Mach

Privacy notice

Last updated September 27, 2026

This notice explains what Mach collects, why, who else handles it, and how to have it deleted.

What we collect

  • Your account: name, email, password (stored hashed by our sign-in provider), your beta application and welcome-survey answers.
  • What you add: brands, products, research, personas, strategies, briefs, boards, and files you upload.
  • From Meta, when you connect it: your ad accounts' names, and each ad's results (spend, impressions, clicks, purchases, video views) and creative (text, headline, image or video). Mach only reads; it never creates, edits or publishes ads or posts.
  • Waitlist: your email, the role you picked, and a scrambled version of your connection's address (to stop spam sign-ups). Every email we send has an unsubscribe link.
  • Usage: which features you use and when (for example "added a brand", "made a brief"), and error reports, to see what works and fix what doesn't.

Why

  • To run Mach for you: show your results, keep your work, and let your Claude work with it.
  • To run the beta: decide who joins, understand how different kinds of users use Mach, and improve it.
  • To keep Mach secure and fix problems.

We don't sell your data, and we don't use your ad data to advertise to you or anyone else.

Who else handles it

  • Supabase (database, sign-in, file storage) and Vercel (hosting) store and serve Mach.
  • Meta, when you connect your ad accounts: Mach reads from Meta with the access you grant.
  • Resend sends our emails (sign-up confirmations, invites, waitlist updates).
  • Vercel Analytics counts page visits without cookies and without identifying you.
  • Anthropic (Claude), when you connect your own Claude: Claude reads what it needs from your workspace through Mach's connector.

Who can see your workspace

Only the people in your workspace. Mach's owner can see account-level information (plan, usage, survey answers) to run the beta, and opens your workspace's content only to fix a problem you reported.

How long we keep it

While your account exists. When the beta ends, nothing is deleted automatically. When you ask us to delete your account, we delete your workspace and its data within 30 days (backups roll over within a further 30 days).

Your choices

  • Disconnect Meta at any time (Dashboard → Manage → Disconnect), and remove Mach in your Facebook settings under Business Integrations.
  • Ask for a copy of your data, a correction, or deletion: see Delete your data.

Contact

carlo@machads.com