Privacy Policy

Last updated: February 24, 2026

1. Information We Collect

We collect the following types of information:

  • Account Information: Name, email address, and password (hashed) when you register.
  • Workspace Data: Post content, captions, images, and scheduling data you create.
  • OAuth Tokens: Access tokens from connected social media platforms (Facebook, Instagram, LinkedIn, X, Reddit) stored securely in Firestore.
  • API Keys: Third-party API keys you optionally add (OpenAI, Anthropic, etc.), stored in your private Firestore document.
  • Usage Data: Basic usage metrics to improve the service.

2. How We Use Your Information

  • To provide and operate the PostCraft service
  • To post content to connected social media platforms on your behalf
  • To generate AI captions using your provided API keys
  • To send important service notifications
  • To improve and develop new features

3. Data Storage & Security

Your data is stored securely using Google Firebase (Firestore). We implement industry-standard security measures:

  • Firebase Authentication for secure user management
  • Firestore security rules to ensure data isolation between users
  • HTTPS encryption for all data in transit
  • Each workspace's data is accessible only by the workspace owner

4. Third-Party Services

PostCraft integrates with the following third-party services:

  • Google Firebase: Data storage and authentication
  • OpenAI / Anthropic: AI caption generation (using your own API keys)
  • Social Media Platforms: Facebook, Instagram, LinkedIn, X (Twitter), Reddit — governed by their respective privacy policies

5. Data Sharing

We do not sell, trade, or share your personal data with third parties, except:

  • When required by law or legal process
  • With your explicit consent
  • With service providers necessary to operate PostCraft (Firebase)

6. Your Rights

  • Access and download your data at any time
  • Delete your account and all associated data
  • Disconnect any social media platform at any time
  • Update or correct your personal information

7. Data Retention

We retain your data as long as your account is active. You can delete your account at any time, and we will permanently delete all associated data within 30 days.

8. Contact

For privacy-related questions, contact us at: privacy@postcraft.app