1. Overview
AdX MCM ("we", "us", "our") provides an analytics and inventory management platform for digital publishers and ad operations teams. This Privacy Policy describes the information we collect when you use our platform, when you visit our marketing website, and when you contact us, and how we use, share, and protect that information.
If you have questions about this policy or want to exercise any of the rights described below, please contact us at [email protected].
2. Information we collect
Account information
When you register for a publisher account or are invited as an administrator, we collect your name, email address, role, and an encrypted (hashed) password. Publishers may additionally provide a phone number, profile details, and bank/payout information to receive payments.
Inventory and reporting data
Authenticated users may add websites, mobile apps, sub-domains, and ad units, and connect a Google Ad Manager network so AdX MCM can synchronise reporting metrics such as impressions, clicks, revenue, CTR, and eCPM. These are aggregated metrics returned by the Google Ad Manager API; they do not identify the end users who viewed or interacted with ads.
Contact submissions
When you submit our public contact form, we collect the name, email, optional company / phone / subject, and the message you provide so we can respond to your inquiry.
Log and device information
Our servers automatically record technical information when you access the platform or our marketing site, including IP address, browser user-agent, the request path, response status, and timestamps. We use these logs for security, abuse prevention, and to operate the service.
Cookies and local storage
We use cookies and browser local storage to keep you signed in (JWT session token), to remember your branding/theme preferences, and to render the dashboard consistently. See section 5 for details and how to control them.
3. How we use your information
- To create and manage your account and authenticate you.
- To deliver the analytics, inventory, payout, and notification features of the platform.
- To synchronise reporting data with the Google Ad Manager network you connect, in accordance with Google's API terms.
- To send service-related emails and in-app notifications you have opted into.
- To respond to support requests and contact-form submissions.
- To monitor, secure, and improve the service (including rate limiting, fraud and abuse prevention, and debugging).
- To comply with applicable legal, tax, accounting, and regulatory obligations.
6. Data retention
We retain account, inventory, and reporting data for as long as your account is active and as needed to provide the service. Notification recipient records are deleted when an admin deletes the source notification. Contact-form submissions are retained in service logs for operational and security purposes for a limited time period and then rotated. We retain certain records longer where required by law, tax, or accounting obligations.
7. Security
We implement industry-standard technical and organisational measures to protect your information, including password hashing (bcrypt), JWT session authentication, role-based access control (publisher vs super-admin), HTTPS in production deployments, and per-IP rate limiting on sensitive endpoints. Sensitive payout fields (e.g. bank account numbers) are masked by default in the admin UI and automatically re-hidden after a short interval. No system can guarantee absolute security, however, and you are responsible for keeping your credentials safe.
8. Your rights and choices
Depending on where you live, you may have rights to access, correct, delete, or receive a portable copy of your personal information, and to object to or restrict certain processing. You can exercise these rights for your own data through the in-app settings, or by contacting us at [email protected]. We will respond within the timeframe required by applicable law.
9. Children
AdX MCM is a business platform intended for use by publishers and ad operations teams. It is not directed to children under 13 (or the equivalent minimum age in your jurisdiction), and we do not knowingly collect personal information from children. If you believe a child has provided us personal information, please contact us so we can delete it.
10. International transfers
We and our service providers may process information in countries other than the one in which you reside. Where required, we rely on appropriate safeguards (such as standard contractual clauses) for cross-border transfers of personal information.
11. Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will update the effective date at the top of the page. If the change is material, we will provide additional notice (for example, via in-app notification or email).
12. Contact us
If you have questions about this policy or our privacy practices, please contact us at [email protected]. You can also reach us via our contact form.