Privacy Policy

Last updated: May 6, 2026

1. Information We Collect

We collect information you provide directly and information gathered automatically when you use Approfit.

Account Information

When you create an account, we collect your name, email address, and authentication credentials through Google OAuth. We store only what is necessary to operate your account.

Financial Data

Approfit connects to your ad network accounts (such as AdMob, AppLovin, Unity Ads) and ad spend platforms (such as Meta Ads, Google Ads) via their APIs. We retrieve aggregate revenue and spend metrics on your behalf. We do not collect individual user-level data, device identifiers, or personal information about your app users.

API Credentials

When you connect an ad network, we store encrypted OAuth refresh tokens or API keys. These credentials are encrypted at rest (AES-256) and used solely to fetch your aggregate financial data. We never share, sell, or expose your credentials to third parties.

Usage Data

We automatically collect log data, including your IP address, browser type, pages visited, and timestamps. This data is used to maintain security, prevent abuse, and improve our service.

Cookies and Local Storage

We use essential cookies and local storage for authentication, session management, and user preferences. See our Cookie Policy for details.

2. How We Use Your Information

  • Provide, maintain, and improve the Approfit service
  • Sync and display your ad revenue and spend data
  • Send you alerts and notifications about your account performance
  • Process subscription payments through Pabbly
  • Communicate with you about your account or service updates
  • Enforce our Terms of Service and prevent fraud

3. Data Sharing

We do not sell your personal information. We share data only with:

  • Service providers: Google (authentication, cloud infrastructure), Pabbly (subscription billing)
  • Ad network APIs: We communicate with AdMob, AppLovin, Unity Ads, Meta Ads, and other networks solely to fetch your data on your behalf
  • Legal requirements: When required by law, court order, or government regulation

4. Data Security

We implement industry-standard security measures including:

  • Encryption at rest (AES-256) for all sensitive credentials
  • Encrypted data in transit (TLS 1.2+)
  • Role-based access controls and audit logging
  • Regular security assessments

However, no system is completely secure. We cannot guarantee absolute security of your data.

5. Data Retention

We retain your account data for as long as your account is active. Upon account deletion, we delete your personal information and encrypted credentials within 30 days, except where retention is required by law.

6. Your Rights (GDPR and CCPA)

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have rights under the General Data Protection Regulation (GDPR). If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA). These rights include:

  • Right to Access: Request a copy of your personal data
  • Right to Rectification: Request correction of inaccurate data
  • Right to Erasure: Request deletion of your personal data (subject to legal retention requirements)
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Restrict Processing: Request limitation of how we process your data
  • Right to Object: Object to processing based on legitimate interests
  • Right to Withdraw Consent: Withdraw consent for data processing based on consent at any time

To exercise any of these rights, contact us at privacy@approfit.app. We will respond to your request within 30 days.

GDPR Legal Basis for Processing

We process your data under the following legal bases:

  • Contract performance: To provide the Approfit service you subscribed to
  • Legitimate interests: For security, fraud prevention, and service improvement
  • Consent: For marketing communications and non-essential cookies
  • Legal obligation: When required by applicable law

CCPA-Specific Rights

California residents additionally have the right to:

  • Know what personal information is collected and how it is used
  • Request deletion of personal information
  • Opt out of the sale of personal information (we do not sell your data)
  • Not be discriminated against for exercising these rights

7. International Data Transfers

Your data may be transferred to and processed in countries outside your jurisdiction. We ensure appropriate safeguards including Standard Contractual Clauses (SCCs) for transfers from the EEA. By using the Service, you consent to such transfers.

8. Children's Privacy

Approfit is not directed to children under 16. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child, we will take steps to delete it promptly.

9. Data Processing Agreements

If you are a business using Approfit in connection with processing personal data of your app users, we act as a data processor on your behalf for the limited purpose of providing the Service. Our role is limited to aggregating financial metrics and does not involve processing identifiable user data.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or a notice on our website. Your continued use of Approfit after changes constitutes acceptance of the updated policy.

11. Supervisory Authority

EEA residents have the right to lodge a complaint with their local data protection supervisory authority if they believe their data is being processed unlawfully.

12. Contact

For privacy-related questions, data access requests, or to exercise your rights, contact our Data Protection Officer at:

Email: privacy@approfit.app

Response time: Within 30 days of receiving your request