Privacy & data processing

What is collected, and how to have it deleted

Written to be read rather than to cover anyone legally. If something here is unclear, ask and it will be explained plainly.

Last updated 8 September 2026

Who is responsible

Adkiro is operated by Kinsiders 777 LLC, registered in Sofia, Bulgaria. For the enquiry and account-connection data described here, Kinsiders 777 LLC is the data controller.

Questions about anything on this page, including requests to see or delete what is held, go to [email protected].

What is collected when you enquire

The forms on this site collect only what is needed to respond to an enquiry and to assess whether an engagement is a fit. Nothing is sold, and nothing is shared with third parties for their own marketing.

  • Account review requests: name, email address, website and an indication of monthly advertising spend.
  • Client onboarding: name, email address, and the Meta identifiers you choose to provide — Business Portfolio ID, ad account ID, Page reference, Instagram username and Pixel or dataset ID.
  • Technical data sent with a form submission: IP address and browser user agent, used to attribute the enquiry and reduce automated abuse.

What a connected Meta account shares

Connecting a Meta account is optional and separate from granting Adkiro partner access to manage advertising. The connection requests the ads_read permission only. It can read advertising performance data; it cannot create, edit, pause or delete anything in the account.

When a connection is made, Adkiro stores the Meta user ID, the display name on that Meta account, the list of ad accounts the connection can see, and an access token. The access token is encrypted before it is stored and is never displayed, logged or sent to a browser.

The connection is used to prepare reporting and diagnostics — spend, impressions, clicks, cost metrics and campaign structure. It is not used to read personal messages, contact lists, customer records or audience membership.

  • Permission requested: ads_read only, which is read-only.
  • Access tokens are encrypted at rest with AES-256-GCM.
  • A Meta access token issued this way expires after roughly 60 days.
  • You can revoke the connection at any time in Meta's Business Integrations settings, which stops any further access immediately.

Advertising measurement on this site

This site uses the Meta Pixel, and sends a matching server-side event when an enquiry is submitted, so that Adkiro's own advertising can be measured accurately. Where an email address is included in a server-side event it is hashed before transmission, never sent in the clear.

This measurement concerns Adkiro's own advertising on this website. It is separate from any connected client ad account.

How long data is kept

Enquiry records are kept while there is a live prospect or client relationship, and for a reasonable period afterwards for business records. Meta connection records are kept until the connection is revoked or deletion is requested.

Deleting a connection removes the stored access token entirely. A short confirmation record of the deletion itself is retained so the confirmation code remains checkable, as Meta requires.

Deleting your data

There are two routes, and both result in the stored access token being deleted rather than merely disabled.

Revoking the connection inside Meta triggers a deletion request to Adkiro automatically. You can also email [email protected] and ask directly. Either way you can be told what was held and confirm that it is gone.

  • In Meta: Settings → Business Integrations → select Adkiro → Remove.
  • By email: [email protected], from the address associated with the enquiry where possible.
  • Deletion status can be checked with the confirmation code issued at the time of the request.

Your rights

Under the GDPR you can request access to the personal data held about you, ask for it to be corrected or deleted, object to processing, or ask for it to be provided in a portable form. Requests go to [email protected] and are answered within one month.

If you believe your data has been handled improperly, you may also complain to the Bulgarian Commission for Personal Data Protection, or to the supervisory authority in your own country.