Privacy Policy
Last updated: April 2, 2026
1. Who We Are
Social is a product of TheGoodSite.co ("we," "us," "our"), a digital agency headquartered in the United States. This policy applies to the social media management platform at social.thegoodsite.co and all related services.
2. Information We Collect
We collect information you provide directly and information generated through your use of our platform:
- Account information: name, email address, and password when you register.
- Connected social accounts: when you connect a social platform (Instagram, Facebook, TikTok, LinkedIn, YouTube, Pinterest, Snapchat, or Threads), we receive an OAuth access token and basic profile information (username, profile picture, account ID) from that platform.
- Content you create: posts, captions, media files, campaigns, and other content you create or upload.
- Analytics data: engagement metrics, follower counts, and performance data retrieved from your connected social accounts.
- Billing information: payment details are processed by Stripe. We do not store your full credit card number.
- Usage data: pages visited, features used, browser type, and IP address for service improvement.
3. How We Use Your Information
- Publish and schedule posts to your connected social accounts on your behalf.
- Display analytics and insights from your social platforms.
- Provide AI-powered features (caption generation, hashtag suggestions, performance predictions) using anonymized content signals.
- Process payments and manage your subscription.
- Send transactional emails (password resets, billing receipts, account notifications).
- Improve, maintain, and secure the platform.
4. Third-Party Services
We integrate with the following services, each governed by their own privacy policies:
- Supabase: database hosting and authentication.
- Stripe: payment processing.
- Anthropic (Claude): AI-powered content features. We do not send personally identifiable information to AI models.
- Meta, TikTok, LinkedIn, Google, Pinterest, Snapchat: social platform APIs accessed via your authorized OAuth tokens.
- Vercel: application hosting.
5. Data Storage and Security
Your data is stored in Supabase (PostgreSQL) with row-level security policies that isolate each workspace's data. OAuth tokens are encrypted at rest. All connections use TLS/HTTPS. Media files are stored in Supabase Storage with access controls.
6. Data Retention and Deletion
We retain your data for as long as your account is active. You can request deletion of your account and all associated data at any time by emailing privacy@thegoodsite.co or using the account deletion option in Settings. Upon deletion, we remove your data within 30 days, except where retention is required by law.
For Facebook/Instagram data specifically, you can also request deletion via our data deletion callback.
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Request deletion of your data.
- Export your data in a portable format.
- Withdraw consent for data processing.
- Object to or restrict certain processing activities.
To exercise any of these rights, contact us at privacy@thegoodsite.co.
8. Cookies
We use essential cookies for authentication and session management. We do not use third-party advertising or tracking cookies.
9. Children's Privacy
Our platform is not intended for users under 16 years of age. We do not knowingly collect data from children.
10. Changes to This Policy
We may update this policy from time to time. We will notify you of material changes via email or an in-app notice. Continued use of the platform after changes constitutes acceptance of the updated policy.
11. Contact
If you have questions about this privacy policy, contact us at:
privacy@thegoodsite.co
TheGoodSite.co
United States