provide and improve the budget-management features described above and is not used for any other purpose.

We do not use data obtained from Google Ads, or any values derived from it, to develop, improve, or train machine-learning or AI models, and we do not transfer it to any third-party service that would use it for that purpose. We also do not use it for advertising, profiling, lending, or creditworthiness decisions, and we do not sell it or transfer it to data brokers.

Meta Platform Terms

Data received from Meta's Marketing API is handled in accordance with the Meta Platform Terms and Developer Policies. It is used only to provide the budget-management features described above.

Changes to this policy

We may update this policy as the service evolves. Material changes will be announced in the application, and the “Last updated” date above always reflects the current revision.