AskMyAds legal
Data deletion
You can stop future Google or Meta access immediately and ask AskMyAds to export or delete the data associated with your account and workspace.
Effective 29 July 2026
1. Submit a request
- Contact AskMyAds privacy support from the email address associated with your account. Use the subject “AskMyAds data deletion request.”
- State whether you want an export, deletion of Google Ads data, deletion of Meta ads and Instagram data, deletion of legacy first-party marketing-attribution data, deletion of one workspace, or deletion of the entire AskMyAds account. Include the workspace name if you know it.
- Tell us whether we should cancel an active AskMyAds subscription as part of the request. An assisted full account-deletion request includes cancellation and ends access to the service.
Do not send a Google or Facebook password, OAuth token, full card number, or secret key. The support link opens your email client with the request subject filled in; do not put sensitive request details in a URL.
A signed-in user can download the current workspace’s machine-readable JSON from the authenticated export endpoint. The same-origin DELETE /api/privacy/account endpoint accepts JSON containing the signed-in email and workspace ID plus the exact confirmation DELETE MY ASKMYADS ACCOUNT. It permanently deletes the account, every owned workspace, and every active session. It never calls Stripe or cancels a subscription. It refuses deletion while any subscription can renew or a checkout could still complete; cancel future renewal in the billing portal and let any in-progress checkout expire first.
2. Stop future Google access now
You can revoke AskMyAds’ Google authorization immediately from your Google Account connections. Select AskMyAds and remove its access. Because Google grants are associated with the project, this can remove the existing Google sign-in grant and Google Ads authorization. The next Google sign-in may ask you to authorize basic profile access again. You may also use the disconnect control inside your AskMyAds workspace to stop the Ads connection.
Revocation prevents future Google API access. It does not delete Google Ads data AskMyAds already received, so submit a deletion request as well if you want that stored data removed. Revoking AskMyAds does not delete, pause, or cancel campaigns in Google Ads.
Google identity sign-in does not persist an access token, ID token, refresh token, or granted identity scopes. The linked Google account identifier and profile data remain part of the AskMyAds account until that account is deleted. Separately, the only stored Google Ads OAuth credential is an encrypted refresh token. The workspace disconnect control deletes that token from active storage and clears the selected advertiser. It does not delete your AskMyAds account. If Google does not confirm remote revocation, AskMyAds keeps the Ads connection blocked and asks you to remove it manually from Google Account connections; it does not retry in the background. When AskMyAds detects that an Ads grant is expired, revoked, or otherwise unusable, it also stops access and removes the stored refresh token.
3. Stop future Meta access now
This page is also AskMyAds' data deletion instructions URL for Meta. If you connected Meta (pending Meta approval, not yet generally available), you can revoke AskMyAds' authorization immediately from your Facebook account's Business Integrations settings. Select AskMyAds and remove it, or use the disconnect control inside your AskMyAds workspace. The only stored Meta credential is one long-lived access token, encrypted at rest; disconnecting deletes it from active storage.
Revocation prevents future Meta API access. It does not delete Meta data AskMyAds already received - discovered ad accounts, Pages and Instagram account references, Meta scan findings, and boost decision records - so submit a deletion request as described above if you want that stored data removed. Deleting your AskMyAds account removes all of it. Revoking AskMyAds does not delete, pause, or cancel campaigns or boosts in Meta Ads Manager.
4. How we verify the request
We verify that the requester controls the relevant AskMyAds account or is authorized by the workspace owner. Verification normally uses the signed-in session or a response from the account email. For a high-risk or ambiguous request, we may ask for limited information already associated with the account.
We will never ask for your Google password, OAuth token, or complete payment-card details. If we cannot verify authority, we will explain what is missing instead of disclosing or deleting another person’s data.
5. What deletion covers
A verified deletion request can cover:
- AskMyAds account data, any linked Google provider identifier and profile data, authentication records no longer needed for security, workspace membership, and workspace settings.
- Google Ads connection records, any encrypted Ads OAuth refresh token still present, granted-scope metadata, and connection status. AskMyAds does not persist Google identity tokens or Google Ads access tokens.
- Raw Google Ads snapshots, connected account metadata, search terms, campaign metrics, and other Google API data held for the workspace.
- Meta connection records, the encrypted long-lived Meta access token, discovered Meta ad accounts with their Page and Instagram references, Meta scan findings, and boost policy and decision records.
- Derived findings, reports, recommendations, conversations, approvals, savings calculations, and audit records, to the extent they are not subject to a retention exception.
- Support messages and public report or share links associated with the deleted workspace, where held.
- Legacy first-party marketing-attribution touches, Google advertising click identifiers, allowlisted call-to-action events, and consent-linked service-lifecycle events created before optional measurement was disabled. This also covers the related legacy browser-consent record where we can associate it with the verified request.
An assisted full account deletion also cancels future AskMyAds renewal. Self-service deletion requires you to cancel future renewal first. Neither process cancels Google Ads or Meta ads billing or removes data held independently by Google, Meta, Stripe, your bank, or another independent controller. You must manage those services under their deletion processes. AI narrative requests are sent through Vercel AI Gateway only to an inference provider covered for zero data retention and no prompt training. Any permitted service, security, billing, abuse-prevention, or legal-compliance processing by those providers remains subject to the applicable provider terms and law.
6. Timing and confirmation
We aim to acknowledge requests promptly and complete a verified deletion from active AskMyAds systems within 30 days. Where the GDPR applies, we respond without undue delay and ordinarily within one month. If a lawful extension is necessary because a request is complex or numerous, we will explain the reason and expected timing.
Raw Google Ads snapshots are never retained for more than 90 days in ordinary operation and are removed from active storage sooner when a verified deletion request is completed. Backup remnants may persist until the relevant encrypted backup rotates out; they are isolated from ordinary use and, if restored for disaster recovery, the deletion instruction is reapplied.
Optional website measurement runs only if you accept it in the consent banner, and then only as aggregate Vercel Web Analytics page views for our public pages, with no cookies and no identifier we can trace back to you - so there is nothing there for a deletion request to reach. Declining, or withdrawing later, stops it at once. No new marketing-attribution, click-identifier, or lifecycle-event records are created either way. Legacy unclaimed first-party records and Google advertising click identifiers remain subject to the 90-day maximum. Legacy workspace-linked records may be retained only as needed during the account lifecycle. Use a verified deletion request to remove identifiable legacy first-party records.
We send confirmation when active-system deletion is complete and identify any narrow category retained under an exception.
7. Limited retention exceptions
We may retain the minimum information necessary for payment, accounting, tax, fraud prevention, security, dispute, or other legal obligations. For example, Stripe transaction identifiers and an invoice record may remain after product data is deleted. Data retained for an exception is access-restricted and is not used for product analysis, advertising, or a new purpose.
We may also retain data that has been irreversibly aggregated or anonymized so it can no longer identify you, your workspace, or a Google Ads account. We will not treat merely pseudonymous or encrypted data as anonymous.
8. Export before deletion
Deletion is not reversible after active copies and backups have rotated out. If you may need your reports or account records, use the authenticated export endpoint or request an assisted export before deletion. Where applicable, we provide personal data in a structured, commonly used, machine-readable format.
Business customers can also review the public data processing agreement template, including its return-and-deletion terms and processing annexes.
9. Questions
For a deletion status update, export request, or question about scope, contact support@askmyads.ai. More detail about collection and retention is in the privacy policy.