Last updated: June 22, 2026

Privacy Policy

This page is maintained by ScorUp to answer common privacy questions about how we handle data in the ScorUp platform.

1. Who we are

ScorUp ("we", "us") provides an AI-powered Google Ads automation platform for in-house teams and agencies. This policy explains what information we collect, how we use it, and the choices you have.

2. Information we collect

  • Account data: name, email, organization, role, and authentication identifiers when you sign up.
  • Workspace data: clients, campaigns, audits, leads, conversions, and any content you create inside ScorUp.
  • Connected accounts: when you connect Google Ads, Google Analytics, Gmail, Calendar, or other integrations, we receive the scopes you authorize (read/write campaign data, audience lists, conversions, etc.) via OAuth.
  • Billing data: processed by our payment provider (Stripe). We store only customer IDs, plan, and invoice metadata - never full card numbers.
  • Usage & device data: logs, IP, browser, pages viewed, and feature usage for security, debugging, and analytics.

3. How we use your data

  • Operate ScorUp, sync your ad accounts, and run automations you configure.
  • Provide AI assistance - prompts and the necessary context are sent to our AI providers to generate responses.
  • Bill you, support you, prevent abuse, and improve the product.
  • Send transactional emails (invoices, security alerts) and, with consent, product updates.

4. Service providers

To operate ScorUp we rely on a small set of vetted service providers for categories such as cloud infrastructure, payment processing, authorized third-party integrations you connect (e.g. Google Ads, Analytics, Gmail, Calendar), and AI processing. Each provider receives only the data necessary for its function and is bound by contractual confidentiality and security obligations. A current list of subprocessors is available on request from privacy@scorup.com.

5. Google API data

ScorUp's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not sell Google user data, and we do not use it for advertising. You can disconnect any Google integration from Settings → Integrations at any time.

6. Data retention

We retain workspace data while your account is active. When you delete your account, we delete or anonymize your data within 30 days, except where retention is required for legal or accounting purposes (typically up to 7 years for invoices).

7. Security

Data is encrypted in transit (TLS) and at rest. Access is gated by role-based permissions and row-level security. We support two-factor authentication on all accounts.

8. Your rights

You can access, export, correct, or delete your data from Settings, or by emailing us. If you're in the EU/UK, you have rights under GDPR including the right to lodge a complaint with a supervisory authority.

9. Children

ScorUp is not intended for users under 16. We do not knowingly collect data from children.

10. Changes

We may update this policy. Material changes will be announced via email or in-app notice before they take effect.

11. Contact

Questions? Email privacy@scorup.com.