Mucers

Privacy Policy

Last updated: September 7, 2026

Scope

This policy explains how Mucers handles data used in advertising operations, including Google Ads API data, OAuth authorization state, Amazon Attribution references, and Amazon product (ASIN) operating data. It applies to the Mucers operator console and this public website.

Data we process

Credential handling

Developer tokens, OAuth client secrets, refresh tokens, access tokens, and other secrets are stored only in AWS Secrets Manager or an equivalent encrypted store. Secrets are never written to logs, CSV exports, web pages, or support messages. The operator console shows only masked credential status (present / missing / expired).

Mucers staff will never ask you to send a developer token, client secret, or refresh token by email or chat.

How data is used

Mucers uses authorized data to prepare keyword planning, read-only reporting, attribution recalculation, profit analysis, report synchronization, and validate-only request preparation. Data is not sold, not shared with third parties for marketing, and not used to train models outside your account scope.

Google Ads Data Manager API

Mucers G2A uses the Google Ads Data Manager API (https://www.googleapis.com/auth/datamanager) for a single purpose: uploading offline conversion events (click conversions keyed by Google Click ID, a.k.a. gclid) to the advertiser's own Google Ads account (customer ID 563-937-3300), so that ad clicks can be matched with the resulting Amazon orders for measurement.

Retention and deletion

Operational artifacts are retained only as long as needed for account operations and audit. You may request deletion of stored data and revocation of OAuth authorization at any time via vip@mucers.com. Deleting authorization immediately stops all Google Ads API access; queued plans remain in a paused, non-executable state.

Security

Mucers separates public website pages from operator console workflows. Raw secrets never reach the browser. Access to production data requires authenticated operator sessions, and all account-changing actions require manual approval with an audit trail.

Data Protection Mechanisms for Sensitive Data

1. Encryption.

2. Access control.

3. Data minimization and use limitation.

4. Retention and deletion.

5. Incident response.

6. Sub-processors.

Contact

For privacy, API access, or data deletion requests, contact vip@mucers.com. See also our Google Ads API Use disclosure and Terms of Service.