AutoPos.io

Privacy Policy

Last updated: March 17, 2026

1. Introduction

AutoPos.io (“we”, “our”, or “us”) is a social media management platform operated by AutoPos.io. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application and services. Please read this policy carefully. By using AutoPos.io, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

We collect information in the following ways:

Account Information: When you register, we collect your name, email address, and password (stored in hashed form). If you sign in via Google or Facebook, we receive your name, email, and profile picture from those services.

Social Media Account Data: When you connect your social media accounts (Instagram, Facebook, etc.), we collect and store access tokens, account identifiers, and account names necessary to manage your social media on your behalf.

Content Data: We store the posts you create, schedule, or publish through our platform, including captions, hashtags, media URLs, and scheduling preferences.

Comment and Engagement Data: We collect comments and engagement data from your connected social media accounts to power features like the comment inbox and auto-reply.

Usage Data: We automatically collect information about how you interact with our service, including access times, pages viewed, and the features you use.

3. How We Use Your Information

We use the information we collect to:

— Provide, operate, and maintain the AutoPos.io platform

— Publish and schedule posts to your connected social media accounts

— Display and manage comments from your social media accounts

— Execute auto-reply rules you configure

— Send you verification emails and account-related notifications

— Improve and personalize your experience

— Protect against unauthorized access and abuse

4. Third-Party Services

AutoPos.io integrates with the following third-party services:

Meta (Facebook & Instagram): We use the Meta Graph API and Instagram API to publish content, read comments, and manage your social media presence. Your data shared with Meta is governed by Meta’s own privacy policy.

Google: If you choose to sign in with Google, we receive basic profile information. This is governed by Google’s privacy policy.

Brevo: We use Brevo for transactional emails (verification, password reset). Only your email address is shared with Brevo for this purpose.

5. Data Storage and Security

Your data is stored in a secure PostgreSQL database hosted on Railway. Passwords are hashed using bcrypt and are never stored in plain text. Access tokens for connected social accounts are stored securely. We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction.

6. Data Retention

We retain your personal data for as long as your account is active or as needed to provide you services. If you delete your account, we will delete your personal data within 30 days, except where we are required to retain it for legal purposes. Social media tokens are revoked upon disconnection of your accounts.

7. Your Rights

You have the right to:

— Access and receive a copy of your personal data

— Correct inaccurate personal data

— Request deletion of your personal data

— Disconnect your social media accounts at any time

— Withdraw consent for data processing

8. Data Deletion

You can request deletion of your data at any time by contacting us at support@autopos.io. You may also disconnect individual social media accounts from the AutoPos.io dashboard, which will remove the associated tokens and data. Upon account deletion, all your data including posts, templates, auto-reply rules, and connected account information will be permanently removed.

9. Cookies

AutoPos.io uses essential cookies and session tokens required for authentication and the proper functioning of the platform. We do not use advertising or tracking cookies. Third-party login providers (Google, Facebook) may set their own cookies during the authentication process.

10. Children’s Privacy

AutoPos.io is not intended for use by anyone under the age of 13. We do not knowingly collect personal information from children under 13. If we learn we have collected such data, we will delete it promptly.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by updating the “Last updated” date at the top of this page. Continued use of AutoPos.io after changes constitutes acceptance of the updated policy.

12. Contact Us

If you have questions about this Privacy Policy or wish to exercise your data rights, please contact us at:

AutoPos.io

Email: support@autopos.io