1. Who is responsible

Silent Roar Solutions AB (org. no. 559466-6165, Körsbärsvägen 12, 114 23 Stockholm, Sweden) provides OdinOS. We are the data controller for personal data we collect through this website and from our own business contacts.

When a business uses OdinOS, that business is the data controller for the data it puts into the service, and Silent Roar Solutions AB processes that data on its behalf as a data processor, under a data processing agreement.

2. This website

This website does not use cookies or analytics. Our hosting provider keeps standard server logs (IP address, browser type, time of request) for security and operations, and deletes them after a short period.

3. Data processed in OdinOS

When a business connects its Meta or Google advertising account to OdinOS, we process:

  • account and ad account identifiers, and the access tokens that Meta or Google issue for the connection;
  • the audience lists the business chooses to send, such as its own customers' email addresses and phone numbers, which are hashed (SHA-256) before they are sent to Meta or Google;
  • names and email addresses of the people at the business who use OdinOS.

We use this data only to provide the service the business has asked for: creating and updating its own audiences on the advertising platforms it has connected. We do not sell it, we do not use it for our own advertising, and we do not combine it across customers.

4. Google user data

OdinOS's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

5. Who we share data with

We share data only with Meta and Google when the business instructs us to, and with the subprocessors we use to run the service, such as hosting providers. All are bound by data processing agreements. If data is transferred outside the EU/EEA, we rely on appropriate safeguards such as the EU Standard Contractual Clauses.

6. How long we keep data

Access tokens are deleted when a business disconnects an account. Audience data is kept only as long as needed to run the sync, and is deleted when the customer agreement ends or when the business asks us to delete it. See Data Deletion.

7. Your rights

Under the GDPR you can ask for access to, correction of, or deletion of your personal data, object to or restrict processing, and ask for data portability. If your data was sent to us by a business using OdinOS, we will pass your request on to that business. Contact us at contact@silentroar.se. You can also complain to the Swedish Authority for Privacy Protection (IMY), imy.se.

8. Changes

We may update this policy. The date at the top shows when it last changed.