LEGAL
Privacy Policy
Last updated: April 29, 2026
This Privacy Policy explains how Campaign Studio (“we”, “us”) collects, uses, and shares information when you use the Campaign Studio platform at campaignstudio.agency (“Service”). We've tried to write this in plain English. If anything is unclear, email support@campaignstudio.agency.
1. What we collect
Account information
When you create an account: email, name (optional), organization name, and authentication credentials. Stored in our Postgres database (Supabase).
Content and assets
Brand kits, generated images, videos, articles, ad copy, audience research, and any other content you create or upload. Stored in Postgres (metadata) and Cloudflare R2 (binary assets).
Business data you connect
- Bank transactions (optional): If you connect a bank via Plaid, we receive transaction metadata (amount, date, merchant, category) for marketing-spend reconciliation. We never see account numbers or login credentials — Plaid handles authentication.
- Search performance (optional): If you connect Google Search Console, we receive query, impression, click, and position data for your verified properties.
- Social accounts (optional): If you connect social publishing via Ayrshare, posts and engagement data flow back to your Campaign Studio dashboard.
- Funnel leads (your customers' data): When end users submit forms on funnels you publish, their data is stored under your organization. You are the data controller for those leads — we process them on your behalf.
Usage and telemetry
Standard application logs (request paths, error traces, IP address for rate limiting and abuse prevention), tier-quota counters, and audit logs of who did what (account-level, not surveillance).
Payment information
Handled exclusively by Stripe. We store a customer ID and subscription status — never card numbers.
2. Third-party processors
Campaign Studio works because we route specific tasks to specialist providers. Here's the full list of processors that can receive your data, and what each one does:
- Supabase — Postgres database + authentication. Hosts all account, content, and audit data.
- Cloudflare R2 — Object storage for images, videos, PDFs, and other binary assets.
- Vercel — Frontend hosting and edge functions.
- Stripe — Payment processing and subscription management.
- Resend — Transactional email (account, billing, email-sequence sends).
- Anthropic (Claude)— AI text generation, strategy, and the ⌘J assistant. Prompts and outputs may be processed by Claude per Anthropic's commercial API terms (no model training on customer data).
- fal.ai— AI image generation (Flux, Ideogram), video generation (Kling), photo enhancement (Topaz). Prompts processed per fal.ai's commercial terms.
- ElevenLabs — Voice cloning and text-to-speech.
- Creatomate — Video assembly and rendering.
- Ayrshare — Multi-platform social publishing (optional, per organization).
- Plaid — Bank-account linking for financial reconciliation (optional, per organization).
- Google APIs — Search Console performance, PageSpeed Insights (optional, per organization).
- DataForSEO, Serper, SpyFu, Glimpse, Jungle Scout, Prisync — Market and competitive intelligence APIs we query on your behalf for research data.
- Cloudflare Turnstile — Bot protection on public forms.
- Microsoft Clarity — Optional behavioral analytics you can enable on your funnels.
Each processor handles a defined slice of data only as required to deliver its function, and is bound by its own security and privacy commitments. We do not sell data to anyone, ever.
3. How we use your data
- To provide the Service: store, generate, schedule, publish.
- To enforce per-tier usage limits (quotas).
- To detect abuse and prevent attacks (rate limits, bot scoring).
- To send transactional notifications (billing, invitations, email-sequence delivery, security alerts).
- To improve the product. Aggregated, anonymized usage stats only — we do not look at your specific account contents to make product decisions.
4. AI and your data
When you use AI features, your prompts and the data needed to ground the output (brand kit, niche config, audience research) are sent to the relevant AI provider listed above. Outputs are stored in your organization's account.
We do not train models on your data. Per our commercial agreements with Anthropic, fal.ai, and ElevenLabs, your inputs and outputs are not used to train their models. Enterprise customers can plug in their own API keys (BYO) to keep AI traffic entirely on their own provider accounts.
5. Data retention
- Account + content: retained while your account is active. On deletion, we purge content and personal data within 30 days, except as required for legal, audit, or fraud-prevention purposes.
- Audit logs:retained for 7 years (immutable; we can't edit them) for compliance and security investigations.
- Backups: rolling 30-day daily snapshots of the database. Deleted data persists in backups for that window before rotation.
6. Your rights
Depending on where you live, you may have the right to access, correct, export, or delete your personal data; restrict or object to processing; and lodge a complaint with a supervisory authority. To exercise these rights, email support@campaignstudio.agency with the subject line “Privacy request”. We respond within 30 days.
7. International transfers
Campaign Studio is operated from the United States. By using the Service, you consent to your data being processed in the U.S. and any other country where our processors (listed above) operate. We rely on Standard Contractual Clauses with sub-processors handling data from the EU/UK.
8. Children
Campaign Studio is for businesses. The Service is not directed at children under 16, and we do not knowingly collect data from them.
9. Security
TLS for all traffic. Encryption at rest for the database and object storage. Service-role keys for backend services, never exposed to clients. Row-level security policies enforce tenant isolation in the database. Immutable audit log on every privileged write. Magic-byte validation + ClamAV scanning on uploads. Rate limiting on every public endpoint.
No platform is invincible. Report security issues to security@campaignstudio.agency.
10. Changes
We'll update this policy as the platform evolves. Material changes are emailed to active customers. The “Last updated” date at the top is the source of truth.
11. Contact
Email support@campaignstudio.agency for any privacy question.