Privacy Policy

Effective date: 1 October 2026 · Last updated: 5 October 2026

This Privacy Policy explains how Citrus for General Supplies and Contracting LLC ("PeakDigit", "we", "us", "our"), a limited liability company registered in Egypt (Commercial Register No. 25916, Cairo; Tax Registration 769-564-003; registered address: 1141 Zahraa Madinat Nasr, Apt 2, Nasr City, Cairo, Egypt), collects, uses, stores, shares and deletes personal data when you use the PeakDigit platform at app.peakdigit.com, our website at peakdigit.com, or any related services (together, the "Services").

If you have any question about this policy or your data, contact us at privacy@peakdigit.com.

1. Who we process data for

PeakDigit is a business-to-business (B2B) software platform. Our direct customers are businesses ("Clients") that use PeakDigit to manage their digital marketing, advertising analytics, customer conversations and sales pipeline. In most cases we process end-customer personal data on behalf of and under the instructions of our Clients, who act as the data controllers; PeakDigit acts as a data processor. For data about our Clients' own team members and website visitors, PeakDigit acts as the data controller.

2. Data we collect

2.1 Account and team data

2.2 Advertising platform data (Meta, TikTok)

When a Client connects its advertising accounts through the official APIs of Meta Platforms, Inc. ("Meta") or TikTok Pte. Ltd. ("TikTok"), we collect, with the Client's explicit authorization:

2.3 WhatsApp Business conversation data

When a Client connects its WhatsApp Business account, we process on the Client's behalf:

2.4 CRM data

2.5 Website visitors

3. How we use data

We do not sell personal data. We do not use Platform Data obtained from Meta or TikTok to build or augment user profiles, for advertising unrelated to the Client that owns the data, or for any purpose other than providing the Services to that Client.

4. Platform Data — Meta and TikTok specific commitments

4.1 Meta permissions we request and how each is used

The PeakDigit app requests the following Meta permissions. For each permission, this table describes exactly what data is accessed and why:

PermissionData accessedWhy we need it (user-facing feature)
ads_readAd account structure and aggregated performance insights (spend, impressions, clicks, reach, video metrics, cost metrics)Displays the Client's own advertising performance dashboards, creative-level analytics and budget alerts inside the platform.
ads_managementCampaign, ad set and ad settings (status, budget)Lets authorized Client team members pause/resume ads and adjust budgets directly from the platform's campaign console, acting on the Client's own ad accounts.
business_managementBusiness portfolio assets metadata (ad accounts, pages owned by the Client's Business)Lists the Client's own business assets so the Client can choose which ad accounts to connect.
whatsapp_business_managementWhatsApp Business Account configuration (phone numbers, message templates)Shows connection status and template setup for the Client's own WhatsApp Business Account.
whatsapp_business_messagingMessages between the Client's WhatsApp Business number and its customers, including Click-to-WhatsApp referral metadata (ctwa_clid, source ad ID)Powers the conversation desk (so the Client's team can view and respond to its own customer conversations) and attributes each conversation to the ad that generated it.
pages_show_list, pages_read_engagement (if requested)Pages owned by the Client and aggregated page/post engagementConnects ad creatives to the Client's own page posts for creative-performance reporting.

We request only the permissions needed for the features above. We never use these permissions to collect data about users unrelated to the Client, to build advertising profiles, or to serve ads outside the Client's own accounts.

4.2 TikTok scopes we request and how each is used

ScopeData accessedWhy we need it
Ad Account Management (read)Advertiser account metadataLists the Client's own TikTok advertiser accounts for connection.
ReportingAggregated campaign/ad performance metricsDisplays the Client's TikTok ad performance dashboards.
Ads Management (if requested)Campaign and ad status/budget settingsLets authorized Client team members manage the status and budget of the Client's own TikTok campaigns.

5. Legal bases

Where applicable law (such as the Egyptian Personal Data Protection Law No. 151 of 2020 or, where relevant, the GDPR) requires a legal basis, we rely on: performance of a contract with our Clients; our Clients' instructions as data controllers; legitimate interests in operating and securing the Services; and compliance with legal obligations.

6. Sharing and disclosure

We share personal data only with:

We never share one Client's data with another Client, and we never disclose Platform Data to data brokers or advertising networks.

7. Data retention

8. Security

9. Your rights

Depending on applicable law, you may have the right to access, correct, export, restrict or delete your personal data, and to object to certain processing. End customers of our Clients should direct requests to the business they interacted with (the data controller); we support our Clients in fulfilling such requests. You can also contact us directly at privacy@peakdigit.com and we will respond within 30 days.

10. International transfers

Our infrastructure is hosted in secure data centers. Where data is transferred across borders, we use appropriate safeguards consistent with applicable data protection law.

11. Children

The Services are intended for business use and are not directed to children under 18. We do not knowingly collect data from children.

12. Changes to this policy

We may update this policy from time to time. We will post the updated version on this page with a new "Last updated" date, and notify Clients of material changes.

13. Contact

Citrus for General Supplies and Contracting LLC (PeakDigit)
1141 Zahraa Madinat Nasr, Apt 2, Nasr City, Cairo, Egypt
Email: privacy@peakdigit.com · legal@peakdigit.com