P
PostWave

Privacy Policy

Last updated: January 15, 2025

We respect your privacy and are committed to protecting your personal data.

Introduction

PostWave ("we," "our," or "us") operates the PostWave social media management platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.

By using PostWave, you agree to the collection and use of information in accordance with this policy. We will not use or share your information with anyone except as described in this Privacy Policy.

Information We Collect

1. Personal Information

Account Information:

  • Email address (required for account creation and notifications)
  • Full name (for account identification and support)
  • Profile information (avatar, bio, timezone preferences)
  • Payment information (processed securely through Paddle - we don't store payment details)

Usage Data:

  • Log data (IP address, browser type, pages visited, time stamps)
  • Device information (device type, operating system, unique device identifiers)
  • Usage patterns (features used, frequency of use, session duration)

2. Social Media Platform Data

📹 YouTube Data (Primary Platform)

Data Collected:
  • Channel Information: Channel name, description, subscriber count, channel URL
  • OAuth Tokens: Access and refresh tokens for API authentication
  • Video Metadata: Titles, descriptions, tags, thumbnails of videos you upload through our platform
  • Upload History: Record of successful/failed uploads for troubleshooting
Purpose of Collection:
  • Enable video uploads to your YouTube channel
  • Display channel information in your dashboard
  • Schedule and publish content at specified times
  • Provide upload status notifications and error reporting
Data Retention:
  • OAuth tokens: Until you disconnect your account or revoke access
  • Channel metadata: Cached for 24 hours, automatically refreshed
  • Upload history: Stored for 90 days for support purposes

🔒 Other Platforms (Currently Restricted)

The following platforms are currently in testing phase and temporarily restricted. When available, we will collect similar data for posting and account management purposes:

  • Instagram Business: Account info, posting permissions, media upload capabilities
  • Facebook Pages: Page management permissions, basic page information, posting data
  • LinkedIn: Profile/company information, posting permissions, professional content
  • TikTok: Account information, video upload permissions, profile data
  • Pinterest: Board information, pin upload capabilities, profile data

3. Content and Media

  • Media Files: Images, videos, and other content you upload for posting
  • Post Content: Text, captions, hashtags, and descriptions you create
  • Scheduled Posts: Content queued for future publication

Note: We temporarily store media files only for the purpose of publishing to your connected platforms. Files are automatically deleted after successful publishing or after 30 days, whichever comes first.

How We Use Your Information

Service Provision:

  • Authenticate and manage your account
  • Connect and manage your social media accounts
  • Schedule and publish content to your connected platforms
  • Provide real-time status updates and notifications

Communication:

  • Provide customer support and respond to inquiries
  • Optional: Marketing communications (with your consent)

Service Improvement:

  • Analyze usage patterns to improve our service
  • Troubleshoot technical issues and bugs
  • Develop new features based on user needs
  • Monitor and maintain service performance

Legal and Security:

  • Comply with legal obligations and law enforcement requests
  • Protect against fraud, spam, and abuse
  • Enforce our Terms of Service
  • Protect the rights and safety of our users

Information Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties.We may share your information only in the following limited circumstances:

Service Providers:

  • Supabase: Database hosting and authentication services
  • Vercel: Application hosting and deployment
  • Paddle: Payment processing (they handle all payment data securely)
  • Sentry: Error monitoring and debugging (anonymized error data only)

Social Media Platforms:

Content you choose to publish is shared with your connected social media platforms (YouTube, Instagram, Facebook, etc.) according to your publishing instructions.

Legal Requirements:

When required by law, court order, or government regulation, or to protect our rights, property, or safety, or that of our users.

Data Security

We implement industry-standard security measures to protect your information:

  • Encryption: All data is encrypted in transit (HTTPS/TLS) and at rest
  • Authentication: Secure OAuth 2.0 for social media platform connections
  • Access Control: Role-based access with principle of least privilege
  • Regular Audits: Security assessments and vulnerability testing
  • Incident Response: Procedures for handling potential security breaches
  • Data Minimization: We collect only the data necessary for service provision

Note: While we implement robust security measures, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security but continuously work to protect your information.

Your Privacy Rights

You have the following rights regarding your personal data:

Access & Portability:

Request a copy of all personal data we hold about you in a machine-readable format.

Rectification:

Correct any inaccurate or incomplete personal data we hold about you.

Erasure:

Request deletion of your personal data when no longer necessary for our services.

Objection:

Object to processing of your personal data for marketing purposes.

To exercise any of these rights, please contact us at postwave.contact.us@gmail.com. We will respond to your request within 30 days.

Data Retention

We retain your information only as long as necessary to provide our services:

  • Account Data: Until you delete your account or request deletion
  • OAuth Tokens: Until you disconnect social media accounts
  • Media Files: Automatically deleted after 30 days or successful publishing
  • Usage Logs: Retained for 12 months for security and troubleshooting
  • Payment Data: Handled by Paddle according to their retention policies
  • Support Communications: Retained for 24 months for quality assurance

When you delete your account, we will permanently delete all personal data within 30 days, except where we are legally required to retain certain information.

International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws than your jurisdiction.

Primary Data Locations:

  • United States (Vercel hosting, Supabase database)
  • European Union (Supabase EU regions for EU users)
  • Your local region (social media platform servers)

When transferring data internationally, we ensure appropriate safeguards are in place, including standard contractual clauses and adequacy decisions where applicable.

Children's Privacy

PostWave is not intended for use by children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that a child under 13 has provided us with personal information, we will take steps to delete such information promptly. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.

Policy Updates

We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons.

  • Material changes will be communicated via email or prominent notice in our service
  • Non-material changes will be posted with an updated "Last updated" date
  • Continued use of our service after changes constitutes acceptance of the updated policy

Contact Us

If you have any questions about this Privacy Policy or our privacy practices, please contact us:

Email: postwave.contact.us@gmail.com

We are committed to resolving any privacy concerns you may have and will respond to your inquiry within 30 days.