Privacy Policy

Last Updated: July 2026 — Updated for User Authentication & Security Compliance

1. Information We Collect & User Accounts

When you register for an account on AdOpsDoctor, we collect your work email address, full name, and password. Passwords are never stored in plain text; they are encrypted using one-way bcryptjs salted hash algorithms. If you sign in with Google, we receive your name, email address, and profile picture from Google's OAuth service.

2. Security Logging (IP Address & Device Identifiers)

To protect our platform against automated bot attacks and unauthorized access, we log client IP address, device identifiers, and timestamps. This is conducted under Legitimate Interest in compliance with GDPR (Article 6(1)(f)), CCPA/CPRA, and India's DPDPA 2023.

3. Cookies & Local Storage

We use essential session tokens (JWT) stored in localStorage to keep you signed in. We do not sell your personal data or use cross-site tracking cookies to profile you on third-party websites.

4. Zero Retention of Uploaded Creative Files

Files uploaded for diagnostic tools (PDF Editor, HTML5 Validator, OCR Translator, Image Reducer) are processed in temporary RAM and purged immediately after processing. We do not permanently store or share your creative assets.

5. Analytics & Third-Party Services

We use Microsoft Clarity for anonymized usage analytics to improve the platform. No personally identifiable information is shared with Clarity.

6. Your Privacy Rights

You may request access to, correction of, or deletion of your registered account data at any time via our Contact page.

7. Changes to This Policy

We may update this policy periodically. Continued use of AdOpsDoctor after changes constitutes acceptance of the revised policy.