Private self-hosted instance

Privacy Policy

How this private Postiz installation processes information when connecting to social platforms, scheduling content, and using optional AI features.

Effective and last updated: August 13, 2026

1. Scope and operator

This policy applies only to the self-hosted Postiz installation at postiz.adeleyeadeyemi.com (the “Service”). The Service is privately operated for the operator’s own social-media management. It is not offered to the public, external customers, or paying subscribers.

This installation uses the open-source Postiz software but is operated independently. Gitroom Limited, Gitroom LLC, and the hosted service at postiz.com do not operate this installation and are not responsible for its data practices.

2. Information processed

The Service may process the following information:

  • Account information used to secure the installation, such as name, email address, profile image, password hash, session data, and workspace settings.
  • Connected-platform information, including OAuth access and refresh tokens, granted permissions, account identifiers, usernames, profile information, channel or page identifiers, and available account statistics.
  • Content placed in the Service, including posts, captions, images, videos, links, schedules, prompts, drafts, publication status, and analytics returned by connected platforms.
  • Technical information needed to operate and protect the Service, such as IP address, browser and device information, login events, request logs, errors, and performance data.

3. How information is used

Information is used only to:

  • authenticate and secure access to this private installation;
  • connect the operator’s accounts and perform actions the operator requests, such as publishing or retrieving analytics;
  • store, schedule, preview, and manage the operator’s content;
  • diagnose failures, maintain reliability, prevent misuse, and comply with applicable legal obligations; and
  • provide optional AI-assisted drafting when the operator chooses to use it.

Information is not sold, rented, used for advertising, or used to provide marketing services to third parties.

4. Connected platforms and service providers

The Service sends information to a connected platform only as needed to carry out the operator’s request. For example, scheduled content and media are sent to the selected social platform, and analytics are received from that platform. Each platform processes information under its own terms and privacy policy.

Data may also be processed by infrastructure used to run this installation, such as hosting, database, storage, email, monitoring, content-delivery, and security providers. Prompts and selected inputs are sent to the configured language-model provider only when an AI feature is used. Those providers process information under their own terms and privacy policies, which the operator should review when configuring the Service.

5. Google and YouTube data

YouTube features use YouTube API Services. Their use is subject to the YouTube Terms of Service and the Google Privacy Policy. The Service’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.

Google access can be revoked at any time from Google’s third-party connections page. Revocation prevents future access but does not automatically delete information already stored in this installation.

6. Other social platforms

Use of connected accounts remains subject to the relevant platform’s terms and privacy policy, including the X Terms of Service, Meta Terms, LinkedIn User Agreement, and TikTok Terms of Service. Access can be revoked in the Service or through the connected platform’s application and security settings.

7. Cookies and local storage

The Service uses cookies and browser storage where necessary for authentication, security, language, and interface preferences. Disabling necessary cookies may prevent sign-in or other features from working. This private installation does not use this information for cross-site advertising.

8. Retention and deletion

Connected-platform tokens are retained while a connection remains active. Content, schedules, publication history, and analytics remain until deleted by the operator or the installation is removed. Operational logs and backups, if configured, may remain for a limited period under normal rotation and recovery procedures.

Disconnecting a platform stops future access. The operator can also delete locally stored content and account data directly from the Service or its self-hosted storage.

9. Security

Reasonable technical and administrative safeguards are used, including HTTPS encryption in transit, hashed passwords, restricted server access, and access controls. No internet-connected system can be guaranteed completely secure.

10. Other people’s data

Connected platforms may return public profile information, comments, messages, or audience analytics belonging to other people. Such data is processed only to manage the operator’s own accounts and content. The operator is responsible for using that information lawfully and respecting applicable platform rules and individual rights.

11. Children

The Service is not directed to children and is not made available for public registration. The operator does not knowingly use it to collect personal information from children.

12. Changes and contact

This policy may be updated when the installation’s features, providers, or data practices change. The current effective date is shown above.

For questions, deletion requests, or concerns about information processed by this installation, contact the operator through the contact page. See the Terms of Use for the rules governing this Service.