Legal

Paid Ads MCP Server Privacy Policy

Version 2026-04-05 • Last updated 5 April 2026

Privacy Policy

Paid Ads MCP Server

Connected Paths International Ltd

Last updated: 5 April 2026

This Privacy Policy explains how Connected Paths International Ltd ("Connected Paths", "we", "us" or "our") collects, uses, stores and shares personal data in connection with the Paid Ads MCP Server and related services (the "Service").

Connected Paths International Ltd is a company incorporated in England and Wales with company number 17001819 and registered office at 24 Jubilee Walk, Kings Langley, England, WD4 8FF.

1. Scope

This policy applies when you:
• visit the Paid Ads MCP Server website or account pages;
• sign up for a trial or subscription;
• connect advertising accounts such as LinkedIn Ads or Google Ads;
• authenticate through ChatGPT, Claude, or another supported AI platform; or
• contact us for support, billing, or service operations.

2. Personal data we may process

Depending on how you use the Service, we may process:
• identity and account data, such as your name, email address, organisation details, and authentication subject identifiers;
• billing data, such as Paddle customer IDs, subscription IDs, transaction IDs, billing status, and payment-related references;
• authentication and security data, such as login events, OAuth client registrations, IP addresses, session identifiers, request identifiers, and browser or connector metadata;
• provider connection data, such as connected LinkedIn Ads or Google Ads account IDs, account names, connection summaries, and connection timestamps;
• usage and analytics data, such as MCP tool calls, tool success and failure outcomes, timestamps, durations, and product telemetry used for support and service improvement;
• support communications you send to us;
• Customer Data made available through connected advertising accounts, to the extent that it contains personal data.

3. How we collect personal data

We collect personal data:
• directly from you when you sign up, sign in, connect accounts, or contact support;
• from the identity providers, payment providers, and advertising platforms you choose to connect;
• automatically from your use of the Service through service logs, analytics events, cookies, and security monitoring.

4. How we use personal data

We use personal data to:
• provide, operate, secure, and improve the Service;
• authenticate users and manage access to the Service;
• process billing, subscriptions, and customer support requests;
• maintain connected advertising account integrations;
• troubleshoot issues, detect abuse, and prevent fraud or unauthorised access;
• maintain internal product analytics and operational reporting;
• comply with legal, regulatory, tax, and accounting obligations;
• communicate important service, billing, or security information.

5. Legal bases for processing

Where UK GDPR or similar laws apply, we generally process personal data because:
• processing is necessary for the performance of a contract with you or your organisation;
• processing is necessary for our legitimate interests in operating, securing, supporting, and improving the Service;
• processing is necessary to comply with legal obligations; or
• in limited cases, processing is based on consent where required by law.

6. How we share personal data

We may share personal data with:
• Auth0, for identity and authentication services;
• Paddle or other payment providers, for billing and subscription management;
• Google, LinkedIn, and other advertising or AI platform providers you choose to connect;
• hosting, logging, analytics, infrastructure, and support vendors that help us operate the Service;
• professional advisers, auditors, insurers, or regulators where reasonably required;
• law enforcement or competent authorities where we are legally required to do so.

We do not sell personal data.

7. International transfers

Some of our providers may process personal data outside the United Kingdom. Where this happens, we take reasonable steps to ensure appropriate safeguards are in place.

8. Data retention

We retain personal data only for as long as reasonably necessary for the purposes described in this policy, including to:
• provide the Service and maintain your account;
• keep billing, accounting, and tax records;
• investigate incidents and maintain security logs;
• enforce our terms and resolve disputes.

Retention periods vary depending on the data type and legal requirements.

9. Security

We use reasonable technical and organisational measures to protect personal data, including access controls, encryption where appropriate, and operational monitoring. No system can be guaranteed to be completely secure.

10. Cookies and similar technologies

We use essential cookies and similar mechanisms to support sign-in, session continuity, billing flows, and security features. We may also use limited internal analytics and operational telemetry to understand how the Service is used and to support troubleshooting.

11. Your rights

Where applicable law provides, you may have rights to:
• request access to personal data we hold about you;
• request correction of inaccurate data;
• request deletion of personal data in certain circumstances;
• object to or restrict certain processing;
• request portability of certain personal data;
• withdraw consent where processing is based on consent; and
• complain to the Information Commissioner's Office or another relevant supervisory authority.

12. Changes to this policy

We may update this Privacy Policy from time to time. If we make material changes, we will update the effective date above and may provide additional notice where appropriate.

Contact

Connected Paths International Ltd
24 Jubilee Walk
Kings Langley
England WD4 8FF

Email: legal@connectedpaths.com