BPBrandPatrol
Legal

Privacy Policy

Last updated September 2026. What we access, what we store, what we never touch — and how to reach us about your data.

Scope of monitoring

BrandPatrol's monitoring is built on public data only: search-engine results pages and the public ad-transparency record that ad platforms are already required to publish. A scan reads what a searcher would see, or what a network discloses publicly about an ad — nothing else.

We never log into a client's ad accounts, affiliate platform, CRM, or analytics tools to do this work. There's no OAuth grant, no read-only API key, no account access requested from you for detection to run.

What we store for your brand

For each brand under monitoring, your workspace holds:

  • The keywords and keyword variations you've asked us to watch.
  • The target countries, cities, and devices your scans cover.
  • Your authorized-partner roster, so a scan can tell an approved affiliate apart from a hijacker.
  • Case evidence a scan produces: timestamped SERP and landing-page screenshots, the ad's display URL, the redirect chain it followed, tracking parameters extracted from that chain, the country and device the ad was observed on, and the case's current status (new, in progress, solved, or muted).

All of this is scoped to the brand it was collected for. It doesn't mix across workspaces, and an agency's client brands never see each other's data.

What we never collect

Nothing BrandPatrol monitors involves an end customer. We don't collect shopper identities, payment details, order history, or any other personal data belonging to the people who click the ads we're watching — that data isn't visible from a public SERP or the ad-transparency record, and we have no reason to look for it elsewhere.

The marketing site you're reading now sets no advertising or tracking cookies. The signed-in workspace uses a single session cookie, required to keep you logged in — nothing else.

Account information

To run your workspace we hold what you give us directly when you sign up or get invited: your name, work email, and the brand(s) you've been granted access to. Passwords are never stored in plain text.

Who can see your data

Case evidence and workspace data for a brand are visible only to accounts that brand has explicitly granted access to. An agency account managing several client brands keeps each client in its own separate workspace — one client's cases, roster, and keywords are never visible from another client's workspace.

Retention and deletion

Case evidence and account data are kept for as long as your workspace stays active — that's what lets you review a case months after a scan first flagged it. If you close your account or want a specific brand's data removed, email us at the address below; we'll confirm exactly what was deleted and when.

Third parties

Running BrandPatrol requires ordinary infrastructure and email-delivery providers to host the service and send you account notifications — nothing unusual for a hosted web application. We don't sell case evidence or workspace data, and we don't share it with third parties for marketing purposes.

Your choices

At any time, you can ask us to:

  • Send you a copy of the data held in your workspace.
  • Correct information that's wrong — a keyword, a roster entry, an account detail.
  • Delete your workspace data.
  • Stop monitoring a brand altogether.

Reach us at [email protected] for any of the above.

Changes to this policy

If this policy changes, we'll update it on this page and change the "last updated" date above. We don't send a separate notice for minor clarifications; changes to what we collect or how we use it will be reflected here.

Contact

Questions about this policy or a specific data request: [email protected].

Related reading. See the Terms of Service for the agreement that applies when you use BrandPatrol, and How it works for the scanning and tracing mechanics behind the case evidence described above.