Privacy Policy

Last updated: 19 July 2026

This policy explains how Visionstack ("we", "us") handles data in our social media publishing application ("the App"). The App publishes content to social media accounts that we own and operate, and records how those posts perform.

1. Who this applies to

The App is an internal business tool. It is used only by Visionstack staff to manage Visionstack's own social media presence. It is not offered to the public and has no end-user sign-up.

2. What we collect

DataWhy
Access tokens for social accounts we own (Instagram, Facebook Page, LinkedIn) To publish posts to those accounts on our behalf
Content we create (captions, hashtags, images, video) To publish it and to avoid repeating topics
Aggregate performance metrics for our own posts (likes, comments, shares, saves, reach, impressions, video views) To measure what performs and improve future content

3. What we do not collect

4. Service providers

To operate the App we share the minimum necessary data with:

ProviderPurpose
Upload-PostPublishing posts to connected platforms and retrieving post metrics
Meta Platforms (Instagram, Facebook)Publishing and post insights for accounts we own
LinkedInPublishing and post analytics for pages we own
Google (Gemini API)Generating images and video for our posts
Anthropic (Claude)Generating post copy

Each provider handles data under its own privacy policy. We do not send them personal data about your audience — only our own content and prompts.

5. Where data is stored

Application data is stored in a PostgreSQL database on a private server controlled by Visionstack. Access tokens are stored server-side, restricted to the application user, and are never exposed in a browser or client application.

6. Retention

Published content and its performance metrics are kept while the account remains connected, because historical performance is what the system learns from. Access tokens are deleted immediately when an account is disconnected or when a deletion request is made.

7. Your rights and data deletion

You can request deletion of data associated with a connected account at any time. See our Data Deletion page for instructions and what gets removed.

8. Security

Access is restricted to authorised Visionstack staff. Credentials are held in server-side environment configuration with restricted file permissions, are excluded from version control, and are redacted from application logs.

9. Children

The App is a business tool and is not directed at children. We do not knowingly collect data relating to children.

10. Changes

If this policy changes we will update the date at the top of this page.

11. Contact

Questions about this policy or about data handling:
Visionstack
Email: hello@vizcommerce.com