MarkCompass Privacy Policy
Effective date: June 26, 2026
MarkCompass helps businesses connect their own advertising, analytics, content, CRM, and email accounts in one workspace. This policy explains what we collect, why we collect it, and how to request access or deletion.
Information we collect
- Account information, such as name, email address, organization name, login events, and workspace settings.
- OAuth and API credentials you authorize or provide, including Meta Ads OAuth access token data, Google Analytics refresh tokens, and other platform credentials. These credentials are encrypted in our credential vault.
- Connected-account metadata, such as ad account IDs, display names, connection status, and token expiration metadata.
- Performance and operational data from connected platforms, such as Meta Ads campaign/ad insights, GA4 landing-page metrics, and email/CRM activity.
- Content you upload or enter, including documents, campaign notes, CRM contacts, signup attempts, email drafts, and instructions you give the system.
- Technical data, such as IP address, user agent, timestamps, and app logs used for security, rate limiting, diagnostics, and fraud prevention.
How we use information
- To operate MarkCompass and show your connected marketing, analytics, CRM, and email workflows.
- To read and normalize Meta Ads, Google Analytics, and other platform data that you authorize.
- To prepare recommendations, draft content, and support approval-gated campaign or email workflows.
- To secure the service, prevent abuse, troubleshoot issues, and comply with legal obligations.
- To communicate about product, support, billing, and important account notices.
Meta Ads and OAuth data
When you connect Facebook or Instagram advertising through Meta OAuth, MarkCompass requests permissions such as ads_read and, where enabled by you and approved by Meta, ads_management. We use this access to read ad account, campaign, ad, spend, and performance data for client-owned ad accounts. We do not take ownership of your ad accounts, payment methods, or advertising spend.
Sharing
We do not sell personal information. We share information only with service providers needed to run MarkCompass, with connected platforms you authorize, as required by law, or at your direction. Payment processing, when used, is handled by a payment provider and not by MarkCompass storing card details directly.
Retention and deletion
We keep information while your account is active or as needed to provide the service, meet legal obligations, resolve disputes, and maintain security. You can request deletion of your MarkCompass account data, connected credentials, uploaded content, CRM data, and OAuth data by following our Data Deletion instructions.
Security
Credentials are encrypted at rest and access is scoped by tenant and organization. No internet service can guarantee perfect security, but we use reasonable technical and organizational safeguards to protect your information.
Contact
Questions or privacy requests can be sent to support@markcompass.com.