← Back to PostFleet
Privacy Policy
Last updated: July 31, 2026
This Privacy Policy explains how PostFleet ("we", "us", "our") collects, uses, and protects your information when you use our website, applications, and APIs (collectively, the "Service"). By using the Service you agree to this Policy.
1. Information we collect
- Account information: your email address and basic profile details you provide when signing up or joining the waitlist.
- Connected social accounts: when you connect a social media account (e.g. YouTube, Instagram, TikTok) via OAuth, we receive access tokens and basic account metadata (such as account name, ID, and avatar). We never see or store your social media passwords.
- Content you submit: videos, captions, titles, descriptions, tags, and thumbnails you upload for publishing.
- Usage data: logs of API requests and publishing activity, and basic technical data (IP address, browser type) used for security and reliability.
2. How we use your information
- To provide the Service: publishing the content you submit to the social accounts you have connected, on your explicit instruction (via the web app, API, or MCP).
- To secure the Service: fraud prevention, abuse detection, and debugging.
- To communicate with you about the Service (e.g. waitlist and product updates). You can opt out at any time.
We do not sell your personal data. We do not use your content or social account data for advertising, and we do not post anything without your instruction.
3. Third-party platform APIs
The Service integrates with third-party platforms via their official APIs, and your use of those integrations is also subject to the platforms' own terms and privacy policies:
We only request the minimum API scopes needed to publish content on your behalf, and we use data obtained from platform APIs solely to provide the user-facing features of the Service.
4. Data storage and security
- OAuth access and refresh tokens are stored encrypted and are used only to perform the actions you request.
- Uploaded media is stored temporarily for the purpose of publishing and is deleted from our servers after a limited retention period.
- Access to production data is restricted and logged.
5. Data retention and deletion
- You can disconnect any social account at any time — we then delete the associated tokens.
- You can request full deletion of your account and data by contacting us at postfleet@traffme.agency. We honor deletion requests within 30 days.
- Stored API data is refreshed or deleted in accordance with platform policies (for YouTube API data, within 30 days or upon your revocation).
6. Sharing
We share data only with: (a) the platforms you have connected, to perform publishing you request; (b) infrastructure providers (hosting, storage) acting as processors under contract; (c) authorities where required by law.
7. Children
The Service is not directed to children under 16, and we do not knowingly collect their data.
8. Changes
We may update this Policy from time to time. Material changes will be announced on this page with an updated date.
9. Contact
Questions or requests: postfleet@traffme.agency