Data Deletion Request

Last updated: September 1, 2026

Outcomesy OÜ (registry code 17093201, Sepapaja tn 6, 15551 Tallinn, Estonia) operates Outcomesy. This page is the documented deletion path for every category of data we hold, including advertising data retrieved from connected Google Ads and Meta advertising accounts.

1. What we hold

  • Account data: your email address and hashed login credentials, plus the brand workspace you created.
  • Store data: orders, revenue, product and margin records read from a connected Shopify store, or uploaded by you as a CSV export.
  • Advertising data: campaign, spend, impression, click and conversion metrics read from a connected Google Ads or Meta advertising account. These are aggregate performance figures for your own accounts.
  • Access credentials: platform access and refresh tokens, held encrypted in a dedicated secret store and never exposed to the browser.
  • Operational logs: timestamps and request metadata needed to run and secure the service.

We do not retrieve, store or process end-consumer personal data from your advertising accounts: no audiences, no customer lists, no contact details, no advertising identifiers.

2. How to have your data deleted

  • In the app, per platform (fastest, if you can sign in): open Settings → Data connections and choose Disconnect on the store or advertising account you want removed. Disconnecting revokes that platform’s grant and deletes its stored credentials from our secret store, so no further data can be read. Each platform is handled separately — disconnecting Google Ads never affects your Shopify store connection. As an alternative you can revoke Outcomesy from inside your Google, Meta or Shopify account; that also stops any further data being read.
  • In the app, your report data: open Settings → Danger zone and choose Clear report data. This deletes the campaign metrics, Action Cards, anomaly alerts, feedback and analysis held for your workspace. On a connected store, these figures are re-derived from the synced order history on the next sync, so clearing them is not the same as deleting that history.
  • Full account deletion, or if you are locked out: write to support@outcomesy.com from the address on the account, and state which platform, or that you want the whole account removed. There is no self-service account-deletion button in the product yet; this is the route for it today. We reply from the same address.

3. What happens when a request arrives

  • An emailed request is checked against the account it names before anything is deleted. That check exists so nobody can have someone else’s data deleted. We action requests within 30 days and in practice within a few working days.
  • The connection for that platform is marked revoked and its stored access and refresh tokens are deleted from the secret store, so no further data can be read.
  • Data retrieved through that platform is deleted, and scheduled refreshes for it stop.
  • Other platforms are untouched. A Google deletion request cannot affect a Shopify or Meta connection.
  • A full account deletion additionally removes the account, the brand workspace, its store data and its uploads.

4. Timelines

  • Immediate: revocation, credential deletion, and removal from live systems.
  • Within 30 days: purge from encrypted backups, which are rotated on a 30-day cycle.
  • Retained where the law requires it: billing and invoice records, kept for the statutory accounting period. These contain no store or advertising data.

5. Your rights

Under the GDPR you may request access, correction, deletion, restriction, portability, or object to processing. Write to support@outcomesy.com; we respond within one month. You may also lodge a complaint with the Estonian Data Protection Inspectorate (Andmekaitse Inspektsioon) or your local supervisory authority.

Full details of what we process and why are in our Privacy Policy.