Privacy Policy
Last updated: 30 May 2026
This Privacy Policy explains how Socialiser App Ltd (“Soclo”, “we”, “us”), the company behind the Soclo app, collects, uses, and protects your personal data when you use our website, mobile apps, and services (together, the “Service”). We are the data controller for the purposes of UK data protection law (UK GDPR and the Data Protection Act 2018).
1. Data we collect
- Account details — your name, email address, and password (stored hashed) when you create an account.
- Business & brand details — information you provide about your business (name, address/location, industry, description, tone, brand colours, contact details) so the Service can publish and generate content for you.
- Connected social accounts — when you link a platform (e.g. Instagram, Facebook, TikTok, YouTube, Google Business), we store an access token that lets us act on your behalf. Tokens are encrypted at rest and held server-side — never in the app or sold. We only request the permissions needed for the features you use.
- Content — posts, captions, images, videos, schedules, and replies you create or upload.
- Usage & device data — app interactions, feature usage, crash diagnostics, device type and operating system, and approximate region — used to run and improve the Service.
- Payment data — subscriptions are processed by Apple, Google, or our payment provider. We receive confirmation of your subscription status but do not store your full card details.
2. How we use your data
- To provide the Service — publishing, scheduling, inbox, analytics, and reviews.
- To publish or message on your behalf only when you approve it.
- To generate AI-assisted captions, hashtags, and content using the brand details you provide.
- To process payments, manage subscriptions, and prevent fraud.
- To provide support, send service messages, and (with your consent) product updates.
- To keep the Service secure, debug issues, and comply with our legal obligations.
3. Legal bases for processing
We rely on: performance of a contract (to deliver the Service you sign up for); consent (e.g. optional marketing, notifications, and connecting third-party accounts); legitimate interests (to secure, maintain, and improve the Service); and legal obligation (e.g. accounting and responding to lawful requests). You can withdraw consent at any time.
4. Sharing & sub-processors
We do not sell your personal data. We share it only with service providers who process it on our behalf under contract, including: cloud hosting and storage (Cloudflare, Supabase), our publishing infrastructure and any social aggregation provider we use to deliver posts, payment providers (Apple, Google, and/or our card processor), AI providers (to generate content you request), product analytics (PostHog), crash and error monitoring (Sentry), and subscription management (RevenueCat). Each is bound to use your data only as needed to provide their service to us.
5. Connected platforms
When you connect a third-party platform, you authorise us to access certain data and act within the permissions you grant. Your use of those platforms is also governed by their own terms and privacy policies. You can disconnect any platform at any time in the app, which revokes our access and deletes the stored token.
6. AI features
Some features use AI to draft captions, hashtags, and content from the brand details and prompts you provide. Content you send for AI generation is processed by our AI providers solely to return a result to you. We do not permit your content to be used to train third-party AI models without your consent. AI output is suggestive — you review and approve everything before it is published.
7. Data retention
We keep your data for as long as your account is active and as needed to provide the Service. If you delete your account, we delete or anonymise your personal data within a reasonable period, except where we must retain limited records to meet legal, tax, or security obligations.
8. Your rights
Under UK GDPR you have the right to access, correct, delete, restrict, or object to processing of your data, to data portability, and to withdraw consent. To exercise any right, email privacy@soclo.app. You also have the right to complain to the UK Information Commissioner’s Office (ICO) at ico.org.uk.
9. Security
We protect your data with encryption in transit (HTTPS) and at rest, encrypted storage of access tokens, access controls, and regular review. No system is perfectly secure, but we work hard to protect your information and will notify you and the relevant authority of any breach as required by law.
10. International transfers
Some providers may process data outside the UK/EEA. Where they do, we rely on appropriate safeguards such as the UK International Data Transfer Agreement or equivalent approved mechanisms.
11. Children
Soclo is a business tool intended for users aged 18 and over. We do not knowingly collect data from children. If you believe a child has provided us data, contact us and we will delete it.
12. Deleting your account & data
You can request deletion of your account and associated personal data at any time from within the app, or by emailing privacy@soclo.app. We will action verified requests in line with the rights described above.
13. Changes to this policy
We may update this policy from time to time. We will post the new version here with an updated date and, for material changes, notify you in the app or by email.
14. Contact us
Socialiser App Ltd
Registered in England and Wales — Company No. 17243028
Email: privacy@soclo.app