1. Who we are
[Company legal name] (“Tapost”, “we”, “us”) operates the Tapost website and the Tapost application. Registered address: [address]. Contact: [email protected].
2. What we collect
Website visitors: anonymous usage analytics (pages viewed, referrer, device type). We use privacy-friendly analytics that do not use cookies to track you across sites [confirm tool].
Demo and contact requests: name, work email, company, role, team size and your message, so that we can respond.
Account holders: account details, brand assets you upload, briefs and generated posts, billing information (processed by our payment provider), and product usage data. See the in-app policy for full details.
3. How we use it
- To provide and improve the service.
- To respond to your requests.
- To send service and, with consent, marketing communications.
- To meet legal obligations.
We do not sell personal data. Your brand assets and posts are not used to train models for other customers.
4. Legal bases
Contract (providing the service), legitimate interests (security, analytics, improvement), consent (marketing, non-essential cookies) and legal obligation.
5. Sharing
We share data with processors who help us run the service — hosting ([Render]), email delivery, payments, analytics — under data-processing agreements. [List processors.]
6. International transfers
[Describe transfer mechanisms, e.g. SCCs, if data leaves the EEA/UK.]
7. Retention
Demo requests: 24 months. Account data: for the life of the account plus [30] days. Backups: up to [90] days.
8. Your rights
Depending on where you live, you may have rights to access, correct, delete or port your data, and to object to or restrict processing. Contact [email protected]. You can also complain to your local supervisory authority.
9. Security
Data is encrypted in transit and at rest. Access is restricted by role and logged.
10. Changes
We’ll post updates here and, for material changes, notify account holders by email.