socialeasy

Privacy policy

Effective 20 August 2026

Socialeasy (“we”, “us”) provides social media management tools at www.socialeasy.in — planning, publishing and measuring content across social networks on behalf of the people and teams who use it. This policy explains what we collect, why, and the controls you have. The short version: we collect only what the product needs to work, we encrypt what is sensitive, and we never sell your data.

Data we collect

Account data. Your email address, name, avatar and timezone, collected when you sign up (directly or via Google sign-in).

Connected social accounts. When you connect a channel (for example a Facebook Page or Instagram account), the network sends us an access token together with your account's name, handle and avatar. Access tokens are encrypted at rest with AES-256-GCM and are used only to perform the actions you ask for: publishing your posts, reading engagement metrics, and syncing comments and messages into your inbox.

Content you create. Posts, drafts, media files, comments, saved replies, link-in-bio pages and reports you build in the product.

Data from social networks. Engagement metrics (impressions, likes, follower counts and similar), and the comments and direct messages addressed to accounts you connected — retrieved through each network's official API and shown only inside your workspace.

Usage records. An audit trail of significant actions in your workspace (who published, who changed settings) and standard technical logs kept by our hosting providers.

How we use it

Solely to provide the service: authenticating you, publishing and scheduling your content to the networks you chose, showing analytics, powering your team's inbox and approvals, and notifying you about activity in your workspace. If you use the AI assistant, the text you ask it to work on is sent to Anthropic's API to generate the response; your social tokens and credentials are never included.

We do not sell personal data, we do not use your data for advertising, and data obtained from social network APIs is used only as described here, in line with each platform's terms (including the Meta Platform Terms).

Where it lives and who processes it

Socialeasy relies on a small set of infrastructure processors:

  • Supabase — database, authentication and file storage.
  • Vercel — application hosting and logs.
  • Anthropic — AI text generation, only when you invoke the AI assistant.
  • The social networks you connect (Meta, LinkedIn, X, Pinterest, TikTok, Google, Mastodon, Bluesky) — they receive the content you publish through us, under their own privacy policies.

Security

All traffic is encrypted in transit (HTTPS). Social access tokens are encrypted at rest with AES-256-GCM. Every database table is protected by row-level security so a workspace's data is only readable by its members, with role-based permissions inside each workspace.

Retention and deletion

Your data is kept for as long as your account is active. Disconnecting a social channel deletes its stored access tokens immediately. You can delete posts, media and other content at any time inside the product, and you can request full deletion of your account and everything in it — see data deletion instructions. Account deletion requests are completed within 30 days.

Your rights

You can access and update your profile in the app, export your content, and request a copy or the deletion of your personal data by contacting us. If you are in a jurisdiction with specific data protection rights (such as the GDPR or India's DPDP Act), we honour access, correction, portability and erasure requests accordingly.

Children

Socialeasy is a business tool and is not directed at children under 16.

Changes and contact

If this policy changes materially we will note the new effective date here. Questions and requests: kivishaprojects@gmail.com.