
Privacy Policy
Last updated: July 22, 2026
BrandProtektor ("BrandProtektor," "we," "us," or "our") is an operations platform built and operated by Zenith Interactive to help our team and our clients monitor brand-search advertising, review and apply Google Ads negative-keyword changes, and research keyword and search-results data. This Privacy Policy explains what information BrandProtektor collects, how it is used, and the choices available to anyone whose data it processes — including Google Account data accessed through the Google Ads API.
Who this policy applies to
BrandProtektor is not a public, self-service product — it is an internal tool used by authorized Zenith Interactive personnel and by named stakeholders at the client accounts we manage. Access is granted directly by Zenith Interactive; there is no public account registration.
Information we collect
Google account and Google Ads data
When an authorized Google Account is connected to BrandProtektor, we access Google Ads data through the official Google Ads API, including:
- Manager (MCC) and client account identifiers and names
- Campaign, ad group, and keyword configuration and status
- Search-term reports and existing negative-keyword lists
- Performance metrics needed to evaluate proposed changes (e.g. impressions, clicks, cost, conversions)
- Change history for actions BrandProtektor takes on your behalf
Business and campaign information you provide
Brand and competitor domains submitted to run a scan, brand names, client labels, budget and scheduling preferences, and any notes or approval decisions entered while reviewing proposed changes.
Keyword and search-results research data
Seed keywords, search-volume and competition data, organic/paid/shopping search-results snapshots, and YouTube results gathered through third-party search-data providers to produce keyword research briefs.
Technical and usage data
Standard server logs (timestamps, request paths, and error details) used to operate and troubleshoot the application. BrandProtektor does not use advertising cookies or third-party trackers.
How we use Google user data
Google Ads data obtained via OAuth is used exclusively to provide the features an authorized user requests inside BrandProtektor:
- Displaying account, campaign, and search-term data for review
- Proposing negative-keyword additions, keyword or ad-group pauses, and budget changes for human approval
- Executing only the specific changes a human explicitly approves — BrandProtektor does not modify a live Google Ads account without an approval step in the interface
- Reporting on the outcome of changes already applied
We do not use Google user data for advertising, do not sell it, and do not share it with any party except the service providers described below, solely to operate BrandProtektor. Google Ads API data is used only for the purposes described in this policy and in accordance with the Google API Services User Data Policy.
How we share information
We do not sell personal information. Data is shared only with the following categories of service providers, solely to deliver BrandProtektor's functionality:
- Google Ads API — to read and, upon approval, apply changes to connected accounts
- Supabase — our hosted database provider, storing report, research, and application data
- AI model providers (via OpenRouter) — to generate summaries, classifications, and research briefs from the data described above
- Search-data providers — to source SERP and YouTube research data for keyword briefs
We may also disclose information if required by law or to protect the rights, property, or safety of Zenith Interactive, our clients, or others.
Data storage and security
Data is stored in access-controlled, encrypted-at-rest hosted databases and transmitted only over encrypted (HTTPS/TLS) connections. OAuth tokens and API credentials are held as server-side configuration and are never exposed to client-side code or included in any client-facing response. Access to the application itself is restricted to authorized users.
Data retention
We retain data for as long as it is needed to provide services to the relevant client engagement, or as required by law. Account owners may request deletion of their data at any time using the contact details below.
Your rights and choices
- You may revoke BrandProtektor's access to your Google Account at any time at myaccount.google.com/permissions.
- You may request access to, correction of, or deletion of your data by contacting us below.
- Revoking access will stop BrandProtektor from reading or modifying the associated Google Ads account going forward.
Human review of automated actions
BrandProtektor uses automated analysis (including AI-generated summaries and recommendations) to prepare proposed changes, but no change is applied to a live Google Ads account without an explicit, logged approval action taken by an authorized human user.
Children's privacy
BrandProtektor is a business tool not directed at children, and we do not knowingly collect information from children under 16.
Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be reflected by updating the "Last updated" date above.
Contact us
Questions about this policy or requests regarding your data can be sent to vadim@zenithinteractive.com.
Zenith Interactive · Chicago, Illinois, U.S. · zenithinteractive.com