Privacy Policy
Last updated: 16 August 2026
1. Who we are
Agency Social OS ("we", "the Service") is a social media management workspace used by an agency to publish and analyse content on behalf of its own brands and clients. Contact: sanglipravin5@gmail.com.
2. Information we collect
- Account data — name and email address of workspace users, created when you sign up or sign in with Google.
- Connected platform data — when you authorise Instagram, Facebook, YouTube or Google Business Profile, we store the profile id, name, handle, avatar URL and the access tokens returned by the platform.
- Content and analytics — posts you create or schedule, media you upload, and aggregated metrics (reach, impressions, engagement, followers) pulled from the platform APIs.
- Operational data — tasks, invoices, reports and audit logs generated inside the workspace.
3. How we use it
Data is used solely to operate the Service: publishing scheduled content, displaying analytics dashboards, generating client reports and maintaining an audit trail. We do not sell personal data, and we do not use platform data for advertising or profiling.
4. Storage and security
Data is stored in a managed Postgres database with row-level security so each workspace can only read its own records. OAuth access and refresh tokens are encrypted at rest, held server-side only, and are never exposed to the browser. Access to production data is limited to the workspace owner.
5. Sharing
We share data only with the platform APIs required to fulfil your requests (Meta Graph API, Instagram Graph API, YouTube Data API, Google Business Profile API) and with our infrastructure providers acting as processors. We disclose data to authorities only where legally required.
6. Retention and deletion
Platform tokens and synced data are retained while the connection is active. Disconnecting a profile in the workspace revokes the permission with the platform and deletes the stored tokens and analytics snapshots for that profile immediately.
You may also request deletion from Facebook or Instagram directly. Meta then calls our data deletion callback and we remove the associated records; you can check the outcome on our data deletion status page. To delete your entire workspace, email us and we will erase all associated data within 30 days.
7. Your rights
You can request access to, correction of, or deletion of your personal data at any time by emailing us. We respond within 30 days.
8. Cookies
We use a single first-party session cookie/local storage entry to keep you signed in. No third-party advertising or tracking cookies are set.
9. Changes
We may update this policy; the revision date above always reflects the current version. Material changes will be announced inside the workspace.