Privacy Policy
This policy explains how Ultrametrics collects, uses, stores, and protects your information, including data accessed through Google and Meta advertising APIs.
Last updated · June 26, 2026
About Ultrametrics
Ultrametrics is a marketing analytics platform that connects your advertising and analytics accounts, syncs the underlying performance data into a unified workspace, and provides reporting and AI-assisted analysis on top of that data. This Privacy Policy explains what information we collect, how we use it, the third parties involved, and the choices and rights you have.
This policy applies to the Ultrametrics web application and related services. By creating an account or connecting a data source, you agree to the practices described here.
Information We Collect
We collect the following categories of information:
- Account information — your name, email address, and authentication identifiers when you sign up.
- Workspace data — workspace names, membership, roles, and settings you configure.
- Connected platform data — advertising, analytics, and commerce metrics retrieved from sources you explicitly authorize.
- Billing information — subscription plan and payment status (payment card details are handled by Stripe, not by us).
- Usage and diagnostic data — log events, feature usage, and error reports used to operate and improve the service.
Google OAuth Data
When you connect a Google account, we use Google OAuth 2.0 to obtain a scoped access token. We request only the read scopes required for the connector you enable, and we never receive or store your Google password. Tokens are encrypted at rest and used solely to retrieve the data you authorize.
Ultrametrics's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. You can revoke access at any time from your Google Account permissions page or by disconnecting the connector in Ultrametrics.
Google Ads API Usage
With your authorization, Ultrametrics accesses the Google Ads API to read campaign, ad group, keyword, and performance reporting data for the ad accounts you select. This data is used to populate your dashboards, reports, and AI analysis within your workspace.
- We request read-only reporting access; we do not create, edit, pause, or delete campaigns.
- Google Ads data is used only to provide the features you request and is never sold.
- Data is associated with your workspace and isolated from other customers.
- You may disconnect Google Ads at any time, which stops further data retrieval.
Meta Ads API Usage
When you connect Meta (Facebook and Instagram) advertising accounts, Ultrametrics uses the Meta Marketing API with the read-only ads_read scope to retrieve ad account insights you authorize. We do not publish, modify, or manage ads on your behalf.
Use of Meta data complies with the Meta Platform Terms and Developer Policies. You can revoke access from your Meta account settings or by disconnecting the connector.
Google Sheets Integration
If you enable the Google Sheets integration, Ultrametrics writes the synced datasets you configure to spreadsheets you authorize. Access is scoped to the spreadsheets used for export. We do not read unrelated files in your Google Drive, and you control which data is exported and when.
Stripe Payments
Subscription billing is processed by Stripe, Inc. Payment card details are entered directly with Stripe and are never stored on Ultrametrics servers. We retain only non-sensitive billing metadata such as your plan, subscription status, and customer identifier needed to manage your account. Stripe's handling of payment data is governed by Stripe's own privacy policy.
AI Processing
Ultrametrics provides AI-assisted analysis of your connected marketing data. When you use these features, relevant metrics and prompts may be processed by our AI providers to generate summaries, recommendations, and explanations.
- AI features operate on the data already present in your workspace.
- We do not use your private workspace data to train third-party foundation models.
- AI output is advisory; it does not execute changes to your ad accounts.
Data Storage
Your data is stored using Supabase (PostgreSQL) infrastructure with row-level security that isolates each workspace. Data is logically separated per customer and accessible only to authenticated members of the relevant workspace.
Encryption
Data is encrypted in transit using TLS and at rest using industry-standard encryption. OAuth tokens and other sensitive credentials are encrypted before storage and are never exposed to other customers or in client-side code.
Security
We apply administrative, technical, and organizational safeguards to protect your information, including:
- Row-level security and per-workspace access boundaries.
- Least-privilege OAuth scopes (read-only for advertising data).
- Encrypted credential storage and access logging.
- Regular dependency and platform updates.
No method of transmission or storage is completely secure, but we work to protect your data and to promptly address any vulnerabilities we identify.
Data Retention
We retain your workspace and connected data for as long as your account remains active or as needed to provide the service. When you disconnect a connector, we stop retrieving new data from that source. When you delete your account or request deletion, we remove your personal data and synced datasets within 30 days, except where retention is required to comply with legal, accounting, or security obligations.
Third Party Services
We rely on the following sub-processors and service providers to operate Ultrametrics:
- Google (Google Ads API, Google OAuth, Google Sheets) — connected data sources you authorize.
- Meta Platforms (Marketing API) — connected advertising data you authorize.
- Supabase — authentication and database hosting.
- Stripe — subscription and payment processing.
- AI model providers — processing of in-workspace data for AI features.
User Rights
Depending on your jurisdiction, you may have the right to access, correct, export, restrict, or delete your personal data, and to withdraw consent for processing. You can exercise many of these rights directly in the app by editing your profile, disconnecting connectors, or deleting your workspace.
To make a formal request, contact us at privacy@ultrametrics.app.
Delete Data Requests
You can delete your data in two ways:
- In-app — disconnect a connector to remove its synced data, or delete your workspace/account to remove all associated data.
- By request — email privacy@ultrametrics.app with the subject "Delete My Data" from your account email address.
We process deletion requests within 30 days and confirm completion by email. Revoking access through Google or Meta also stops further data collection immediately.
Contact
For privacy questions or requests, contact us at privacy@ultrametrics.app. For general support, email ultrametrics.ai@gmail.com.