Privacy Policy
Last updated: 4/20/2026
This Privacy Policy explains how Meet Arlo, Inc ("Arlo," "we," "us," or "our") collects, uses, stores, and shares information about you when you use our website meetarlo.ai and any related products, services, or applications (together, the "Services").
By using the Services, you agree to the collection and use of information in accordance with this Privacy Policy.
1. Who we are and how to contact us
Controller:
Meet Arlo, Inc
400 East 57th St
New York, NY 10022
Email: privacy@meetarlo.ai
If you have questions about this Privacy Policy or our data practices, contact us at the email above.
2. Information we collect
We collect the following types of information:
2.1 Information you provide directly
- Account information
Name, email address, password, company name, role, and any other information you provide when creating an account or joining the waitlist. - Billing information
If you upgrade to a paid plan, our payment processor collects payment details such as card number, billing address, and tax information. We do not store full payment card numbers on our servers. - Customer communications
Messages you send to us by email, support chat, or other channels, including feedback, questions, or survey responses. - Content you submit
Any text, configuration details, or other information you provide when using the Services, including prompts, settings, and uploaded files.
2.2 Information we collect automatically
- Usage data
Pages viewed, clicks, time on page, features used, referring URLs, error logs, performance data, and other interaction details. - Device and technical data
IP address, browser type and version, operating system, device identifiers, language settings, and approximate location (city or region). - Cookies and similar technologies
We use cookies and similar tools to remember your preferences, keep you logged in, and understand how you use the Services. See "Cookies and tracking technologies" below.
2.3 Data from integrations and third party platforms
If you connect Arlo to third party platforms, we may access and process information from those services, such as:
- Ecommerce platforms (such as Shopify)
Store data including customers, orders, products, inventory, and reporting/analytics data, depending on the permissions you grant. - Advertising platforms (such as Meta Ads, Google Ads)
Campaigns, ad sets, creatives, spend, impressions, clicks, conversions, and performance metrics. - Analytics tools (such as Google Analytics)
Traffic, sessions, conversion events, and other analytics metrics.
The specific data we access depends on the permissions you grant when you connect each integration. You can disconnect integrations at any time within the relevant platform or in the Arlo settings.
3. How we use your information
We use the information we collect to:
- Provide and maintain the Services
- Create and manage your account
- Authenticate you when you log in
- Connect to and sync with your third party platforms
- Generate reports, summaries, and insights
- Analyze performance and generate insights
- Process your store and marketing data to identify trends and changes
- Produce daily, weekly, and monthly briefings
- Suggest potential actions and opportunities
- Communicate with you
- Send service messages, onboarding content, and product updates
- Respond to your questions and support requests
- Send transactional emails (for example, billing or security notifications)
- Improve and develop the Services
- Monitor usage patterns and performance
- Debug issues and enhance reliability
- Test new features, models, and improvements
- Security, compliance, and protection
- Detect and prevent fraud, abuse, or security incidents
- Enforce our Terms of Service
- Comply with legal obligations
- Marketing and growth (where permitted)
- Send newsletters and marketing communications
- Run campaigns and measure their effectiveness
You can opt out of marketing emails at any time by using the unsubscribe link in the email or contacting us.
4. Shopify API access scopes we request
If you connect a Shopify store, we request only the minimum scopes needed to provide the Services. Shopify apps must request specific access scopes during authorization.
We currently request the following Shopify Admin API scopes:
- read_customers
Allows us to read customer records so we can compute customer insights and segmentation (for example, new vs returning behavior, repeat rate, cohort metrics). - read_inventory
Allows us to read inventory levels/items so we can incorporate inventory context into reporting (for example, in-stock vs out-of-stock impacts). - read_orders
Allows us to read order data so we can compute revenue, conversion performance, and order-based trends. - read_products
Allows us to read products/variants/collections so we can attribute performance to product catalog structure and product-level changes. - read_reports
Allows us to read analytics and reporting data available via Shopify's reporting/analytics interfaces (including access via ShopifyQL where applicable).
You can revoke these permissions at any time by uninstalling the app or disconnecting the integration.
5. Meta (Facebook) Ads data
If you connect Arlo to Meta (Facebook) Ads, we handle your Meta advertising data as described below. This section applies to data accessed via the Meta Marketing API and related Meta platform APIs.
5.1 What we collect
- Ad account performance metrics
Campaign, ad set, and ad-level data from your connected Meta ad accounts, including spend, impressions, reach, clicks, CTR, CPC, CPM, conversions, ROAS, and other standard performance metrics exposed by the Meta Marketing API. - Account structure and creative metadata
Campaign names, ad set targeting summaries, creative asset references, and delivery status — used to attribute performance to the correct campaign structure inside Arlo. - OAuth and identifier data required to connect
Your Facebook user id, the Meta ad account id(s) you authorize, Business Manager id (where applicable), and the OAuth access token Meta issues to Arlo. We store the minimum identifiers needed to maintain the connection and call the Meta Marketing API on your behalf.
5.2 How we use it
- To generate marketing performance reporting, summaries, trends, and insights inside Arlo for the Meta ad accounts you connect.
- To combine Meta performance with your other connected platforms (for example, Shopify order data) so we can compute cross-platform metrics such as blended ROAS.
- To debug, monitor, and improve the reliability of the Meta integration.
We do not sell Meta advertising data, and we do not use it to retarget or advertise to your customers on behalf of third parties. Meta data is used to power the reporting and insights you see in Arlo.
5.3 Retention
Meta data is retained under the same retention approach described in Section 7 (Data retention): it is kept for the duration of your active Arlo account and the connected integration. If you disconnect the Meta integration or close your Arlo account, Meta-derived data tied to your account is deleted or de-identified on the timelines described in Section 7 (including the backup-retention tail).
5.4 Deletion
You can remove your Meta data at any time by any of the following methods:
- Disconnect inside Arlo: open Arlo Settings and disconnect the Meta integration. This revokes Arlo's ability to continue calling the Meta Marketing API and triggers deletion of the associated Meta data under Section 7.
- Email us: write to privacy@meetarlo.ai and request deletion of your Meta data. We will process the request as described in Section 8 (Deletion rights and account controls).
- Revoke at Meta: you can also revoke Arlo's access directly in Meta Business Settings → Business Integrations (or, for personal accounts, Facebook Settings → Business Integrations). Revoking at Meta immediately invalidates the access token Arlo holds.
5.5 Sharing
We do not sell Meta data. We process Meta data on the hosting and infrastructure described in Section 6 (Where we store information) — Amazon Web Services (AWS) — and share it only with the service providers described in Section 9 (How we share information) that are necessary to operate the Services (for example, hosting and error monitoring). Meta data is not shared with third-party advertisers.
6. Where we store information
We store and process data using cloud infrastructure hosted on Amazon Web Services (AWS), including:
- AWS S3 buckets for storage of certain application data (for example: uploaded files, exports, logs, and backups).
- Other AWS-hosted services that support the Services (for example: application servers and databases).
Encryption: S3 supports server-side encryption at rest and, by default, new objects uploaded to S3 are automatically encrypted at rest using S3-managed keys (SSE-S3), unless configured otherwise.
7. Data retention
We keep your information only as long as necessary for the purposes described in this Privacy Policy. Unless a longer period is required by law, we apply the following retention approach:
- Account and integration data: retained for the duration of your active account.
- After account closure or deletion request: we delete or de-identify your personal data within 30 days, except where we must retain certain records for legal, security, or fraud-prevention purposes.
- Backups and archives: deleted on a rolling basis and may persist for up to 90 days after deletion due to backup retention cycles.
- Operational logs (security and reliability): retained for up to 12 months, then deleted or de-identified unless needed for security investigations or legal compliance.
8. Deletion rights and account controls
You may request deletion of your account and associated personal data at any time by emailing privacy@meetarlo.ai.
Subject to verification of your request and limited exceptions (for example, legal compliance, fraud prevention, dispute resolution, or security), we will:
- Delete or de-identify personal data tied to your account within the timeframes described in Data retention.
- Confirm when deletion has been completed (or explain what data we must retain and why).
- If you connected third-party integrations, you may also revoke access directly within those platforms (for example, uninstalling the Shopify app).
9. How we share information
We do not sell your personal information.
We may share information in these situations:
- Service providers
With trusted vendors who perform services on our behalf, such as hosting, data storage, analytics, email delivery, customer support, and payment processing. They may only use your data as instructed by us. - Integrations and connected platforms
When you connect Arlo to a third party platform, we may send or receive data as needed to provide the integration. You can revoke access at any time through the integration or your Arlo settings. - Business transfers
In connection with a merger, acquisition, asset sale, financing, or similar transaction, your information may be transferred as part of that deal. - Legal and safety reasons
If we believe disclosure is reasonably necessary to comply with a law, regulation, legal process, or government request, or to protect the rights, property, or safety of Arlo, our users, or the public. - Aggregated or de-identified data
We may share aggregated or de-identified information that cannot reasonably be used to identify you.
10. Cookies and tracking technologies
We use cookies and similar technologies to:
- Keep you signed in
- Remember preferences and settings
- Understand how visitors use the site
- Improve performance and user experience
- Support analytics and, where applicable, remarketing
You can usually control cookies through your browser settings. Disabling certain cookies may affect the functionality of the Services.
If required in your region, we will present a cookie banner or preferences tool that lets you manage non-essential cookies.
11. Data security
We use reasonable technical and organizational measures to protect your information, including:
- Encryption in transit (HTTPS)
- Access controls and authentication
- Regular monitoring and logging
- Limited access to production data
No method of transmission or storage is completely secure. We cannot guarantee absolute security, but we work to protect your information to the extent reasonably possible.
12. International data transfers
Our servers and service providers may be located in different countries. By using the Services, you consent to the transfer of your information to these countries, which may have different data protection laws than your country.
Where required, we use appropriate safeguards, such as standard contractual clauses, to protect personal data transferred internationally.
13. Your rights
Depending on where you live, you may have some or all of the following rights regarding your personal data:
- Access to the personal data we hold about you
- Correction of inaccurate or incomplete data
- Deletion of your personal data
- Restriction or objection to certain processing
- Data portability, where technically feasible
- Withdrawal of consent, where processing is based on consent
To exercise these rights, contact us at privacy@meetarlo.ai. We may need to verify your identity before responding.
If you are in the EEA or UK, you also have the right to lodge a complaint with your local data protection authority.
14. Children's privacy
The Services are not directed to children under 16, and we do not knowingly collect personal information from children. If you believe a child has provided us with personal information, contact us so we can delete it.
15. Third party links
The Services may contain links to third party websites or services that are not operated by us. We are not responsible for the privacy practices of those third parties. We encourage you to review their privacy policies separately.
16. Changes to this Privacy Policy
We may update this Privacy Policy from time to time. When we do, we will change the "Last updated" date at the top. If changes are material, we may provide additional notice, such as by email or in-app notifications.
Your continued use of the Services after an update means you accept the revised Privacy Policy.
17. Contact us
Meet Arlo, Inc
Email: privacy@meetarlo.ai
Address: 400 East 57th St, New York NY 10022