1. Scope and who we are
Growth OS is a business analytics and reporting platform operated by Expert Publishing ("Expert Publishing," "we," "us," or "our"). This policy applies to Growth OS and its connected services. Growth OS is intended for businesses and people acting on behalf of those businesses, not for general consumer social networking.
2. Information we handle
Depending on the features a business chooses to use, Growth OS handles:
- Account and organization information, such as a user's name, email address, organization, role, client assignments, and account settings.
- Information users submit, including dashboard configuration, reports, notes, files, business assumptions, and support requests.
- Authorized Meta advertising data. For ad accounts a business is authorized to access, this can include Meta user and ad-account identifiers, account names, currency and timezone, and campaign, ad set, and ad identifiers and names. It can also include objectives, status, budgets, schedules, destination or creative metadata, and performance insights such as spend, impressions, reach, frequency, clicks, click-through rate, cost metrics, video engagement, purchases, leads, add-to-cart events, checkout starts, conversions, and conversion value.
- Other connected-platform data. The application supports business-authorized integrations including Triple Whale, Shopify, Skio, TikTok, ShipStation, and Google Analytics. Google Ads performance data may be received through an authorized reporting provider such as Triple Whale; the inspected application does not use a direct Google Ads account connection. When Google Analytics is configured, Growth OS can process a property identifier and analytics measurements used for reporting.
- Connection information, such as access tokens, API keys, account mappings, store domains, property identifiers, and connection status needed to operate integrations selected by the business.
- Authentication and basic technical information,including essential session cookies, sign-in state, last-access timestamps, and request or error information generated while operating and securing the service.
3. How we use information
We use this information to:
- Authenticate users and apply organization, role, and client-level access controls.
- Connect to services a business authorizes and retrieve data on its behalf.
- Provide dashboards, reports, snapshots, performance analysis, and requested workflows.
- Maintain, troubleshoot, secure, and improve Growth OS.
- Send operational communications such as invitations and password-reset messages.
- Respond to support, rights, security, and deletion requests.
- Meet legal obligations and enforce applicable agreements.
4. How we disclose information
We do not sell advertising-platform data or use it to build or sell consumer advertising profiles. We do not disclose client advertising data to third parties for their own marketing.
We may disclose information in these limited circumstances:
- Service providers. Providers process data for us to host, secure, communicate through, support, or operate Growth OS. Verified infrastructure includes Supabase for database and authentication services and Vercel for application hosting. Stripe processes billing information when a user uses paid billing features. Specialized providers may process data when a user intentionally invokes a feature that requires them.
- Connected platforms. Growth OS sends requests to Meta, Google, and other services chosen by the business to retrieve or process authorized data.
- Authorized users. Information is available to people whom the relevant organization authorizes, subject to configured roles and client access.
- Legal, safety, or business needs. We may disclose information when reasonably necessary to comply with law, protect rights or security, investigate misuse, or support a corporate transaction subject to appropriate safeguards.
5. Storage, access, and security
Growth OS stores account, configuration, connection, and selected reporting data in its hosted systems. Some advertising insights are retrieved when requested, while report snapshots, cached or summarized metrics, identifiers, mappings, and workflow records may be retained to provide the service.
We use technical and organizational safeguards appropriate to the service, including authenticated access, role and organization scoping, database row-level access policies, restricted server-side credentials, and encrypted network transport. No system can guarantee absolute security. Users must protect their credentials, grant only necessary access, and promptly report suspected misuse.
6. Retention, disconnection, and deletion
We retain information for as long as reasonably needed to provide requested services, maintain legitimate business and security records, comply with law or contracts, resolve disputes, and enforce agreements. Retention can vary by data type, account configuration, and legal requirements.
An authorized administrator can disconnect supported integrations in Growth OS Settings. Disconnecting stops the active connection, but does not necessarily remove historical reports, snapshots, account mappings, or all stored connection records. To request removal of an account or associated data, follow the instructions on the Data Deletion page.
7. Choices and privacy rights
Subject to applicable law and the requester's authority, users and client businesses may ask to access, correct, export, restrict, or delete information associated with them. They may also disconnect a connected account, stop providing optional information, or ask their organization administrator to change their access.
Send requests to support@expertpublishing.com. Please identify the Growth OS account and organization involved and describe the request. Do not send a password, access token, API key, or other secret. We may verify identity and authority before acting.
8. Third-party platforms
Growth OS is an independent service and is not endorsed by or part of Meta or Google. A business's use of a connected platform remains subject to that platform's terms and policies, including the Meta Privacy Policy (opens in a new tab), Meta Terms (opens in a new tab), and Google Privacy Policy (opens in a new tab). Disconnecting or deleting data from Growth OS does not itself delete data held by those platforms.
9. Children's privacy
Growth OS is a business service and is not directed to children under 18. We do not knowingly invite children to create accounts or use the service. Contact us if you believe a child has provided personal information through Growth OS.
10. Policy updates and contact
We may update this policy as Growth OS, legal requirements, or our data practices change. We will post the revised policy here and update the date above. Where appropriate, we may also provide an in-product or direct notice.
Questions about this policy or Growth OS data practices can be sent to Expert Publishing at support@expertpublishing.com.