Privacy and personal data

The Privacy and your data page is the single place where you can see what the gas application keeps about you, download your data, switch optional consents on and off, and schedule the deletion of your user account. This article describes what you will find on the page, what data the application keeps and why, how to revoke at any time the access you granted to a social network or an advertising system, and where to turn with things that cannot be handled by a button in the application.

Where to find the page

  1. In the main menu of the application, open Settings.
  2. On the User profile card, click I want to set up.
  3. In the left column, select Privacy and your data. On a phone there is a drop-down menu above the content instead of the column.

Everything on this page concerns only your user account. Changes you make here do not affect other people working with the same customer account.

What the page offers

Optional consents

At the top there are three checkboxes. None of them is needed for the application to work, and you can switch each one off at any time. The change is saved immediately, there is no Save button here.

  • Error diagnostics linked to your account. When an error occurs in the application, a technical record about it is sent to an error tracking tool (Sentry). With this consent switched on, the record also contains your account ID, email and IP address, so we can contact you while solving it. Without the consent, only an anonymised record without these details is sent.
  • Session recording for error debugging. When an error occurs, a short recording of what you were doing in the application is saved: clicks, mouse movements and text you entered. Passwords never make it into the recording. It helps us reproduce and fix the problem.
  • Embedded content from social networks. This allows a preview loaded directly from the social network to appear on a post or video detail. The preview is downloaded from the servers of that network, and the network may store third-party cookies in the process, that is small files placed in your browser by someone other than us.

You can also grant consent for embedded content outside the settings. When it is not switched on, you will see a grey frame with a Show preview button instead of the preview. Clicking it grants the consent and the preview loads.

Every consent granted and withdrawn is written into the activity history, so you can see later when it happened.

Download all my data

The Download export button prepares a file with everything we keep about your user account and saves it to your computer. It is a file in JSON format, that is a text file you can open in an ordinary text editor. It is not a spreadsheet for Excel and it may not be nicely readable at first sight.

In the export you will find:

  • profile: name, login name, email, role and selected language,
  • preferences: alert, graph and table settings and the current state of your optional consents,
  • information on whether you have a Google, Meta or Apple account linked for logging in (yes or no only),
  • a list of customer accounts you have access to and your role in them,
  • a list of your logins and devices including the login time and IP address,
  • subscriptions to regular reports,
  • activity history, up to the last 1,000 records,
  • information about scheduled account deletion, if you have scheduled it,
  • and finally a list of what is deliberately not in the export, with an explanation why.

The export does not contain your password, because it is not stored in readable form but as an irreversible fingerprint from which the original password cannot be recovered. Nor does it contain the access keys to social networks and advertising systems. For anyone who got hold of such a file, it would be the key to your accounts on those networks.

Activity history

The Show history button opens a panel with the last 200 events relating to privacy. Each one shows the date, time and the IP address it was carried out from. Confirmation of the privacy policy, granting and withdrawing individual consents, downloading the data export, and scheduling and restoring account deletion are all recorded.

The overview of logins and devices is elsewhere, on the Active sessions page. It is described in the article Active sessions and devices.

Delete account

The Schedule deletion button starts the deletion of your user account with a delay. The procedure, the grace period and the screen for restoring the account are described in the article Account deletion and restoration.

Policy wording

At the very bottom there is the version of the privacy policy and its effective date, next to it the Show wording link. From the policy you can get to the list of processors, that is the companies and services involved in running the application, and to the history of policy changes.

What data gas keeps about you and why

The privacy policy lists four groups of data about you and one optional group:

  • Identification data: name, email and password stored as an irreversible fingerprint. Without them the account could not be created and you could not log in.
  • Operational data: IP address, device identification and login time. Thanks to them you can spot a login that is not yours and log out a device you no longer use.
  • Data about logging in through another service: if you log in through Google, Facebook or Apple, the identifier of your account at that service is stored so that the application knows it is you. gas never sees your password for that service.
  • Access keys to accounts at the networks: without them the application could not download statistics from Facebook, Instagram, Google, YouTube, TikTok, Pinterest or Sklik. They are never visible in the interface.
  • Diagnostics: only when you give consent to it.

The policy also states the legal basis for this processing: performance of the contract so that the application can work, legitimate interest in security, and your consent in the case of diagnostics. It also states the retention periods: profile data for as long as the account exists plus another 30 days for its restoration, records in the activity history 24 months, and logins 90 days from the last activity.

As for the browser, gas stores login cookies that keep you logged in and remember the trusted device choice, and local storage with interface preferences for faster loading. It does not set third-party advertising or analytics cookies without your consent. The length of a login session is described in the article Trusted device and login duration.

Your personal data and customer account data are not the same thing

This distinction is crucial and in practice it is often confused.

Personal data of a user account are data about you as a person: name, email, password, logins, consents and preferences. You manage them yourself on the Privacy and your data page and in your Profile, they are the content of the export, and they cease to exist when your user account is deleted.

Customer account data downloaded from the networks are the statistics and content of pages, profiles, channels and ad accounts: posts, videos, campaigns, reach, follower counts, spend. These are not data about you, but about the company or destination you manage. They belong to the customer account, everyone who has access to it can see them, and that is why they are not in the personal export. They are removed a different way: by unlinking the connection they come from.

A connection to a network is always tied to the person who granted the access. When that person leaves the company or cancels their user account, the connection stops working and someone else needs to reconnect it under their own login. The customer account data, however, do not cease to exist because of that.

How to revoke the access you granted to a network

Access can be revoked from two sides and both are fine. The difference is how quickly the application knows about the revocation.

Unlinking directly in the application

  1. Open Settings and on the Connected services card click I want to set up.
  2. Select the network, for example Meta, Google, TikTok, Pinterest or Sklik.
  3. In the table of connected accounts, click the red crossed-out chain icon labelled Unlink account next to the relevant account.
  4. Confirm the dialog with the Unlink account button.

If the account is used in regular reports, instead of the usual confirmation a dialog appears with a list of those reports and the option Remove the unlinked profiles from these reports as well.

Unlinking ends the downloading of data from that account. The connected profiles and ad accounts stop being displayed and their data are removed from the application within 30 days. If you connect the same account again within this period, the data come back including the history. Nothing is deleted on the servers of the network itself, your posts and campaigns stay there unchanged.

In the same way you can remove just one profile or one ad account instead of the whole connection. In the table the action is called Delete profile, or Delete account respectively, and the same 30-day period applies to it.

With Meta and Google, when unlinking, the application also revokes the granted access on the network's side. With the other networks it stops using the access, but the permission itself remains recorded with your account on that network. If you want to be sure, revoke the access in the settings of that network as well.

Revoking access in the network's settings

The access you granted to the gas application can be revoked at any time directly at the network, without going into the application. With Google this is done in the security settings of your Google account, in the overview of third-party apps, with Facebook and Instagram in the apps and websites settings, with TikTok and Pinterest in the security settings of the given account. The networks change the exact location from time to time, look for the section with apps you have allowed access to.

What happens next: gas notices the loss of access, either straight away or at the next data download. It marks the connection with the Paused label, stops downloading from it and sends you an alert with a specific date. If you do not reconnect the connection by that date, the related data are removed from the application. The period is roughly two weeks and the alert always states the specific date.

Reconnecting is a matter of logging in to the network again using the Reconnect button. It is described in detail in the article Network access has expired.

Your rights and how to ask for them

Four things you can handle yourself and immediately:

  • access to your data and its portability: the Download export button,
  • correction of data: the Profile page in the user profile settings,
  • deletion: the Schedule deletion button,
  • withdrawal of consent: unticking any of the optional consents.

For everything else, contact us through the contact form. That also applies when you are not sure which category your request belongs to, or when it concerns customer account data rather than your personal data.

So that the request can be handled without unnecessary questions, please state in it:

  • the email you use to log in to the application (ideally write from it directly),
  • the name of the customer account, if the request concerns the data of a particular company or destination,
  • what you need: deletion, correction, an explanation, a copy of the data,
  • for data from a network, also which network and which profile or ad account it concerns.

Common problems

The export did not download and a red message appeared

Preparing the file failed, typically because of a short connection outage. Wait a moment and click Download export again. If the message keeps appearing, write through the contact form.

I clicked Download export and nothing happened

The file is saved without any further question, so it is easy to miss. Look in your Downloads folder, the name starts with the word gas. Sometimes the download is blocked by the browser or by company settings on the computer, in which case a blocked download icon appears in the address bar and you need to allow it.

There is no Save button next to the consents

That is how it should be. The consent is saved the moment you tick or untick it. If it returns to its original state after you refresh the page, the change did not reach the server, usually because the connection was interrupted. Try making it again.

Instead of a post preview I see a grey frame

You do not have the consent for embedded content from social networks switched on. Click Show preview in the frame, or switch the consent on on the Privacy and your data page. Without it the previews do not load, because the social network would also know about your visit.

The previews do not print

Embedded previews from the networks do not transfer to print reliably. When a static image is available for the given post, that one is printed. If there is none, the whole frame with the preview is left out of the print. Without the consent granted, not even the static image makes it into the print.

A window with the privacy policy appeared after I logged in

Either you have never confirmed the policy yet, or we have issued a new version. On first confirmation you will see the full wording, you tick the box saying you have read it and click I agree to the policy. When the policy changes, you will only see a list of what has changed and the I agree and continue button. The window cannot be closed with the cross, because you cannot continue into the application without confirming.

I cannot see my logins in the activity history

The Activity history panel records steps relating to privacy: consents, policy confirmations, exports and account deletion. You will find the overview of logins and devices on the Active sessions page, where you can also log individual devices out. It is described in the article Active sessions and devices.

An event in the history shows an IP address I do not recognise

The IP address changes with the connection, it is different in the office, different on mobile data and different when working from home. So on its own it does not prove anything. If you still suspect that someone else has got into your account, log out all devices on the Active sessions page and change your password.

The activity history is empty

The message Nothing here yet means that no event relating to privacy has been recorded for your account so far. With a completely new account this is normal, and the first record will appear at the latest when you confirm the privacy policy or download an export.

The Schedule deletion button is grey and cannot be clicked

You already have account deletion scheduled. At the top of the page there is a red alert with the date on which the account is to be deleted and a Restore account button. Until you cancel the deletion, you cannot schedule a new one.

There are no statistics from Facebook or Google in the export

The export contains the personal data of your user account, not customer account data. The statistics of pages, profiles and ad accounts belong to the customer account and are available to everyone who has access to it. When you need a copy or deletion of them, write through the contact form and state which customer account and which profiles are concerned.

I unlinked a network account by mistake

Nothing is lost if you act quickly. Connect the same account again on the page of the given network in Connected services. If you manage it within 30 days of unlinking, the historical data will come back too. After this period the data are removed from the application and new history starts being downloaded from scratch, to the extent the network provides retrospectively.

I want the data of the whole company deleted, not just my account

Deleting a user account concerns only you, the customer account and its data continue to exist. Unlinking a connection removes the data from a particular network. If you need to remove the whole customer account including the data, write through the contact form from the email you use to log in and state the name of the customer account.

I do not know who to write to and how to prove who I am

Send all requests relating to personal data through the contact form. If possible, write from the email you use to log in to the application, that way the request can be reliably matched to your account.