Privacy
What this sends, and where
What AdPlaybook sends and where it sends it, named destination by named destination, for the build you can download today — including the one step that does leave your Mac.
last changed 2026-08-11 Checked against the source of the build behind the Download button, not against a template. Where the app and this page could disagree, the app is the fact and this page is the bug.
The short version
There is no account, no server of ours, and no telemetry. Nothing is reported back to Kerr & Company LLC, because there is nowhere for it to be reported to. We hold no data about you at all, so there is nothing for you to ask us to delete.
One step is different, and it is the one that matters. In the build you can download today, the writing is done by Anthropic's API, using your own key — so the text harvested from your site, your product details and every draft ad are sent to Anthropic. That is not a footnote and it is not optional in this build.
The homepage carries a badge reading "Nothing leaves your machine". That is true of the crawl, true of your key, and true of everything the app stores. It is not true of the generation step in v0.1.5, which sends text to Anthropic. The badge overstates it, the badge is wrong, and this page is the accurate statement until the badge is corrected.
Where each thing actually goes
Read this as the list of destinations, in the order a run reaches them.
| What | Where it goes | Kept how long |
|---|---|---|
| The website you point it at | Fetched directly by your Mac. At most 25 pages, obeying that site's
robots.txt and its Crawl-delay, with the crawler
identifying itself in the User-Agent rather than pretending to be a browser. |
In memory for the run |
| The text it harvested, your product details, and every draft ad | Anthropic's API, over the internet, authenticated with your key. What Anthropic then does with it is governed by Anthropic's terms and privacy policy, not ours. | Ask Anthropic — we cannot see it and cannot speak for them |
| Your API key | Written to a file on your Mac and sent only to the provider it belongs to. Never to us, never to the other providers, never into a log line. | Until you delete the file |
| The brief, the strategy scores, the campaign, the evidence receipt, the exports | Nowhere. They are held in the app's memory while it runs. | Gone when you quit, unless you saved a file |
| Anything at all, to Kerr & Company LLC | Never. There is no server of ours for it to reach, no analytics in the app, no crash reporting, and no licence check that would phone home. | — |
The app lists three providers and recommends Outlier because Outlier runs on your Mac, which would mean nothing leaves it at all. In v0.1.5 — the build the Download button serves — choosing a provider does not change where the run goes. The run path calls Anthropic unconditionally.
That is a defect, not a policy. The current source picks whichever provider is actually usable, Outlier first, so a later build will behave the way the interface describes. Until that build ships and this page changes, treat every run as going to Anthropic, and do not point it at anything you would not send there.
What it writes to your Mac, and exactly where
~/.config/adkit/key— your Anthropic key, created with owner-only permissions (0600). IfXDG_CONFIG_HOMEis set, that path is used instead.~/.config/adkit/<provider>.key— the same, for any other provider you add a key for.~/.outlier/openai_api.json— read, never written. That file belongs to Outlier; the app reads it only to find the port Outlier is listening on and the local key it issued.- Anything you explicitly export or save, wherever you chose to save it.
That is the complete list. Deleting those files and the app removes everything it put on the machine.
This website
These pages are static files served by GitHub Pages. There are no cookies, no analytics script, no tag manager, no pixel, no embedded fonts and no form to submit — view the source of any page and there is nothing to find. We set nothing in your browser and we cannot see who you are.
Two things are true anyway and you should know them:
- GitHub serves the site and the download. Fetching a page or the DMG is an ordinary HTTP request to GitHub's servers, which receive your IP address the way any web host does. GitHub's privacy statement governs that.
- The domain is verified in Google Search Console. That shows us aggregate search queries and click counts for the site. It does not identify anyone and we cannot use it to.
Your rights, stated honestly
Access, correction, deletion and portability all assume someone is holding your data. We are not. There is no database, no mailing list, no customer record, and no copy of anything the app produced — so a request to see, correct or delete what we hold has the same answer every time, which is that there is nothing there.
Where your data does exist is with the model provider you used, under your own account with them, and with GitHub as the host of this site. Those requests go to them. If it would help to have that in writing from us for a compliance file, ask and you will get it.
It describes v0.1.5, dated 2026-08-11. It does not describe any future build, and it does not describe a paid version, because there is not one — see the terms. If a payment mechanism, an account, a licence key or a server ever exists, this page changes before that ships, not after.
Listed rather than left blank, for the same reason the spec pages list what could not be verified: a policy with no gaps is either complete or hiding something, and from the outside those look identical.
Changes, and how to reach us
The date at the top of this page is the date its text last changed, set by hand. It does not move when the site is rebuilt.
Questions about any of this go to matthew@kerrandcompanyholdings.com, or see the contact page for who is on the other end.