민들레랩스MINDLELABS
데이터 삭제 요청
Data Deletion Request · 주식회사 민들레랩스 · 민들레 그룹웨어 — Meta(Facebook·Instagram) 광고 연동 · 2026년 9월 22일 갱신
주식회사 민들레랩스(이하 "회사")가 제공하는 민들레 그룹웨어(이하 "서비스")는 입주사가 직접 연결한 Meta 마케팅 API를 통해 광고 집행 금액과 광고 계정 식별자를 가져와 회계·손익 계산에 사용합니다. 이 페이지는 그렇게 보관된 데이터의 삭제를 요청하는 방법과 처리 기한·범위·예외를 안내합니다.
Mindlelabs Groupware, operated by MindeulleLabs Inc. ("the Company"), reads advertising spend and ad account identifiers through the Meta Marketing API and uses them for accounting and profit-and-loss calculation. This page explains how to request deletion of that data, and the time limits, scope and exceptions that apply.
1. 회사가 보관하는 데이터 광고 매체 연동분
Meta (Facebook·Instagram)
이 페이지가 말하는 앱은 Meta 앱 대시보드에 민들레 그룹웨어로 표시되는 앱입니다. 서비스가 Meta로부터 받아 저장하는 항목은 아래가 전부입니다. 개인 프로필·친구 목록·게시물·메시지·잠재고객(리드)·타겟 정보는 수집하지 않습니다. 요청 권한은 읽기 전용 두 가지(ads_read, business_management)뿐이며, 회사는 이 권한으로 광고를 집행하거나 수정하지 않습니다.
| 구분 | 항목 | 보관 방식 · 기간 |
| 연동 자격증명 |
Meta 앱 ID, 앱 시크릿, 장기 액세스 토큰(long-lived user access token), 토큰 만료 시각 |
앱 시크릿과 액세스 토큰은 AES-256-GCM으로 암호화해 저장. 토큰은 발급 후 60일이 지나면 만료되며, 아래 2항의 연동 해제 요청을 접수하면 즉시 삭제 |
| 광고 계정 식별자 |
비즈니스 포트폴리오(Business Manager) ID, 광고 계정 ID(act_…), 광고 계정 이름 |
연동이 유지되는 동안 보관 |
| 광고 지표 |
광고 ID(ad_id), 광고 이름(ad_name), 캠페인 이름(campaign_name), 광고세트 이름(adset_name), 집행 일자(date_start), 집행 금액(spend), 노출수(impressions), 클릭수(clicks) — 이상 8개 항목 |
입주사의 광고비 회계 자료. 이용계약 종료 후 파기(아래 4항의 법정 보존 예외 적용) |
| 연동 실행 기록 |
동기화 시각, 처리 건수, 오류 메시지 |
장애 대응·감사 추적 목적의 운영 로그 |
What we store (Meta integration only). The app appears on the Meta App Dashboard as
민들레 그룹웨어 (Mindeulle Groupware), which is also the product name. The list above is exhaustive. We do
not collect personal profiles, friend lists, posts, messages, lead data or audience/targeting data. The app requests two read-only permissions —
ads_read and
business_management — and never creates or edits ads.
- Credentials — Meta app ID, app secret and long-lived user access token (both encrypted with AES-256-GCM). The token expires 60 days after issue, and is deleted immediately once a disconnection request is received (see section 2 — the product has no self-service disconnect button yet).
- Ad account identifiers — business portfolio (Business Manager) ID, ad account ID (
act_…), ad account name.
- Advertising metrics —
ad_id, ad_name, campaign_name, adset_name, date_start, spend, impressions, clicks. These eight fields are the whole of it.
- Sync logs — run timestamps, row counts, error messages.
Google Ads
서비스가 Google Ads로부터 받아 저장하는 항목은 아래가 전부입니다. 요청 권한은 https://www.googleapis.com/auth/adwords 한 가지이며(Google Ads API에는 읽기 전용 권한이 따로 없습니다), 회사는 이 권한으로 조회만 수행하고 광고를 만들거나 수정·중단하지 않습니다. 키워드·검색어·광고 소재·잠재고객(맞춤 타겟)·전환 데이터·결제 정보는 수집하지 않습니다.
| 구분 | 항목 | 보관 방식 · 기간 |
| 연동 자격증명 |
OAuth 클라이언트 ID, 리프레시 토큰, 광고 계정 식별자(customer ID) |
리프레시 토큰은 AES-256-GCM으로 암호화해 저장. Google 리프레시 토큰에는 별도의 만료 기한이 없으며, 연동 해제 또는 아래 2항의 요청 접수 시 즉시 삭제 |
| 광고 지표 |
집행 일자(segments.date), 캠페인 ID(campaign.id), 캠페인 이름(campaign.name), 캠페인 유형(campaign.advertising_channel_type), 집행 금액(metrics.cost_micros), 클릭수(metrics.clicks), 노출수(metrics.impressions) — 이상 7개 항목 |
입주사의 광고비 회계 자료. 이용계약 종료 후 파기(아래 4항의 법정 보존 예외 적용) |
| 연동 실행 기록 |
동기화 시각, 처리 건수, 오류 메시지 |
장애 대응·감사 추적 목적의 운영 로그 |
What we store (Google Ads integration). The app requests a single scope,
https://www.googleapis.com/auth/adwords. The Google Ads API offers no read-only variant of this scope, so it is the only one we can request; we use it for
read queries (GAQL SELECT) only and never create, edit or pause ads. We do
not collect keywords, search terms, ad creatives, audience/targeting data, conversion data or billing information.
- Credentials — OAuth client ID, refresh token (encrypted with AES-256-GCM), ad account customer ID. Google refresh tokens do not expire on a fixed schedule; we delete ours immediately on disconnection or request.
- Advertising metrics —
segments.date, campaign.id, campaign.name, campaign.advertising_channel_type, metrics.cost_micros, metrics.clicks, metrics.impressions. These seven fields are the whole of it.
- Sync logs — run timestamps, row counts, error messages.
2. 삭제 요청 방법과 처리 기한
서비스에는 광고 매체 연동을 스스로 해제하거나 연동 데이터를 스스로 지우는 버튼이 아직 없습니다. 아래 이메일로 요청하시면 회사가 직접 처리하고 결과를 통지합니다.
① 이메일로 요청 (권장)
- 받는 사람
- [email protected]
- 제목
[데이터 삭제 요청] 회사명 — 광고 연동(Meta 또는 Google Ads)
- 본문에 적을 것
- ① 회사(입주사)명 ② 요청자 성명·직위·연락처 ③ 대상 매체와 연결된 광고 계정 ID — Meta는
act_… 또는 비즈니스 포트폴리오 ID, Google Ads는 customer ID(123-456-7890 형태) ④ 삭제 범위(연동 자격증명만 / 광고 지표까지 전부) ⑤ 회신받을 이메일
- 전화 문의
- 1566-5746 (접수 자체는 기록을 남기기 위해 이메일로 받습니다)
② Meta 쪽에서 직접 연결 끊기 (선택)
Facebook → 설정 및 개인정보 → 설정 → 비즈니스 통합(Business Integrations) → 해당 앱 → 삭제. 이 경우 회사가 가진 액세스 토큰은 즉시 무효가 되어 더 이상 데이터를 가져오지 못합니다. 다만 이미 저장된 데이터는 자동으로 지워지지 않으므로, 그 삭제는 위 ①의 이메일 요청으로 함께 요청해 주십시오.
③ Google 쪽에서 직접 연결 끊기 (선택)
Google 계정 → 보안 → 서드파티 앱 및 서비스 → 해당 앱 → 액세스 권한 삭제. 이 경우 회사가 가진 리프레시 토큰은 즉시 무효가 되어 더 이상 광고 데이터를 가져오지 못합니다. 메타와 마찬가지로 이미 저장된 데이터는 자동으로 지워지지 않으므로, 그 삭제는 위 ①의 이메일 요청으로 함께 요청해 주십시오.
| 단계 | 기한 |
| 접수 확인 · 접수번호 회신 | 요청 수신일로부터 3영업일 이내 |
| 삭제 처리 완료 · 결과 통지 | 요청 수신일로부터 10일 이내(「개인정보 보호법 시행령」상 삭제 요구 처리 기간에 준함). 본인 확인 자료를 추가로 요청한 경우 그 자료를 받은 날부터 기산 |
| 백업본 포함 완전 파기 | 운영 데이터 삭제 후 30일 이내(개인정보처리방침 제4조 제2항과 동일) |
How to request deletion. The product has no self-service disconnect or delete button for the Meta integration yet, so please email us and we will process it for you.
- Email [email protected] with the subject
[Data Deletion Request] <company> — Meta Ads, and include: company name; the requester's name, title and phone number; the connected ad account ID (act_…) or business portfolio ID; the scope to delete (credentials only, or credentials and metrics); and a reply address.
- Optionally revoke on Meta — Facebook → Settings & privacy → Settings → Business Integrations → select the app → Remove. This invalidates our access token at once, but does not erase data already stored; ask for that in the email above.
- Time limits — acknowledgement with a reference number within 3 business days; deletion completed and confirmed within 10 days of the request (or of receiving any identity evidence we had to ask for); backups purged within 30 days of the deletion.
3. 요청자 본인(권한) 확인
연동 데이터는 입주사의 광고비 회계 자료이므로, 제3자가 지우는 일이 없도록 아래 순서로 요청 권한을 확인합니다.
- 1차 — 이메일 대조: 요청 메일 주소가 서비스에 등록된 관리자 계정의 이메일이거나 입주사의 회사 도메인과 일치하는지 확인합니다.
- 2차 — 보유 사실 확인(불일치 시): 연결된 광고 계정 ID 전체, 사업자등록번호, 최근 연동 일자 중 두 가지를 대조합니다.
- 대리인 요청: 위임장과 대리인 신분증 사본(주민등록번호 뒤 6자리 등 불필요한 정보는 가려서 제출)을 확인합니다.
- 확인을 위해 받은 자료는 확인이 끝나는 즉시 파기하며, 다른 목적으로 이용하지 않습니다.
Verifying the requester. Because this data is the customer's own advertising-cost record, we verify authority before deleting. (1) The request must come from the email address of a registered administrator account, or from the customer's corporate domain. (2) If it does not match, we cross-check two of the following: the full ad account ID, the business registration number, the date of the most recent sync. (3) An agent must provide a letter of authorization and a redacted copy of their ID. Evidence submitted for verification is destroyed as soon as verification is complete and is never used for any other purpose.
4. 삭제 범위와 예외
삭제되는 것
- Meta 앱 시크릿과 액세스 토큰 — 복구 불가능한 방법으로 즉시 삭제
- 비즈니스 포트폴리오 ID, 광고 계정 ID·이름 등 계정 식별자
- 광고 ID·광고 이름·캠페인 이름·광고세트 이름·집행 일자·집행 금액·노출수·클릭수 등 Meta에서 받아온 지표 원본
- 연동 실행(동기화) 기록
예외 — 법령에 따라 보존되는 것
이미 입주사의 회계 장부에 광고선전비 등 비용으로 기표된 금액 기록은 사업자의 법정 증빙이므로 관계 법령이 정한 기간 동안 보존됩니다. 이 경우에도 Meta 식별자(광고 계정 ID·광고 ID·캠페인 이름)는 함께 삭제하고, 일자·금액·계정과목만 남긴 회계 기록으로 보존합니다.
| 근거 법령 | 대상 | 기간 |
| 국세기본법 제85조의3 | 장부 및 증빙서류(비용 지출 기록) | 5년 |
| 전자상거래법 제6조 | 계약·청약철회, 대금결제, 소비자불만 처리 기록 | 3~5년 |
보존 기간이 끝나면 별도 요청 없이 지체 없이 파기합니다. 전자적 파일은 복구할 수 없는 방법으로 영구 삭제합니다. 그 밖의 보유·파기 원칙은 민들레 그룹웨어 개인정보처리방침 제4조를 따릅니다.
What we delete, and what we must keep. We erase the app secret and access token beyond recovery, together with the business portfolio ID, ad account IDs and names, the advertising metrics received from Meta (ad ID, ad name, campaign name, ad-set name, date, spend, impressions, clicks) and the sync logs.
Exception: amounts already posted to the customer's books as advertising expense are statutory accounting evidence and must be retained — under the Framework Act on National Taxes art. 85-3 (books and supporting documents,
5 years) and the E-Commerce Consumer Protection Act art. 6 (contract, payment and complaint records,
3-5 years). Even then the
Meta identifiers are removed, leaving only the date, amount and account title. Once the statutory period ends, the records are destroyed without any further request. See art. 4 of the
Groupware Privacy Policy.
5. 문의처
| 구분 | 내용 |
| 개인정보 보호책임자 | 박민 (대표이사) |
| 이메일 | [email protected] |
| 전화 | 1566-5746 |
| 주소 | 서울특별시 강남구 테헤란로70길 12, 402-제이799호(대치동, H타워) |
회사의 처리 결과에 만족하지 못하시는 경우 개인정보분쟁조정위원회(1833-6972, kopico.go.kr) 또는 개인정보침해신고센터(국번없이 118, privacy.kisa.or.kr)에 분쟁 해결이나 상담을 신청하실 수 있습니다.
Contact. Data Protection Officer: Park Min (CEO) ·
[email protected] · +82-1566-5746 · 402-J799, 12 Teheran-ro 70-gil, Gangnam-gu, Seoul, Republic of Korea. If you are not satisfied with our response, you may contact the Personal Information Dispute Mediation Committee (kopico.go.kr) or the Korea Internet & Security Agency privacy centre (privacy.kisa.or.kr).
최종 갱신: 2026년 9월 22일
(주)민들레랩스 · 대표이사 박민 · 사업자등록번호 556-81-03682 · 통신판매업신고 제2026-서울강남-04498호
개인정보 보호책임자 박민(대표이사)
서울특별시 강남구 테헤란로70길 12, 402-제이799호(대치동, H타워)
문의:
[email protected] · 1566-5746
© 2026 MindeulleLabs Inc. All rights reserved.
관련 문서:
개인정보처리방침 ·
이용약관 ·
개인정보 처리위탁 계약
← 민들레 그룹웨어로 돌아가기