Last updated: March 12, 2026
Summary: Photon Ads does not use tracking cookies, does not fingerprint users, does not sell data and does not share personal information with third parties for advertising purposes. Data is processed in the European Union.
Photon Ads is operated by Horizontestrutural, Lda. (NIF: 519288165), based in Portugal. For privacy matters, contact us at info@photonads.com.
When you create a Photon Ads account, we collect: name and contact email, company or site name, site domain(s), billing data (processed via Stripe).
When you use the backoffice or advertiser portal, we log: actions taken (audit log), IP address and user agent (for security), login timestamps.
When an ad is served on a site using the Photon Ads SDK, we collect minimal, anonymized data: impressions and clicks (aggregate counts), viewability (whether the ad was visible), anonymous session (no personal identification).
What we do NOT collect from visitors: names, emails, precise locations, browsing history, device data for fingerprinting, or any information that could individually identify a visitor.
| Data | Purpose | Legal basis (GDPR) |
|---|---|---|
| Email and name | Account management, service communications | Contract performance |
| Billing data | Payment processing via Stripe | Contract performance |
| Impressions/clicks | Performance reports, CPM calculation | Legitimate interest |
| IP and user agent | Security, fraud prevention | Legitimate interest |
We do not sell or share personal data for advertising purposes. Data is shared only with: Stripe (payment processing), Cloudflare (CDN and edge computing), Neon (PostgreSQL, EU), Upstash (Redis, EU).
All data is stored and processed in the European Union. We do not transfer data outside the EU/EEA.
Account data: while active + 30 days. Ad serving data: aggregated, 12 months. Audit logs: 12 months. Billing data: as required by Portuguese law (10 years).
Under GDPR, you have the right to: access, rectification, erasure, portability, objection, and restriction. Contact info@photonads.com to exercise any right. We respond within 30 days.
We protect data with: TLS/HTTPS encryption, encrypted databases, two-factor authentication (TOTP), bcrypt password hashing, rate limiting and DDoS protection via Cloudflare, audit logging.
You may also file a complaint with the Portuguese Data Protection Authority (CNPD) — www.cnpd.pt.