Back

Privacy Policy for Publish Kit

Last Updated: December 11, 2025

Thank you for choosing Publish Kit ("we," "us," or "our"). This Privacy Policy explains how we collect, use, protect, and share your personal and non-personal information when you use our social media management platform.

By using Publish Kit, you agree to the collection and use of information as described in this policy. If you do not agree, please do not use our services.

1. Information We Collect

1.1 Account Information

We collect the following personal information:

- Name: To personalize your experience and identify your account
- Email Address: For account authentication, notifications, and communication
- Profile Information: Any additional details you provide in your profile

1.2 Payment Information

Payment details are collected to process subscriptions and payments. All payment information is processed securely through Stripe, a PCI-compliant payment processor. We do not store complete credit card numbers on our servers.

1.3 Social Media Connection Data

When you connect social media accounts, we collect and store:

- OAuth Access Tokens: To authenticate and post on your behalf
- OAuth Refresh Tokens: To maintain long-term connections
- Platform User IDs: To identify your connected accounts
- Platform Usernames: For display in your dashboard
- Token Expiry Information: To manage token refresh
- Connection Metadata: Platform name, connection status, connection date

1.4 Content Data

We store:

- Post Content: Text, images, and media you create
- Scheduled Posts: Content scheduled for future publishing
- Post History: Previously published content and metadata
- Project Information: Names, descriptions, and organization data

1.5 Usage Data

We automatically collect:

- IP Address: For security and fraud prevention
- Browser Type and Version: To optimize compatibility
- Device Information: For responsive design optimization
- Usage Analytics: Pages visited, features used, time spent
- Log Data: API calls, errors, and system events

1.6 Cookies and Tracking Technologies

We use cookies and similar technologies for:

- Session Management: Keeping you logged in
- Preferences: Remembering your settings
- Analytics: Understanding usage patterns
- Security: Preventing fraud and unauthorized access

You can control cookie preferences through your browser settings.

2. How We Use Your Information

We use collected information for:

2.1 Service Delivery
- Authenticating your account and maintaining sessions
- Connecting and managing social media platforms
- Publishing content to your connected accounts
- Scheduling and automating posts
- Providing customer support

2.2 Service Improvement
- Analyzing usage patterns and trends
- Developing new features and functionality
- Improving user experience and interface
- Troubleshooting and fixing bugs

2.3 Communication
- Sending service-related notifications
- Notifying about scheduled posts and publishing status
- Sending account and security alerts
- Providing customer support responses
- Sending marketing communications (with your consent)

2.4 Security and Compliance
- Preventing fraud and abuse
- Enforcing Terms of Service
- Complying with legal obligations
- Protecting user rights and safety

3. How We Share Your Information

3.1 Third-Party Service Providers

We share data with trusted service providers:

- Stripe: Payment processing
- Supabase: Database and authentication services
- Social Media Platforms: To publish content on your behalf (via OAuth)
- Analytics Providers: For usage analytics (anonymized when possible)
- Email Services: For transactional and notification emails

These providers are contractually obligated to protect your data and use it only for specified purposes.

3.2 Social Media Platforms

When you authorize connections, we use OAuth tokens to:
- Publish content to your accounts as instructed
- Retrieve account information for display
- Access platform APIs on your behalf

You can revoke these permissions at any time through your account settings or directly on the social media platform.

3.3 Legal Requirements

We may disclose information when required by law:
- To comply with legal processes or government requests
- To enforce our Terms of Service
- To protect rights, property, or safety of Publish Kit, users, or the public
- In connection with mergers, acquisitions, or asset sales (with notice)

3.4 No Selling of Data

We do not sell, rent, or trade your personal information to third parties for marketing purposes.

4. Data Security

We implement industry-standard security measures:

- Encryption: Data encrypted in transit (TLS/SSL) and at rest
- OAuth Tokens: Stored securely with access controls
- Access Controls: Role-based access to sensitive data
- Regular Audits: Security assessments and vulnerability testing
- Secure Infrastructure: Using trusted cloud providers

However, no method of transmission or storage is 100% secure. We cannot guarantee absolute security.

5. Data Retention

We retain your data:

- Account Data: Until you delete your account
- OAuth Tokens: Until you disconnect the platform or delete your account
- Content Data: Until you delete it or close your account
- Usage Logs: For 90 days for security and troubleshooting
- Payment Records: As required by law and tax regulations

Deleted data may remain in backups for up to 30 days before permanent deletion.

6. Your Rights and Choices

You have the right to:

6.1 Access and Portability
- View your personal information through your account
- Export your data in a portable format
- Request a copy of your data

6.2 Correction and Deletion
- Update or correct your account information
- Delete your posts and content
- Request account deletion (removes all personal data)

6.3 Connection Management
- Disconnect social media accounts at any time
- Revoke OAuth permissions
- View connected platforms and their status

6.4 Communication Preferences
- Opt out of marketing emails
- Configure notification settings
- Manage email preferences

6.5 Cookie Management
- Disable cookies through browser settings
- Opt out of analytics tracking

To exercise these rights, contact us at support@publishkit.io or use your account settings.

7. Children's Privacy

Publish Kit is not intended for children under 13. We do not knowingly collect information from children. If you believe a child has provided us with personal information, please contact us immediately, and we will delete such information.

8. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place to protect your data in accordance with this Privacy Policy.

9. Third-Party Links and Services

Our service may contain links to third-party websites and services (including social media platforms). We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies.

10. California Privacy Rights (CCPA)

California residents have additional rights:
- Right to know what personal information is collected
- Right to know if personal information is sold or disclosed
- Right to opt-out of sale of personal information (we don't sell data)
- Right to deletion of personal information
- Right to non-discrimination for exercising privacy rights

Contact us to exercise these rights.

11. European Privacy Rights (GDPR)

EU/EEA residents have additional rights under GDPR:
- Right to access, rectification, and erasure
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent
- Right to lodge a complaint with supervisory authority

12. Updates to This Privacy Policy

We may update this Privacy Policy to reflect:
- Changes in our practices
- Legal or regulatory requirements
- New features or services

We will notify you of material changes via:
- Email notification
- Prominent notice on our website
- In-app notifications

Continued use after changes constitutes acceptance of the updated policy.

13. Contact Us

For privacy-related questions, concerns, or requests:

- Email: support@publishkit.io
- Website: publishkit.io/privacy-policy

For data protection inquiries or to exercise your rights, please contact our privacy team at the email address above.

Thank you for trusting Publish Kit with your social media management!