Security by design, control by you

Minimum permissions. Maximum transparency. Your data, your rules.

Our security principles

Built from the ground up with your security in mind.

We request only the permissions we need and give you full control over your data at every step.

Read-only by default

BidHelm starts in read-only mode. We can analyze your campaigns but can't change anything until you explicitly enable write access.

Minimum OAuth scopes

We only request the permissions we need — nothing more. No access to billing, payment methods, or personal data.

Complete audit trail

Every action logged with timestamps, reasoning, and before/after data. Export anytime for your records or compliance.

Revoke anytime

Your Google account, your control. Revoke BidHelm's access instantly from Google Account settings — no support needed.

OAuth scopes we use

Exactly what permissions we request and why.

Transparency is core to how we operate. Here are the exact scopes BidHelm requests from your Google account.

Campaign & ad group data

Read
View campaign structure, settings, budgets, and performance metrics. Required to analyze your account.

Keyword & search term reports

Read
Access keyword performance and search query data. Required to identify waste and optimization opportunities.

Campaign modifications

WriteOptional
Pause/enable keywords, adjust budgets, add negatives. Only enabled when you activate PRO autopilot mode.

Data handling

How we store and protect your information.

Your Google Ads data is handled with care. Here is exactly how we store, protect, and manage your information.

Encrypted storage

All data encrypted at rest and in transit. OAuth tokens stored securely with industry-standard encryption.

Data retention

Optimization logs kept for 180 days. Alex messages for 45 days. Delete your account and all data is removed.

Third-party services

We use DodoPayments for billing, PostHog for analytics, and Crisp for chat. None have access to your Google Ads data.

One-click revert

Every optimization can be reversed instantly. We keep history so you can undo any change Alex makes.

We never access

Billing information, payment methods, personal customer data, or any data outside of Google Ads campaign management.

Questions about security?

Alex can find and eliminate that waste automatically.