AdPulse Guard

Security

AdPulse Guard is built to be safe by default: we only ever read, and your data is encrypted and isolated. Here's exactly what that means for your account and your data — in plain English, no jargon.

We only ever read

We don’t change your campaigns, budgets, or bids.

Encrypted

Your Google connection is encrypted in transit and at rest.

Isolated & never sold

Your data stays scoped to your account — and is never sold.

We only ever read

AdPulse Guard reads your Google Ads data. We monitor and explain — you decide and act. We don't change your ads. We only read them. We do not create, edit, pause, or delete campaigns, change budgets, adjust bids, or modify anything in your Google Ads account.

One thing that surprises people at the Google screen. Google publishes exactly one access scope for its Ads API, and it covers both reading and writing. There is no read-only version to ask for. So when you click through Google's consent screen, it says “edit and manage” — that is Google's wording, not ours, and we cannot change it. It describes the access level, not what we do with it. We read your campaign data. That is all we do. Our Terms of Service set this out in full.

You never share your Google password

You connect through Google's official OAuth. You sign in on Google's own screen — we never see, receive, or store your Google password. You choose which Google Ads accounts to connect, and you can review or revoke AdPulse Guard's access at any time from your Google Account permissions.

Your data is encrypted

Data is encrypted in transit (TLS) and at rest. Your Google OAuth tokens — the keys used to read your account — are additionally encrypted with AES-256-GCM before they are stored, so they are never kept in plain text.

Your data is isolated

Every row of your data is protected by row-level security (RLS) scoped to your account. One customer's account can never see another's. Internal, service-only tables are deny-by-default, and administrative access is restricted.

What we can and can't access

What we read (this is all we ever do with the access — we never write):

  • Campaign performance — spend, impressions, clicks, CTR, conversions, conversion value, CPC, CPA, ROAS, budgets, and budget pacing
  • The list of Google Ads accounts you can access, so you can choose which to monitor
  • Campaign status (for example, active or paused)
  • Basic Google profile info (such as your email) to identify your account

What we never do:

  • Change anything in your Google Ads account
  • See or store your Google password
  • See or store your full card number — payments are handled by Stripe
  • Use your data for advertising, retargeting, or interest-based ads
  • Sell your data, ever

Retention & deletion — you're in control

Disconnect a Google Ads account at any time to stop syncing, or delete your AdPulse Guard account entirely from Settings. When you do, we permanently delete the associated Google data, campaign metrics, alerts, AI recommendation history, and stored OAuth tokens within 30 days — except where retention is required by law.

Full details are in our Privacy Policy.

Honest by design

We never show you fabricated data. If our AI is temporarily unavailable, we say so plainly and alert our team — we never invent a health score or a recommendation to fill the gap. Empty states show "no data yet," never fake numbers.

Honesty is a security property: you can trust that what you see reflects your real account, not a placeholder.

Reporting a security issue

Found a vulnerability? We want to hear from you. Email support@adpulseguard.com (or use the contact form, which always works) and we'll respond promptly.

We only ever read. Encrypted, and yours to leave anytime.

Start your free 7-day trial →Questions? Contact us
← Back to Home