Privacy policy
Last updated: 2026-10-05. GDPR applies: the service is operated from the EU (Cyprus).
What we store
Account data — email address, timezone, locale, social-login identifiers if you use Google or GitHub sign-in, and which version of the terms of service you accepted when you created the account, and when. Sign-in codes and links are stored only as one-way hashes and deleted within the hour after they expire — including the address they were sent to, when it never became an account.
Connected accounts — platform handles and the OAuth/app-password credentials needed to publish, encrypted at rest with AES-256-GCM.
Content and writing context — your posts, their targets and delivery results, recurring-series settings, and the voice, audience, guardrail, and product-fact notes you ask an agent to remember. Uploaded media is kept at most 7 days after the post reaches a final state, then purged.
MCP access data — registered AI-client details, the workspace, permissions, and connected accounts you approve, credential hashes (never the plain token), and token use/revocation times.
Operational data — an audit log (who or which MCP credential did what, when, from which IP and user agent) kept for troubleshooting and abuse prevention, and standard server logs.
What we do not do
No advertising, no tracking pixels, no analytics scripts, no sale or sharing of personal data. Cookies are limited to the session cookie that keeps you logged in.
AI clients
When you connect an AI client, it chooses which MCP tools to call and sends their inputs to postmoderno; postmoderno returns only data and actions allowed by the permissions and account access you approved. Your conversation with that client is handled under the AI provider's own privacy terms and is not stored by postmoderno unless you explicitly save information as writing context or a post.
Legal bases
Contract performance (running the service you signed up for), legitimate interest (abuse prevention, security logging), and consent where you connect a social account.
Processors
Hosting: Hetzner Online GmbH (Germany/EU). Media storage: Cloudflare R2. Transactional email: Resend. Each processes data only on our instructions.
Your rights
Export — workspace owners can download all workspace data as JSON from the API (GET /api/orgs/<slug>/export).
Deletion — deleting your account (POST /api/me/delete) purges your workspaces, posts, media, connected-account credentials, and MCP tokens, cancels any subscription you pay for alone, and anonymizes the account record. This is irreversible, and immediate unless a payment provider has yet to confirm a cancellation, or something you have to settle — such as a workspace you own alone that still has members — came up after it began; it then finishes by itself, and you are emailed if it waits on you.
You also have the rights of access, rectification, restriction, portability, and objection under the GDPR, and the right to lodge a complaint with a supervisory authority — for us, the Office of the Commissioner for Personal Data Protection, Cyprus.
Retention
Account and content data: until you delete it. Media blobs: max 7 days after final post state. Encrypted database backups: 14 days. Server logs: 30 days.
Contact for data-protection requests: hello@postmoderno.io.