Skip to content

How Datok handles connected marketing data.

Datok reads reporting data from platforms a customer explicitly authorizes, for the purpose of producing that customer’s own marketing reporting. This page explains that in plain terms, without the implementation detail that would itself be a security risk to publish.

01 · Practices

Seven commitments,
each one checkable inside the product.

See every connector

Authorization happens on the provider’s own screen

Every connected platform is authorized through that provider’s official authorization mechanism. Datok never asks a customer for their Google password or any other platform password, and never stores one.

Reporting-only by design

Datok uses authorized platform connections for reporting and analytics. It does not create, edit, pause, or delete campaigns, budgets, bids, properties, or other managed objects through its integrations.

Only accounts the user already has access to

After authorization, Datok can list only the accounts the authenticated user is already permitted to access at the provider. The customer then chooses which of those Datok should read.

Credentials are encrypted at rest

Authorization tokens and API keys are encrypted before storage and are never displayed back in the interface, exported, or included in reports.

Data is scoped to the customer’s organization

Imported data belongs to the organization that connected it. It is never pooled across customers, and access inside an organization is governed by roles — viewing connected data and managing connections are separate permissions.

Every sync is recorded

Each retrieval records what ran, when, over which date range, and whether it succeeded. Administrators can see connection status and sync history inside the product.

Customers can disconnect at any time

An administrator can revoke any connection from inside Datok, which stops all further access to that platform. Access can also be revoked directly at the provider. Reporting already imported is retained so historical reporting survives, and can be deleted on request.

Google API Services User Data Policy.

Datok’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

  • Data retrieved from Google APIs is used only to provide and improve the user-facing reporting features described on this site.
  • Datok does not sell Google user data.
  • Datok does not use Google user data for advertising, ad targeting, or retargeting.
  • Datok does not use Google user data for creditworthiness or lending purposes.
  • Datok does not allow humans to read Google user data except with the customer’s explicit permission, for security purposes, to comply with applicable law, or where the data is aggregated and used for internal operations in line with these requirements.

Read the policy at developers.google.com/terms/api-services-user-data-policy.

What Datok stores.

Datok retains the reporting data it retrieves so that historical trends and period comparisons remain available.

For each authorized account, Datok stores the reporting records it retrieved, a normalized version of those records used for reporting, and the operational history of each sync. It stores the account identifiers and names needed to attribute data to the right account, and the encrypted authorization credential needed to refresh access.

Datok does not request or store the personal data of a customer’s own end users from advertising platforms. The reporting Datok reads is aggregated performance data — spend, impressions, clicks, sessions, conversions, and similar measures.

Disconnecting a source stops all further access to it immediately. Reporting data already imported is retained by default, so the organization’s historical reporting does not disappear from under it. An organization can request deletion of that retained data at any time by contacting us. Full detail is in the Privacy Policy.

Exactly which Google Ads data Datok requests

Questions about security.

Security questions, data-handling questions, and deletion requests all reach the same place: info@datok.com.