This policy explains how RoasOps LLC ("RoasOps", "we", "us"), a Wyoming limited liability company, handles information in connection with the RoasOps platform and the roasops.com website.
The short version. We process your advertising and commerce data solely to provide the service to you. We do not sell it, we do not use it for advertising, and we do not pool one customer's data to benefit another customer.
1. Who is responsible for your data
For information about your own account with us, such as your name and email address, RoasOps is the controller.
For data we access from your connected advertising, commerce and CRM accounts, you are the controller and RoasOps acts as your processor. We process that data only on your documented instructions, for the purpose of providing the service.
2. Information we collect
Account information
Your name, business name, email address, billing details and authentication credentials for the RoasOps platform.
Connected platform data
When you connect an account, we access only what the service requires:
- Advertising platforms such as Meta, Google Ads and TikTok: campaign structure, spend, delivery metrics, conversion data and creative assets.
- Commerce platforms such as Shopify, WooCommerce and Stripe: order totals, cost of goods, shipping cost, payment processing fees, refunds and the attribution parameters attached to an order.
- CRM systems: lead and opportunity records, pipeline stage, deal value and the attribution parameters attached to a lead.
We request the narrowest permission scopes that allow the product to function, and we revoke access immediately when you disconnect an account.
Website data
Standard server logs for roasops.com, including IP address and browser user agent, retained for security and diagnostic purposes.
3. How we use information
- To calculate profit, margin and attribution for your advertising, which is the core function of the service.
- To apply the automation rules and spend limits you configure.
- To send conversion and performance data back to advertising platforms at your direction.
- To operate, secure, support and bill for the service.
4. What we do not do
We do not sell personal information. We do not share your data with advertising networks for their own purposes. We do not use your performance data to train models that benefit other customers, and we do not combine one customer's data with another's to produce benchmarks.
Data belonging to one customer is kept logically separated from every other customer's data.
5. Platform terms we operate under
Where we access data through Meta, Google or TikTok, we do so as a technology provider under those platforms' developer and platform terms, and we process that data only on behalf of, and at the direction of, the customer who authorised the connection. We do not use it for any other person, entity or purpose.
6. Service providers
We use a small number of infrastructure providers to run the service, including cloud hosting, database, email delivery and payment processing. Each is bound by a written agreement requiring them to process data only on our instructions and to delete it when the relationship ends. We do not permit them to use your data for their own purposes.
7. Retention and deletion
We retain connected platform data only as long as needed to provide the service, and account data for as long as your account is active.
You can disconnect any platform at any time, which immediately revokes our access. You can request deletion of your data, including all data retrieved from connected platforms, by emailing privacy@roasops.com. We will action verified requests within 30 days and confirm in writing when deletion is complete.
8. Your rights
Depending on where you live, you may have the right to access, correct, export, restrict or delete your personal information, to object to certain processing, and to withdraw consent. Exercising these rights will never result in discriminatory treatment.
To make a request, email privacy@roasops.com. If we process data on behalf of a business customer and you are that customer's end user, we will direct your request to them and assist them in responding.
9. Security
Access credentials for connected platforms are encrypted at rest and are never exposed in the browser or in logs. Data is encrypted in transit. Access to production systems is restricted to personnel who require it, and is logged.
No system is perfectly secure. If a breach affects your data, we will notify you and any required authority without undue delay.
10. International transfers
RoasOps is operated from the United States and data may be processed there. Where we transfer personal data from the European Economic Area, the United Kingdom or Switzerland, we rely on appropriate safeguards including the European Commission's Standard Contractual Clauses.
11. Children
RoasOps is a business tool and is not directed at anyone under 18. We do not knowingly collect information from children.
12. Changes
We may update this policy. The date at the top reflects the current version, and we will notify account holders of material changes before they take effect.
13. Contact
RoasOps LLC, Wyoming, United States
Privacy enquiries and deletion requests: privacy@roasops.com
General enquiries: hello@roasops.com