Holarka
Codex Ads by Holarka

Privacy Policy

This policy explains what information Codex Ads by Holarka may process, why, how long it is kept, and how a customer can control or delete it.

Last updated: August 8, 2026
01

Identity and scope

Holarka is a brand operated by Alexander Oubiña Meneses. This policy applies to Codex Ads by Holarka, its Meta integration, and the public website and support channels at holarka.com.

Holarka acts as a service provider processing business advertising data on the customer's authorization and instructions.

02

Data that may be processed

  • Basic Meta identity data needed for authentication, such as user ID, name, and public profile information.
  • Authorized business assets: business portfolios, Pages, linked Instagram professional accounts, ad-account identifiers, and catalogs only if explicitly enabled.
  • Advertising objects: campaigns, ad sets, ads, creatives, configuration, status, budgets, targeting settings, and related metadata.
  • Performance and reporting information: spend, delivery, impressions, reach, clicks, conversions, attribution results, and other insights returned by Meta.
  • Technical and security records needed to operate, troubleshoot, and audit the integration.
  • Access tokens or authorization credentials supplied through Meta's official authentication mechanisms. Facebook passwords are never collected.
03

Purposes

  • Authenticate authorized users and identify the assets they may access.
  • Retrieve and analyze the advertising data requested by the customer.
  • Produce the reports, recommendations, and historical datasets the customer requests.
  • Create or modify advertising objects only in response to authorized instructions.
  • Provide support, protect the service, investigate errors, and maintain appropriate audit records.
  • Comply with law, contracts, and the Meta Platform Terms.
04

Legal and contractual basis

Holarka processes business advertising data under the customer's authorization and instructions, for performance of the requested service, on legitimate operational and security interests, on consent where applicable, and to meet legal obligations.

05

AI processing and service providers

Authorized AI and infrastructure providers may process limited information solely to execute customer instructions and operate the service. Relevant providers may include Meta Platforms, OpenAI/Codex when chosen by the customer, and Hostinger for website and email infrastructure.

Providers receive only the information necessary for their function and remain subject to the applicable contractual or platform obligations.

06

Sharing and sale

Holarka does not sell Meta Platform Data, does not use it for advertising unrelated to the customer, and does not disclose it to unauthorized third parties. Information may be disclosed only to authorized processors, to the customer, to Meta, or to authorities when legally required.

07

Retention

  • Credentials are retained only while the connection is active or until revoked.
  • Task outputs and historical exports are retained only as needed for the requested service or the customer agreement.
  • Verified deletion requests are completed within 30 days unless law requires longer retention.
  • Protected backups expire on their normal lifecycle.
08

Security

Access is controlled and granted on a least-privilege basis. Credentials are stored protected, excluded from logs, and revoked when access ends. Traffic is encrypted in transit over HTTPS, operational access is restricted, and material advertising changes require human approval.

Holarka does not claim any security certification it does not hold.

09

Choices and rights

Depending on applicable law, a customer may request access, correction, export, and objection or restriction of processing. Access can be revoked at any time in Meta Business Integrations or the relevant authorized-business connection.

Deletion can be requested at privacy@holarka.com or through the Data Deletion page.

10

International processing, children, changes, and contact

Business data may be processed where authorized providers operate. The service is not directed to children. Material changes to this policy will be posted on this page with a new effective date. Privacy questions go to privacy@holarka.com.