Privacy Policy

Last updated: May 16, 2025

1. What We Collect

We collect information you provide directly and information generated by your use of the Service:

  • Account data: name, email address, and password (hashed)
  • Content data: briefs, AI-generated drafts, and approved posts
  • Platform tokens: OAuth access tokens for connected social accounts (encrypted at rest)
  • Usage data: feature usage, post performance analytics, session metadata
  • Technical data: IP address, browser type, device type, and error logs

2. How We Use Your Data

We use your data to:

  • Provide and improve the Service, including AI content generation
  • Authenticate your identity and secure your account
  • Publish posts to connected social platforms on your behalf
  • Send transactional emails (account confirmation, notifications)
  • Analyze usage patterns to improve the product
  • Respond to support requests and resolve issues

We do not use your content to train AI models, sell your data to third parties, or send unsolicited marketing without your consent.

3. Data Sharing

We share your data only as necessary to provide the Service:

  • Social platforms: content and tokens are shared with LinkedIn, X, Instagram, etc. as directed by you
  • AI providers: brief text is sent to AI services to generate draft content
  • Infrastructure: hosting, database, and email providers (under data processing agreements)
  • Legal: when required by law or to protect our rights

4. Data Retention

We retain your account data for as long as your account is active. You can delete your account at any time from Settings, which will permanently remove your personal data within 30 days. Post analytics and aggregate usage data may be retained in anonymized form. Platform tokens are deleted immediately when you disconnect an account.

5. Security

We protect your data using industry-standard practices: passwords are hashed using bcrypt, platform OAuth tokens are encrypted at rest using AES-256, all data is transmitted over TLS, and access to production systems is restricted and audited. No system is perfectly secure — please use a strong, unique password and contact us immediately if you suspect unauthorized access.

6. Cookies & Tracking

We use session cookies to keep you signed in and to maintain your preferences. We do not use third-party advertising cookies or sell your browsing data. You can clear cookies at any time through your browser settings, which will sign you out of the Service.

7. Your Rights

Depending on your location, you may have the right to:

  • Access or export a copy of your personal data
  • Correct inaccurate data
  • Delete your account and associated data
  • Object to or restrict certain processing
  • Withdraw consent at any time where processing is based on consent

To exercise any of these rights, email hello@addpost.site.

8. Children

The Service is not directed at children under 16. We do not knowingly collect personal data from children. If you believe a child has provided us with data, contact us and we will delete it promptly.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by email or in-app notice at least 14 days before they take effect. Continued use of the Service after changes constitutes acceptance.

10. Contact

Questions about this Privacy Policy? Reach us at hello@addpost.site.