Privacy Policy
Effective date: September 5, 2026
This policy explains what information Buykori AdSync handles when you use our website, tracking tools, order operations, courier connections or advertising integrations.
1. Who we are
Buykori AdSync is a software service for WooCommerce tracking, order operations, courier workflows and connected advertising tools. In this policy, "Buykori," "we," "us" and "our" mean Buykori AdSync. Our public website is buykori.app.
Questions about privacy or a data request can be sent to support@buykori.app.
2. Information we collect
Account and contact information
We may collect your name, email address, phone number, business name, store domain, account credentials and support correspondence when you create or manage a workspace.
Store, event and order information
When a store is connected, the service may receive website events, order details, product and delivery information, event timestamps, attribution identifiers and operational notes. The information depends on the configuration chosen by the workspace owner and the events sent by the store.
Connected platform information
If you connect Meta, TikTok, Google Analytics, WooCommerce or a courier provider, we receive the account, page, campaign, pixel, store or delivery identifiers needed to provide the requested integration. We may also receive performance data and permission status from that provider.
Technical and usage information
We collect security logs, request metadata, device or browser information, approximate location derived from network data, error reports and service usage records. We use this information to operate, secure and improve the service.
3. How we use information
- Provide dashboards, tracking, order management, courier and reporting features.
- Authenticate users, protect workspaces and prevent abuse or fraud.
- Deliver events and other requested data to the third-party platforms selected by the workspace owner.
- Provide support, troubleshoot failures, measure reliability and improve the service.
- Process subscriptions, usage limits, invoices and other account administration.
- Meet legal, security, audit and dispute-resolution obligations.
We do not sell personal information. We do not use your data to build a general advertising audience for unrelated businesses.
4. AI Ads and connected advertising accounts
AI Ads features may analyze a product page, uploaded creative, campaign history and instructions supplied by the workspace owner to prepare recommendations or proposals. The assistant does not receive provider access tokens, app secrets, encryption keys, database credentials or session secrets.
Provider changes are not made merely because an AI model suggests them. A connected account, policy checks, an exact proposal, required confirmation and the server action worker are required before an approved provider action can run. New campaigns, ad sets and ads are created paused or disabled when the provider supports that state.
When Meta is connected, permissions such as ads_read, ads_management, business_management and page permissions may be used only to discover the authorized account, read performance or create an action that the workspace has approved. You can disconnect the account from Buykori or remove Buykori from your Meta settings.
5. When we share information
We share information only as needed to provide the service:
- With advertising, analytics, commerce and courier providers selected by you.
- With infrastructure, hosting, email, security and support vendors that process information for us under appropriate controls.
- When required by law, legal process or a valid safety request.
- As part of a business transfer, subject to the protections required for the information involved.
Provider terms and privacy policies apply to data that is sent to those providers. We do not control how an external provider handles information after it leaves Buykori.
6. Security and retention
We use access controls, tenant isolation, encrypted credential storage, scoped provider access, audit records and operational monitoring to protect information. No internet service can guarantee absolute security.
We retain information for as long as needed to provide the service, comply with legal and accounting duties, resolve disputes, prevent abuse and preserve security or audit history. Provider credentials are removed or made unusable when a connection is disconnected or revoked. Some audit, billing and security records may remain for the period required for those purposes.
7. Your choices and rights
You may review or update account information, disconnect an integration, request an export or ask us to delete personal information. Requests may require identity and workspace verification. See Data Deletion for the request process.
You can also manage cookies and similar browser storage through your browser settings. Disabling required storage may prevent sign-in or security features from working.
8. Children and international processing
Buykori AdSync is intended for business users and is not directed to children. We may process information in countries where our service providers operate. We use contractual, technical and organizational safeguards appropriate to the transfer.
9. Changes and contact
We may update this policy when the service or legal requirements change. The effective date above shows when the current version took effect. Material changes will be communicated through the service or the account contact where appropriate.
For privacy questions or requests, contact support@buykori.app.
Buykori AdSync