Read-only by default
Advertising connections request reporting access rather than the ability to create, edit, pause or delete campaigns.
AdSpend Lens is designed around read-only permissions, encrypted credentials, strong tenant separation and clear disconnection and deletion processes.
Security is not a single feature. It covers permissions, credential handling, data separation, background jobs, auditing, deletion and honest warnings when the connection is no longer healthy.
Advertising connections request reporting access rather than the ability to create, edit, pause or delete campaigns.
OAuth access and refresh credentials are intended to be encrypted at rest and never exposed to the customer browser.
Every query and background job must be scoped to the correct customer, business and selected advertising account.
Dashboards use data stored in AdSpend Lens rather than calling Meta or Google whenever a filter changes.
Connection changes, sync runs, failures and important administrative actions are recorded.
Customers should be able to revoke access and request removal of stored advertising information through a defined process.
The customer approves the permitted advertising account access.
Tokens remain server-side and protected at rest.
Workers retrieve permitted reporting data on a schedule.
Stored data is served only to the correct customer and business.
A polished dashboard should never hide a broken permission, failed synchronisation or unavailable field. The customer needs to know whether the analysis reflects the latest account data.
Reconnect Google Ads before the next scheduled import.
AdSpend Lens is designed to remain read-only, transparent and removable whenever the customer decides to disconnect.