Privacy Policy
Effective Date: December 2025
AI Social Post Studio ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our social media scheduling service.
1. Information We Collect
Information You Provide
- Account Information: Email address, password (hashed), timezone, and profile information
- Social Media Connections: Facebook and Instagram access tokens (encrypted), Page IDs, Instagram account IDs
- Content: Post drafts, captions, images you upload, and scheduled post data
Information We Collect Automatically
- Usage Data: Log data, IP addresses, browser type, device information
- AI Usage: Records of AI-generated content and token usage (if using platform-billed mode)
2. How We Use Your Information
We use your information to:
- Provide and maintain our social media scheduling service
- Publish your content to Facebook Pages and Instagram accounts on your behalf
- Generate AI-assisted post content when requested
- Send you notifications about scheduled posts and publishing status
- Improve our services and develop new features
- Comply with legal obligations and enforce our Terms of Service
3. How We Store and Protect Your Information
- Encryption: All social media access tokens and API keys are encrypted at rest using AES-256-GCM encryption
- Database Security: Data is stored in secure PostgreSQL databases with SSL/TLS connections
- Image Storage: Uploaded images are stored in Cloudflare R2 with private access controls
- Access Controls: Only authorized personnel have access to production systems
4. Data Sharing and Disclosure
We do not sell your personal information. We may share your information with:
- Service Providers:
- Meta (Facebook/Instagram) - for publishing your content
- Cloudflare - for image storage
- Neon - for database hosting
- Resend - for transactional emails
- OpenAI/Google - for AI content generation (if using platform-billed mode)
- Legal Requirements: When required by law or to protect our rights
5. Your Data Rights
You have the right to:
- Access: Request a copy of your personal data
- Correction: Update or correct your information through your account settings
- Deletion: Request deletion of your account and all associated data (learn more)
- Portability: Request export of your data in a structured format
- Revoke Access: Disconnect Facebook/Instagram at any time through your account settings
6. Data Retention
We retain your information for as long as your account is active or as needed to provide services. When you delete your account:
- All personal data is permanently deleted within 30 days
- Anonymized usage statistics may be retained for analytics
- Legal or compliance data may be retained as required by law
7. Third-Party Services
Our service integrates with:
- Facebook/Instagram: Subject to Meta's Privacy Policy
- AI Providers: When using BYOK mode, you are subject to the AI provider's privacy policy
8. Children's Privacy
Our service is not intended for users under 13 years of age. We do not knowingly collect information from children under 13.
9. International Data Transfers
Your data may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place to protect your data.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or through our service.
11. Contact Us
For data deletion requests, please visit our Data Deletion page.
Note: This is a placeholder privacy policy for development purposes. Please consult with legal counsel before using in production.
Last updated: December 2025
AI Social Post Studio - socialdrafts.com