Our Core Privacy Commitments
We believe that enterprise marketing software should be completely transparent. We never sell your personal data or brand intellectual property. Your Brand Brain guidelines, proprietary assets, and audience analytics are strictly isolated and are never used to train public foundation models.
1. Information We Collect
We collect information that you provide directly to us when creating an account, configuring your Brand Brain, connecting social networks, and utilizing our autonomous publishing platform.
2. How We Use Your Information
We process your data strictly to deliver, operate, and maintain the autonomous services you configure:
- Generating brand-aligned social content and creatives matching your guidelines.
- Scheduling and autonomously publishing posts to your connected social channels upon your approval.
- Measuring post performance at predefined intervals (24h, 48h, 72h) to compute mathematical performance baselines.
- Providing closed-loop strategic recommendations to optimize future content schedules.
- Detecting and mitigating unauthorized access, abuse, and technical failures.
- Managing billing, customer support, and system notifications.
3. AI Architecture & Foundation Model Privacy
Uplenco utilizes Google Gemini and Nano Banana generative vision systems. We adhere to rigorous commercial API privacy agreements:
Your prompts, brand guidelines, and proprietary marketing copy are never used by Google or third-party AI providers to train public models.
Data sent to AI endpoints is processed statelessly in transient memory and discarded immediately following generation.
4. Social Media Platform Integrations
When you connect Instagram, Facebook, or LinkedIn accounts, we interface strictly through their official developer APIs:
- Encrypted Tokens: OAuth access tokens are stored securely in protected backend storage and encrypted at rest.
- Strict Scopes: We only request the minimum permissions necessary to post content and read analytics for authorized business accounts.
- Revocation: You can disconnect your social profiles at any time from the Social Accounts page or from within your Meta / LinkedIn settings, immediately invalidating access tokens.
5. Data Security & Storage
We employ industry-standard administrative, physical, and technical safeguards:
• Encryption: All data in transit is encrypted using modern TLS 1.3 cryptographic protocols. Databases are secured with robust access controls.
• Tenant Isolation: Our multi-tenant architecture strictly isolates data by Organization ID and Brand ID. One customer cannot view or query another organization's data.
• Access Restriction: Production database access is strictly restricted to authenticated core backend services and authorized security engineers.
6. Your Rights & Data Deletion (GDPR / CCPA)
Regardless of your geographic location, we respect your rights regarding your personal and business data:
7. Contact & Privacy Officer
If you have any questions, concerns, or requests regarding this Privacy Policy or our data handling practices, please contact our Data Protection team:
