Privacy Policy
Last updated: September 6, 2026
This Policy explains how Postnero handles information when you use the web application to create, schedule, and publish photo carousels to connected social accounts such as TikTok and Instagram.
1. Information we process
- Account information, such as the email address used to access Postnero and, when you choose Google sign-in, Google’s verified email address and stable account identifier. Postnero does not receive your Google password.
- TikTok authorization and basic profile information, including identifiers and display information returned through Login Kit and creator info APIs.
- Instagram professional-account authorization and basic profile information, including the Instagram user identifier and username returned through Instagram Login. Postnero does not receive your Instagram password and does not publish to a personal Facebook profile.
- Photos, captions, titles, layouts, schedules, privacy selections, interaction and commercial disclosure choices, and publishing status needed to provide the service.
- Technical and operational information, such as timestamps, request logs, error details, and device or browser information used for security and reliability.
2. How information is used
Information is used to authenticate you, connect your authorized social accounts, store and render your projects, perform your requested publishing actions, show publishing status, secure and troubleshoot the service, and comply with legal obligations.
3. TikTok data and publishing
Postnero requests only the TikTok permissions needed for account identification, content posting, and authorized analytics (user.info.basic, video.publish, and, when approved and authorized, video.list). TikTok access tokens are stored in encrypted form. Content and publishing instructions are sent to TikTok only when required to complete actions you initiate or schedule. We use TikTok’s Content Posting API (Direct Post for photo carousels), query creator information so you can choose privacy and interaction settings, and use official Display API metrics for connected accounts when analytics access is available.
4. Instagram data and publishing
When you connect Instagram, Postnero uses Instagram Login for professional accounts and requests only instagram_business_basic and instagram_business_content_publish. Those permissions identify the connected professional account and publish photo or carousel posts that you review and approve. Instagram access tokens are stored in encrypted form. Content is sent to Instagram only to complete actions you initiate or schedule. Postnero does not request comment, messaging, insights, ads, or Facebook Page publishing permissions, and it does not cross-post to Facebook.
5. Sharing
Information may be shared with Google to provide optional Google sign-in; with Resend to deliver transactional account emails such as password-reset links; with TikTok and Instagram/Meta to provide connected-account and publishing features; with infrastructure providers that host or secure the service; when required by law; or to protect users, the service, and third parties. Postnero does not sell personal information.
6. Retention
Information is retained only while reasonably needed to provide the service, maintain security and records, resolve disputes, and meet legal obligations. Retention can vary by data type. Disconnecting a social account stops future authorized use but may not remove records that must be retained for legitimate operational or legal purposes.
7. Security
Reasonable technical and organizational safeguards are used to protect information. No online service can guarantee absolute security, so you should use a strong password and protect access to your connected accounts.
8. Your choices
You can choose what content to upload, whether to connect TikTok or Instagram, and when to publish. You can revoke Postnero’s TikTok access through TikTok’s account settings and Postnero’s Instagram access through Instagram’s account settings. Requests concerning access, correction, or deletion can be made through the in-app Settings page or by emailing support@postnero.com.
9. How to request deletion of your data
To delete connected-account credentials from Postnero, open Settings and disconnect the TikTok or Instagram account. Disconnecting cancels pending schedules for that account and removes stored access tokens. Published posts and delivery history may remain as operational records.
To request deletion of your Postnero account data, including profile information and remaining connected-account records, email support@postnero.com from the address on the account. We will confirm the request and delete or de-identify personal information that is no longer needed for security, dispute resolution, or legal obligations. You can also revoke platform access from TikTok or Instagram account settings.
10. Children
Postnero is not directed to children, and it is not intended for anyone who is not old enough to use the connected platforms or consent to data processing under applicable law.
11. Changes and contact
This Policy may be updated as the product changes. The date above identifies the current version. For privacy questions, email support@postnero.com.
Return to PostneroOptional usage analytics
If you opt in using the usage analytics checkbox, Postnero records public page visits, a random visitor identifier, referring website domains, and limited campaign tags. We connect that attribution to your account after sign-in. We do not record sessions, post contents, credentials, or sensitive URL parameters. You can stop future optional collection in Settings or the website footer. Operational account, publishing, and billing records remain necessary to run the service.