Privacy Policy
Last updated: April 15, 2026
1. Introduction
PostGun AI ("we", "us", or "our") operates the PostGun platform ("the Service"). This Privacy Policy explains how we collect, use, share, and protect your personal information when you use the Service. By using PostGun, you consent to the practices described in this policy.
2. Information We Collect
2.1 Information You Provide
- Account information: name, email address, profile picture, and authentication credentials when you sign up
- Organization data: workspace names, team member information, and role assignments
- Content: images, videos, text, captions, slideshows, and other media you upload or create through the Service
- Payment information: billing details processed through our third-party payment provider (we do not store full payment card numbers)
- Communications: messages you send to us via support channels or feedback forms
2.2 Information Collected Automatically
- Usage data: features used, actions taken, pages visited, timestamps, and session duration
- Device information: browser type, operating system, screen resolution, and device identifiers
- Network data: IP address, approximate geographic location, and referring URLs
- Cookies and similar technologies: session cookies for authentication, preference cookies for settings, and analytics cookies for service improvement
2.3 Information from Third Parties
- Social media platforms: when you connect accounts (e.g., TikTok, Instagram, YouTube), we receive profile information, account identifiers, and permissions you authorize
- Authentication providers: identity information from our sign-in provider (Clerk) including verified email and profile data
3. How We Use Your Information
We use collected information to:
- Provide, operate, and maintain the Service
- Process content creation, scheduling, and publishing requests
- Generate AI-powered content suggestions, captions, and media
- Manage your account, workspaces, and team permissions
- Process payments and manage credit balances
- Send transactional notifications (e.g., publishing confirmations, account alerts)
- Analyze usage patterns to improve features and user experience
- Detect, prevent, and address technical issues or abuse
- Comply with legal obligations
4. AI Processing
When you use our AI-powered features (content generation, image analysis, caption writing, automation agents), your input content is processed by AI models to generate results. We may use anonymized, aggregated interaction data to improve our AI systems. Your specific content is not used to train third-party AI models without your explicit consent.
5. Information Sharing
We do not sell your personal information. We may share information with:
- Service providers: cloud hosting (AWS/similar), payment processors, email delivery, analytics, and AI model providers — all bound by data processing agreements
- Social media platforms: content and account data necessary to publish on your behalf, based on the permissions you grant
- Workspace members: information shared within your organization is visible to other members based on their role permissions
- Legal requirements: when required by law, subpoena, or court order, or to protect our rights, safety, or property
- Business transfers: in connection with a merger, acquisition, or sale of assets, with prior notice to affected users
6. Data Retention
We retain your account information and content for as long as your account is active. Upon account deletion, we will remove your personal data within 30 days, except where retention is required by law or necessary for legitimate business purposes (e.g., billing records). Anonymized, aggregated data may be retained indefinitely for analytics.
7. Data Security
We implement industry-standard security measures to protect your information, including encryption in transit (TLS), encryption at rest, access controls, and regular security reviews. However, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security and encourage you to use strong passwords and safeguard your account credentials.
8. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access: request a copy of the personal data we hold about you
- Correction: request correction of inaccurate or incomplete data
- Deletion: request deletion of your personal data (subject to legal retention requirements)
- Portability: receive your data in a structured, machine-readable format
- Objection: object to processing based on legitimate interests
- Restriction: request restriction of processing in certain circumstances
- Withdraw consent: where processing is based on consent, withdraw it at any time
To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.
9. Cookies
We use essential cookies required for authentication and core functionality. We also use analytics cookies to understand how the Service is used. You can manage cookie preferences through your browser settings. Disabling essential cookies may prevent you from using the Service.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for international transfers, including standard contractual clauses and compliance with applicable data protection frameworks.
11. Children's Privacy
The Service is not directed to individuals under the age of 16. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child under 16, we will take steps to delete it promptly.
12. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via email or in-app notification at least 30 days before taking effect. The "Last updated" date at the top reflects the most recent revision.
13. Contact Us
For questions, concerns, or requests related to this Privacy Policy, contact us at [email protected].