Privacy Policy

Last updated: November 27, 2025

Overview

This Privacy Policy applies to the clickbarrier.com website and platform ("Clickbarrier", "Service"), owned and operated by Panaroma Video ("we", "us", "our", or "Company"), a company registered in the Netherlands.

Clickbarrier is a click fraud protection service that helps advertisers protect their Google Ads campaigns from invalid clicks. We provide tracking technology that monitors visitor behavior and automatically blocks suspicious IP addresses.

This policy describes how we collect, use, and protect personal information when you use our website and services. We comply with the EU General Data Protection Regulation (GDPR).

1. GDPR Compliance

Clickbarrier complies with the General Data Protection Regulation (GDPR) and its data transfer requirements. We rely on appropriate safeguards when transferring personal data to third countries.

Your Rights

Under GDPR (Articles 12-23), you have the right to:

  • Request access to your personal data
  • Request correction or deletion of your personal data
  • Object to or restrict processing of your data
  • Request data portability
  • Withdraw consent at any time

To exercise these rights, contact us at [email protected].

2. Data We Collect

2.1 Account Information

When you register for our services:

  • Full name
  • Email address
  • Phone number (optional)
  • Company/organization name

2.2 Automatically Collected Information

When you visit our website:

  • IP address
  • Browser type and version
  • Operating system and device information
  • Pages visited
  • Date/time stamps

2.3 Google Ads Integration

If you connect your Google Ads account, we access campaign data and IP exclusion lists through the Google Ads API. This data is used solely to provide our click fraud protection services.

3. Data Processed for Clients (Click Tracking)

Important: Clickbarrier acts as a data processor when collecting visitor data on behalf of our clients. Our clients are the data controllers for this information.

3.1 Data Collected by Our Tracking System

Our tracking system collects the following data on client websites:

Data Purpose
IP Address Identify and block suspicious traffic
User Agent Browser and device detection
Client Hints Advanced device fingerprinting (platform, model, architecture)
Referrer Traffic source
Timestamp Visit time

3.2 Data Collection Sources

  • JavaScript Tracker: Code embedded on client websites (detects ad visits via gad_source=1 parameter)
  • Google Ads Parallel Tracking: Server-side redirect tracking

3.3 Legal Basis for Processing

  • Legitimate Interest (GDPR Article 6(1)(f)): Fraud protection is a recognized legitimate interest
  • Contractual Necessity: Processing is necessary to fulfill our service agreement with clients

4. Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Maintain your session and authentication
  • Remember your preferences

You can control cookies through your browser settings.

5. Data Sharing

We do not sell your personal information. We may share data with the following service providers:

Provider Purpose Data Shared
Google Ads API IP blocking IP address, campaign ID
Telegram Notifications (optional) IP address, domain, device info

Legal Requirements

We may disclose personal information when required by law, court order, or government request.

6. International Data Transfer

Since the Google Ads API is located in the US, your data is transferred internationally when we send IP addresses to Google for blocking purposes.

For transfers outside the EU/EEA:

  • Google uses Standard Contractual Clauses (SCCs) for GDPR compliance
  • Your data is only transferred for fraud protection purposes

7. Data Retention

Data Type Retention Period
Account information While account is active + 2 years
Visitor logs 90 days
Blocked IP addresses Until block is removed

After the retention period, data is securely deleted.

8. Security Measures

  • Encryption: All data is encrypted in transit (TLS/SSL)
  • Access Control: Role-based access system
  • Queue System: Sensitive operations (IP blocking, notifications) are processed asynchronously

Data Breach Notification

In the event of a data breach affecting your personal data, we will notify you and the relevant supervisory authority within 72 hours in accordance with GDPR Article 33.

9. Your Privacy Rights

Under GDPR (EU/UK residents):

  • Right of Access: Request a copy of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your data ("right to be forgotten")
  • Right to Restrict Processing: Limit how we use your data
  • Right to Data Portability: Receive your data in a structured format
  • Right to Object: Object to processing based on legitimate interests

To exercise your rights, contact us at [email protected]. We will respond within 30 days.

Supervisory Authority

You have the right to lodge a complaint with your local Data Protection Authority.

10. Changes to This Policy

We may update this policy. Material changes will be announced at least 30 days before they take effect.

11. Contact

Data Controller

Panaroma Video

Operating as Clickbarrier

Vorstenburg 5, 1506RE, Zaandam, Netherlands

KVK: 92841449

BTW-id: NL004981079B76

Email: [email protected]

Related Documents