Privacy Policy
Last updated: 2 July 2026
What we collect
When you sign in to Simplepostr we store your email address, display name, and a Simplepostr account identifier. When you connect a social account, we store an encrypted access token issued by that provider, the list of channels (Pages, professional accounts) you administer, and metadata describing each channel. When you upload media we store the file and its content type, dimensions, duration, and checksum. When you publish, we store the caption, provider settings, scheduled time, provider identifiers for the resulting post, and the outcome of each publication attempt.
Why we collect it
Each piece of data supports the feature that produced it. Access tokens allow us to publish to the channels you connect. Media and captions allow us to prepare and dispatch posts. Publication outcomes drive retries, status reporting, and quota accounting. We do not sell or share your personal data with third parties for advertising.
Providers we send data to
We call the platform APIs of the providers you connect (Meta, TikTok, and others as we add support) to fulfil your requests to schedule and publish content. We call Stripe for subscription billing and Resend for transactional email. Media is hosted on Vercel Blob storage. Postgres hosting is on Neon.
How long we keep it
Account and workspace records are retained for as long as the account is active. On account deletion we delete personal data within 30 days, except for records required to satisfy legal, tax, or provider-mandated retention. Encrypted provider tokens are deleted immediately on disconnection or revocation. Audit records may be retained for up to 24 months for security and abuse review.
Your rights
You may export your data or request deletion by emailing the address below. Provider-initiated deletion requests (Meta data-deletion callback, etc.) are honoured through automated endpoints and result in the same deletion path as a user-initiated request.
Contact
Privacy questions: privacy@simplepostr.com