Dashless Ltd runs Dashless and is the data controller for the personal data described here. Our registered office is 3-3, 35 Springbank Gardens, Glasgow G31 4QP, Scotland, United Kingdom. For anything about your data, email support@dashless.app.
We use your approximate country, which our hosting provider supplies from your connection, to show prices in your currency.
We ask Meta for two permissions: ads_read, to read your ad accounts, and business_management, to list the ad accounts in your Business Manager. We never ask for permission to change your ads. We do not read messages, posts or personal data about the people who see your ads.
We do not sell your data, or combine different customers' data in any form that identifies them. The only thing we send an advertising platform is the Meta pixel data described under Cookies. Your ad accounts, your clients and anything inside the app are never part of it.
To write analysis, reports and answers, we send the relevant account data and your questions to Anthropic's API. Anthropic does not use this data to train its models, and neither do we.
Some services you choose to use run under their own privacy policies rather than on our behalf: Meta, the source of your ad data and, if you allow its pixel, a joint controller with us for the data the pixel collects; Google, if you sign in with Google; and Slack, if you connect it for alerts.
People you share with. A report you share by link can be opened by anyone who has the link, until it expires or you revoke it. A client you give a seat to sees only the ad account you give them.
Our database and servers are in Ireland, which the UK recognises as providing adequate protection. Some of the providers above process data in the United States. Each of them has a data processing agreement that forms part of its terms with us, and covers transfers out of the UK with the UK International Data Transfer Addendum to the Standard Contractual Clauses, and in some cases the UK Extension to the EU-US Data Privacy Framework.
Meta access tokens are encrypted with AES-256-GCM. Each workspace can see only its own data, and a client seat sees only the account it is given. Everything travels over HTTPS. API keys are stored only as hashes, and card details stay with Stripe.
You can ask to see the personal data we hold about you, correct it, delete it, restrict or object to how we use it, or receive a copy to take elsewhere. Email support@dashless.app and we will reply within one month.
You can delete your account yourself from Settings or on the data deletion page, and disconnect any Meta ad account at any time. If you email us instead, we delete your data within 7 days.
If you are unhappy with how we handle your data, you can complain to the UK Information Commissioner's Office at ico.org.uk. We would like the chance to fix it first.
Dashless is a tool for businesses and is not meant for anyone under 18.
If a public authority asks for personal data we hold, we check that the request is lawful and valid before responding, and we challenge requests we consider unlawful or too broad. Where we are legally required to disclose, we disclose only the minimum needed.
We record each request, our response and our reasons, and unless the law prevents it, we tell the customers affected. We do not give any government direct or bulk access to customer data.
When we change this policy we update the date at the top. If a change affects how we use your data in a meaningful way, we email account holders before it applies.