Privacy Policy
Last updated · July 24, 2026
Who we are
HyperScale is an autonomous growth platform for app marketers. This policy describes the data we collect, why we collect it, how long we retain it, and how to remove it.
Data we collect
| Class | Purpose | Retention |
|---|---|---|
| Account identity (email, name) | Authentication, billing | Until deletion + 30 days |
| Workspace metadata | Multi-tenant scoping | Until workspace deletion + 30 days |
| Integration tokens (Meta, etc.) | Authorized API access on your behalf | Until disconnected + 1 day; AES-256-GCM encrypted at rest |
| Performance + creative data from connected ad accounts | Analysis, optimization, agent reasoning | 24–36 months rolling, then archived |
| Decision audit log | Reproducibility, regulatory compliance | 7 years |
| Operational telemetry (cycle costs, traces) | Reliability, cost control | 365 days |
How we use Meta data
When you connect a Meta Ads account, we call the Meta Graph API on your behalf using the access token you authorize. We store the encrypted token and the raw insight payloads we fetch in our database; we never share your access token with third parties. We use this data exclusively to power your workspace's analytics and agent decisions.
Sub-processors
We process data on the following infrastructure providers:
- Supabase (managed Postgres + auth, EU region)
- Cloudflare Workers, Durable Objects, R2 (compute + storage)
- Railway (application hosting)
- Trigger.dev (ingestion task orchestration)
- Anthropic (Claude API for agent reasoning)
- Google (Gemini API for creative analysis and embeddings)
- Upstash (rate-limit coordination)
- PostHog (product analytics)
- E2B (sandboxed agent runtime)
We do not sell personal data.
Your rights
Under GDPR / CCPA you have the right to access, correct, export, and delete your personal data. Reach out via the contact below.
Meta data deletion
If you remove HyperScale from your Facebook account, Meta sends us a signed
deletion request. We honor every such request: the workspace's Meta integration
token is deleted, all creative blobs we hold solely on behalf of that workspace
are removed from R2, and rows in our content-addressed creative store are pruned.
The status of any deletion request is queryable at
https://edge.hyperscale.net/data-deletion/meta/status?id=<confirmation_code>.
Contact
Questions or requests: privacy@hyperscale.net.