Privacy notice
Effective 24 August 2026.
Meridic provides competitor-ad observation and analysis. Contact: privacy@meridic.com.
Data we process
Account email and user ID; workspace membership and settings; saved ads, API-key hashes and audit events; usage and provider-cost records; digest recipient and delivery records; and competitor names or URLs you submit. We do not intentionally store IP addresses or user-agent strings and do not load advertising trackers.
Why and how long
We process account and workspace data to provide the service, secure access, enforce quotas, deliver requested email and support billing. Expired search offers are purged daily; revoked API keys after 90 days; digest delivery records after 12 months; attributable usage and audit records after 24 months. Core public-ad observation history remains while a workspace uses the service because it is the evidence the product provides.
Processors
Supabase hosts authentication, database and media; Railway and Vercel run the service; Resend delivers requested email; Polar acts as merchant of record for payment; OpenRouter processes ad text for requested analysis; Apify, Meta and ScrapeCreators receive advertiser/page queries needed to retrieve public-ad data.
Your choices and rights
You can disable or unsubscribe from digests, export workspace data, and delete your account from the product. Depending on where you live, you may also request access, correction, restriction or objection by emailing us. Payment records held by Polar may be retained to meet tax and accounting law.
International processing and security
Processors may handle data outside your country under their applicable safeguards. We use tenant-scoped database policies, hashed API keys and signed unsubscribe links. No internet service can guarantee absolute security.
Changes
Material changes will be dated here. Continued use after a change takes effect means the service is provided under the updated notice.