Privacy Policy
Last updated: April 3, 2026
1. Introduction
Krezzo (“we”, “us”, “our”) operates the website krezzo.xyz and the Krezzo application (the “Service”). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
2. Information We Collect
We collect the following types of information:
- Account information: Name, email address, and password when you create an account.
- Payment information: Billing details processed securely through Stripe. We do not store your credit card number.
- Meta account data: When you connect your Facebook/Meta ad account via OAuth, we receive an access token and your ad account information (account name, ID, currency). We use this solely to manage ad campaigns on your behalf.
- Usage data: Information about how you use the Service, including features accessed, credits consumed, and campaigns created.
- Generated content: AI-generated images, videos, and ad copy created through the Service are stored in your account.
3. How We Use Your Information
- To provide, operate, and maintain the Service.
- To process payments and manage your subscription.
- To connect to and interact with the Meta Marketing API on your behalf.
- To generate AI-powered ad creatives and copy as requested by you.
- To search the Meta Ad Library for competitor ad data.
- To communicate with you about your account, updates, and support.
- To detect and prevent fraud or abuse of the Service.
4. Meta Platform Data
When you connect your Meta (Facebook) account, we access the following data through the Meta API:
- Ad account information (name, ID, status, currency).
- Campaign, ad set, and ad data for accounts you manage.
- Public ad data from the Meta Ad Library.
We do not sell, share, or transfer Meta platform data to third parties, except as necessary to provide the Service. We do not use Meta data for purposes unrelated to the Service. You can disconnect your Meta account and revoke our access at any time from the Settings page.
5. Data Storage and Security
Your data is stored securely using Supabase (hosted on AWS) with row-level security policies ensuring you can only access your own data. Meta access tokens are stored encrypted. Payment processing is handled entirely by Stripe and is PCI-DSS compliant. We implement industry-standard security measures to protect your information.
6. Third-Party Services
We use the following third-party services to operate Krezzo:
- Supabase: Authentication and database hosting.
- Stripe: Payment processing and subscription management.
- Meta (Facebook): Ad account management and Ad Library access.
- fal.ai: AI image and video generation.
- Anthropic: AI ad copy generation.
- Vercel: Application hosting.
- Upstash: Caching and rate limiting.
Each service processes data in accordance with their own privacy policies. We only share the minimum data necessary for each service to function.
7. Data Retention
We retain your account data for as long as your account is active. Generated content (images, videos, ad copy) is retained until you delete it or close your account. Upon account deletion, we remove all personal data within 30 days, except where retention is required by law (e.g., financial records).
8. Your Rights
Under GDPR and applicable privacy laws, you have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your data (“right to be forgotten”).
- Withdraw consent for data processing at any time.
- Export your data in a portable format.
- Object to or restrict processing of your data.
- Disconnect your Meta account and revoke API access.
To exercise any of these rights, contact us at the email address below, or follow the instructions on our data deletion page.
9. Cookies
We use essential cookies for authentication and session management. We do not use advertising or tracking cookies. No third-party analytics cookies are used.
10. Children's Privacy
Krezzo is not intended for use by individuals under the age of 18. We do not knowingly collect personal data from children.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy on this page and updating the “Last updated” date.
12. Contact
If you have questions about this Privacy Policy or want to exercise your data rights, contact us at:
privacy@krezzo.xyz