Google Ads
We can read
- Campaign names, status, spend, and impressions
- Clicks, CTR, conversions, CPA, and ROAS
- Ad group and keyword-level performance
- Budget pacing (spend vs. monthly budget)
- 7-day rolling metrics for week-over-week comparison
We cannot
- Run, pause, or modify any campaign
- Change bids, budgets, or targeting
- Access billing or payment information
- Create or delete any asset in your account
- Make any write operation of any kind
GoogleAdsService.SearchStream using GAQL.Meta Ads
We can
- Read campaign spend, reach, and impressions
- Read clicks, CTR, conversions, and ROAS
- Read ad set and creative performance
- View audience insights for reporting
We cannot
- Edit, pause, or launch any campaign
- Change budgets, bids, or audiences
- Access your Facebook Page or Instagram account
- View billing details or payment methods
Klaviyo
We can
- Read campaign send stats (opens, clicks, revenue)
- Read list growth and unsubscribe rates
- Read flow performance metrics
- Read aggregate audience metrics
We cannot
- Send, schedule, or edit any email
- Add, remove, or export contacts
- Access or change your account settings
- View individual subscriber profiles or PII
Mailchimp
We can
- Read campaign send reports (opens, clicks)
- Read list/audience size and growth
- Read unsubscribe and bounce statistics
- Read e-commerce revenue per campaign
We cannot
- Send or edit any email campaign
- Add, remove, or export subscribers
- Modify automations or templates
- Access billing or account settings
Can you see my clients' personal data or contact lists?
No. We only access performance metrics: aggregate numbers like open rates, click counts, and campaign spend. We do not read, download, or store individual subscriber profiles or any personally identifiable information (PII).
What happens if I want to revoke access?
For Google Ads and Meta, you remove us from your account inside their respective admin panels. It takes under 30 seconds and is entirely in your control. For Klaviyo and Mailchimp, you revoke the OAuth app from your account settings. Access is immediately terminated.
Where is my data stored?
Report data is stored on Railway (US infrastructure) and is used only to generate your weekly report. We do not sell, share, or license your data. See our Privacy Policy for full details.
Is my connection secure?
All connections use HTTPS/TLS encryption in transit. OAuth tokens and API credentials are stored encrypted at rest. We request only the minimum permissions needed to generate your report.
Do you share access with third parties?
No. Your data is accessed only by NarrateIQ's automated reporting pipeline and Claude (Anthropic's AI) to generate the written narrative. Anthropic's API does not train on your data. No other third parties receive your information.
Ready to get started?
Fill out the onboarding form and your first report runs automatically the following Monday.
Start Onboarding Have a question?