zapIQ Back to home

Last updated: 23 July 2026

Privacy Policy

This policy explains how ZAP PRIVATE LIMITED, operating the zapIQ platform, handles personal data when businesses use our website, services, and authorized advertising-platform connections.

1. Who we are

ZAP PRIVATE LIMITED (“zapIQ”, “we”, “us”, or “our”) is an Indian enterprise software company. Our registered office is No. 10, 8th B Cross Road, HAL III Stage, Jeevanbhimanagar, Bengaluru, Karnataka 560075, India. Our Corporate Identity Number is U69200KA2026PTC219594.

Questions and requests may be sent to contact@zapiq.in.

2. Scope and our role

This policy applies to our public website and the zapIQ business platform. For account administration, website analytics, security, support, and billing, we determine why and how relevant data is processed. When we process audience or advertising data for an enterprise customer, we generally act on that customer's documented instructions and the applicable agreement.

Customers remain responsible for their own privacy notices, permissions, consents, and lawful use of data they provide to zapIQ or direct us to process.

3. Information we process

Information provided directly

  • Professional contact details such as name, work email, phone number, job title, and organization.
  • Account, workspace, role, support, commercial, and communication information.
  • Customer datasets and audience identifiers provided or authorized for matching and activation.

Website and service-use information

  • IP address, browser and device characteristics, referring pages, pages viewed, timestamps, and interaction events.
  • Authentication, access, security, diagnostic, and audit records.

OAuth and advertising-platform information

  • OAuth tokens, granted scopes, token status, connection timestamps, and revocation status.
  • Provider user, business, advertising account, asset, audience, and upload-job identifiers.
  • Audience delivery receipts, accepted or rejected counts, match-rate ranges, and synchronization status.
  • Historical and ongoing reporting data such as impressions, reach, clicks, spend, frequency, conversions, attribution settings, and campaign, ad set, or ad identifiers and names.

4. Audience identifiers

zapIQ may receive customer-authorized identifiers, including phone numbers, to prepare an audience. Raw identifiers are kept within protected zapIQ processing boundaries and are not sent to advertising providers. We normalize and cryptographically hash eligible identifiers before transmitting them to a customer-authorized Google Ads or Meta Ads account for audience matching and activation.

Hashed identifiers can still be sensitive. We protect them, limit their use to the customer's requested audience workflow, and retain them only for as long as needed for that workflow, applicable agreements, and legal obligations.

5. Why we use information

  • Provide, operate, secure, and support zapIQ.
  • Authenticate users and manage enterprise workspaces and permissions.
  • Connect customer-authorized Google Ads and Meta Ads accounts.
  • Create, upload, refresh, suppress, measure, and remove customer-requested audiences.
  • Read advertising results for customer-visible outcome measurement, reporting, reconciliation, and agreed billing evidence.
  • Investigate errors, prevent abuse, maintain audit records, and comply with law.
  • Improve our website and services using aggregated operational and usage information.

6. Google API data

zapIQ's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including its Limited Use requirements.

Google data is accessed only for customer-authorized account discovery, audience management, delivery verification, and advertising outcome reporting. We do not sell Google user data or use it for advertising unrelated to the connected customer's requested zapIQ service.

7. When we share information

We disclose information only as needed to provide the service, follow a customer's instructions, protect zapIQ, or comply with law. Recipients may include:

  • Google and Meta when a customer authorizes the corresponding connection and audience or reporting action.
  • Infrastructure, hosting, secrets-management, authentication, communications, analytics, security, and support providers acting for us under appropriate obligations.
  • Professional advisers, auditors, insurers, regulators, courts, or law-enforcement authorities where necessary or legally required.
  • A successor in a merger, financing, reorganization, or sale, subject to appropriate confidentiality and data-protection measures.

We do not sell personal data.

8. Hosting and provider processing

zapIQ-managed primary application data and infrastructure are hosted in India. When a customer directs zapIQ to connect with Google or Meta, the hashed identifiers, account information, and reporting data exchanged with that provider may be processed through the provider's infrastructure and under its terms and privacy practices.

9. Security

We use administrative, technical, and organizational safeguards appropriate to the information, including access controls, tenant separation, encryption in transit, protected secret storage, restricted processing boundaries, logging, and review of provider actions. No system is completely secure, and we cannot guarantee absolute security.

10. Retention and disconnecting providers

We retain information only while needed for the purposes described here, the customer's service term, security and dispute handling, and contractual or legal obligations. Retention may vary by data category and customer agreement.

When an authorized customer disconnects Google Ads or Meta Ads, zapIQ stops future reads and uploads, revokes or removes stored provider credentials, and suspends, closes, removes, or strips uploaded members from zapIQ-created audiences as supported by the provider. We delete related personal data when it is no longer required, while retaining limited billing, security, legal, and audit evidence where required.

Residual copies in protected backups are isolated from ordinary use and removed through normal backup-lifecycle processes.

11. Your choices and rights

Subject to applicable law and our role in the processing, an individual may request access to, correction of, or erasure of personal data; withdraw consent; raise a grievance; or ask how information has been used or shared. An enterprise user may also disconnect an advertising provider through zapIQ.

Email contact@zapiq.in from your work address. We may verify your identity, authority, organization, and relevant account before acting. If we process data only for a customer, we may direct the request to that customer.

See our Data Deletion instructions for the request process.

12. Analytics and cookies

Our website uses Google Analytics to understand aggregate traffic and page interactions. Google Analytics may process device, browser, referral, page-view, interaction, and approximate-location information using cookies or similar technologies. You can restrict cookies through your browser settings. Blocking analytics cookies does not prevent access to our public legal pages.

13. Children

zapIQ is a business service intended for authorized enterprise representatives, not children. We do not knowingly offer the service to or collect personal data directly from anyone under 18.

14. Changes to this policy

We may update this policy when our services, providers, or legal obligations change. We will publish the revised version here and update the date above. Material changes may also be communicated through the service or to the customer's designated contact.

15. Contact

ZAP PRIVATE LIMITED
No. 10, 8th B Cross Road
HAL III Stage, Jeevanbhimanagar
Bengaluru, Karnataka 560075, India

Email: contact@zapiq.in

© 2026 ZAP PRIVATE LIMITED · zapIQ

Contact Security Privacy Policy Terms of Service Data Deletion