Privacy Policy
Last updated: March 25, 2026
Postida ("we", "us", or "our") is a social media content tool for HVAC and home services businesses. This Privacy Policy explains what information we collect, how we use it, and your rights. By using the Service, you agree to this policy.
1. Information We Collect
We collect information you provide when you create an account and use the Service:
- Account Information: Your name, email address, and password (stored securely using industry-standard methods).
- Payment Information: Billing is processed securely through Stripe. We never store your full credit card details on our servers. See Stripe's Privacy Policy for how they handle payment data.
- Content You Create: Topics, captions, and images you generate, edit, or schedule. This data is stored so you can view your post history and reuse past content.
- Connected Social Accounts: When you connect a Facebook Page, we store an encrypted access token, your page name, profile picture URL, and account ID. These are needed to publish posts on your behalf.
- Usage Data: Login timestamps, IP addresses, browser type, and general feature usage. This helps us operate the Service and detect abuse.
2. How We Use Your Information
- Deliver and operate the Service, including content generation and publishing posts on your behalf.
- Process payments and manage your subscription.
- Send service-related emails such as verification, password resets, and billing notices.
- Monitor for fraud, abuse, and unauthorized access.
- Comply with legal obligations where required.
We do not use your data for targeted advertising. We do not sell your personal information.
3. Social Account Access
When you connect a Facebook Page, we access limited data through Meta's API to make the publishing features work:
- What we access: Your connected Page name, account ID, profile picture, and an access token with the permissions you grant.
- Why: The token is used only to publish posts you approve or schedule. We do not read your personal timeline, private messages, or follower lists.
- What we do not do: We never post without your action or a scheduled post you set up. We never share your tokens with anyone.
- Token expiration: Access tokens expire periodically. We attempt to refresh them automatically. If a token cannot be refreshed, you will need to reconnect your account.
You can disconnect your social accounts at any time from the Connections page. Disconnecting immediately removes the stored token from our system. You can also revoke access directly through your Facebook Business Integrations settings.
Postida is not affiliated with, endorsed by, or sponsored by Meta Platforms, Inc.
4. Third-Party Services
We do not sell your personal information. We share data only with these service providers as needed to run the Service:
- AI Content Generation: When you use the content generation feature, your topic and style preferences are sent to a third-party AI provider to create captions and images. We do not include your login credentials or payment details in these requests.
- Social Publishing: Post content, captions, and images are sent to Meta's API to publish on your behalf. This is required for the publishing feature to work.
- Stripe: Handles all payment processing. We receive only a reference ID and subscription status from Stripe.
- Email Delivery: Transactional emails (verification, password reset, billing) are sent through a third-party email provider.
- Server Hosting: Our application runs on third-party hosting infrastructure under strict data processing agreements.
We may also share information if required by law, court order, or to protect the safety of our users or the public.
5. Data Security
We use industry-standard security practices to protect your information, including encrypted data storage, secure connections (HTTPS), and access controls. No system is 100% secure, and we cannot guarantee absolute security. If you believe your account has been compromised, contact us immediately at support@appdore.com.
6. Your Rights
- Access: You may request a summary of the personal data we hold about you.
- Correction: You can update your account information anytime from your Account Settings.
- Deletion: You can delete your account from Account Settings. This permanently removes your personal data, post history, and generated content, subject to the retention rules below.
- Disconnect social accounts: You can disconnect any social account at any time, immediately revoking our access.
- Opt out of emails: You can unsubscribe from non-essential emails using the link in those emails. Transactional emails (billing, security, verification) cannot be opted out of while your account is active.
To exercise any of these rights, contact us at support@appdore.com. We will respond within 30 days.
7. Cookies and Tracking
We use essential session cookies for authentication and security. These expire when your session ends or you log out.
We also use analytics tools to understand how visitors use our website. These tools may use cookies to collect general traffic data such as page views and session length. This data is aggregated and does not personally identify you.
You can manage or disable cookies through your browser settings. Disabling cookies may affect some features.
8. Data Retention
We keep your data as long as your account is active. When you delete your account:
- Your personal information, post history, and generated content are permanently deleted.
- Social account tokens are immediately revoked and deleted.
- Billing records may be retained as required by law. This is handled by Stripe.
- Anonymized, aggregated usage data that cannot be linked to any individual may be kept.
9. Children's Privacy
Postida is a business tool for adults. We do not knowingly collect personal data from anyone under 13. If we learn we have collected data from a child under 13, we will delete it promptly.
10. International Users
The Service is operated from the United States. If you access the Service from outside the U.S., your information may be transferred to and stored in the United States.
11. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated by email at least 14 days before they take effect. Continued use of the Service after changes take effect means you accept the updated policy.