Privacy Policy
Last updated: October 3, 2026
This document contains bracketed placeholders (e.g., [contact email]) to be completed, and should be reviewed by legal counsel before publication.
1. Introduction
PresenceHub (“PresenceHub”, “we”, “us”, or “our”) is a social media planning and publishing service that lets you connect your social accounts, compose and schedule posts, and publish them to your connected channels. This Privacy Policy explains what personal data we collect when you use PresenceHub, how we use and share it, and the choices you have.
If you connect a Facebook Page or Instagram account, see Facebook and Instagram Data for exactly what we receive from Meta and how we handle it. To delete your data, see How to Delete Your Data.
By creating an account or using PresenceHub, you agree to the collection and use of your information as described in this policy. If you have questions at any time, you can reach us at [contact email].
2. Data We Collect
Account information
When you register, we collect your name, email address, and a password. Your password is stored only in hashed form — we never store or have access to your plain-text password. We also record whether your email address has been verified.
Session and device information
When you sign in, we record the IP address and browser user agent associated with your session. We use this information for security and to keep you signed in.
Content and media
We store the content you create in PresenceHub, including post drafts, captions, scheduled posts, and the images and videos you upload. For uploaded media we also store technical metadata such as the original filename, file type, file size, dimensions, and video duration, along with any edits you apply (such as crop or trim settings).
Connected social accounts
When you connect a social media account (such as a Facebook Page or Instagram account), we store the account identifiers, handles, and profile details the platform shares with us, together with the access tokens the platform issues so that we can publish on your behalf. We never receive or store your social media passwords. The Facebook and Instagram Data section describes the data we receive from Meta in detail.
Workspace and team data
We store the workspaces you create or join, your role within each workspace, and the membership of your teams.
Activity logs
We keep logs of actions taken in your account (for example, creating or publishing a post, or connecting a channel), as well as records of publishing attempts and their outcomes, so that we can provide the service reliably, troubleshoot problems, and maintain an audit trail.
3. How We Use Your Data
We use the data described above to:
- Provide and operate the service — create and maintain your account, store your drafts and media, and run your workspaces.
- Publish on your instruction — deliver your posts and media to the social platforms you have connected, at the times you schedule.
- Send transactional email — such as email verification and password reset messages. We do not send marketing email without your consent.
- Keep the service secure — authenticate your sessions, detect misuse, and maintain audit logs.
- Support you — investigate and resolve issues you report.
- Show you analytics — display performance metrics for the channels you connect and the posts you publish through PresenceHub.
We do not sell your personal data, and we do not use your data for advertising.
4. Facebook and Instagram Data
This section applies when you connect a Facebook Page or an Instagram professional account to PresenceHub. It describes the data we receive from Meta Platforms (“Meta”) through its APIs (“Meta platform data”), and how we use, keep, share, protect, and delete it. We access Meta platform data only with the permissions you grant when you connect, and only to provide the features described here.
What we receive from Meta
- Account and Page identifiers — the ID Meta assigns to you for PresenceHub, and the IDs of the Facebook Pages, businesses, and Instagram accounts you choose to make available.
- Profile details — your name as it appears on Facebook or your Instagram username, Page names and links, Instagram account type, profile picture link, and your role or permitted tasks on each Page (used to check that you are allowed to publish to it).
- Access tokens — the credentials Meta issues so that PresenceHub can act on your behalf. We never receive your Facebook or Instagram password.
- Post data — the IDs Meta assigns to posts you publish through PresenceHub, and Meta’s responses when we publish them (for example, success or error details).
- Insights — performance metrics for your connected Pages and accounts (such as daily views and follower counts) and for posts you publish through PresenceHub (such as views, reach, reactions, comment counts, shares, and saves). Comment and reaction counts on your Page posts: to produce these, PresenceHub requests permission to read Page comments and reactions, but stores only the totals. We do not store the names of people who commented or reacted, or the text of their comments.
How we use it
- Identifiers, profile details, and access tokens — to show you which Pages and accounts you can connect, to display them in your workspace, and to publish the posts you create or schedule to the channels you choose.
- Post data — to confirm that a post was published, link it to its insights, and help you troubleshoot failed posts.
- Insights — to show analytics for your channels and posts inside your PresenceHub workspace, including reaction and comment totals for your posts.
We do not use Meta platform data for advertising, to build profiles of you or your audience, or for any purpose other than providing PresenceHub to you.
How long we keep it
- While connected — we keep Meta platform data for as long as the connection is active, and refresh insights regularly so your analytics stay up to date.
- When you disconnect a channel — we stop publishing to that Page or account and stop collecting its insights.
- When you revoke a connection — we delete the stored access tokens for that connection and all of its channels, and stop publishing and collecting insights. For a Facebook connection, we also ask Meta to remove the permissions you granted PresenceHub. For an Instagram connection, you can also remove PresenceHub from your Instagram settings (see Remove PresenceHub from Facebook or Instagram). Scheduled posts for those channels will not be published unless you reconnect.
- When you remove PresenceHub on Facebook or Instagram — Meta notifies us, and we mark the connection as revoked, delete the stored access tokens for that connection and all of its channels, and stop publishing and collecting insights. Scheduled posts for those channels will not be published unless you reconnect.
- Everything else — identifiers, profile details, post data, and insights already collected stay in your workspace history until you delete them using one of the options in How to Delete Your Data, or until your account is deleted.
Who we share it with
We do not sell, rent, license, or resell Meta platform data, and we do not share it with advertisers, data brokers, or analytics providers. Meta platform data is shared only:
- With Meta — when we publish posts and request insights on your behalf.
- With our hosting provider ([hosting provider]) — which runs the servers and databases where PresenceHub stores data, acting only on our instructions.
- With members of your workspace — who can see the channels, posts, and analytics in workspaces you share with them.
- When required by law — if we are legally required to disclose it.
How we protect it
Access tokens are encrypted at rest using AES-256 encryption, are never sent to your browser, and are used only by PresenceHub’s servers to call Meta’s APIs. All data is transmitted over encrypted (HTTPS) connections. Access to production systems and to the internal administration dashboard is limited to authorized PresenceHub staff. See Security for more detail.
5. Third-Party Services
We share data with a small number of service providers, only to the extent needed to operate PresenceHub:
- Meta Platforms (Facebook and Instagram) — when you connect a Facebook or Instagram account and publish a post, your post content and media are transmitted to Meta through its APIs. Meta’s handling of that data is governed by Meta’s own terms and privacy policy. See Facebook and Instagram Data for what we receive from Meta.
- Hosting provider ([hosting provider]) — runs the servers and databases where PresenceHub stores your data.
- Email delivery providers (Resend, Amazon SES) — used to send transactional email such as verification and password reset messages to your email address.
- Cloud storage providers (Amazon Web Services S3, Cloudflare R2) — used to store the media files you upload.
We do not use third-party analytics, advertising, or tracking services, and we do not share your data with data brokers. We may disclose information if required to do so by law or to protect the rights, safety, or security of PresenceHub or its users.
7. Data Retention
We retain your data for as long as your account is active, except where this policy says otherwise. Facebook and Instagram Data explains how long we keep that data and what happens when you disconnect, and How to Delete Your Data explains how to delete it.
We may keep certain records for longer where we are required to by law.
8. How to Delete Your Data
You can delete the data we hold about your Facebook and Instagram accounts, or your whole PresenceHub account, in any of these ways.
Option 1: Revoke the connection in PresenceHub
Sign in, open Accounts from the sidebar, find the Facebook or Instagram connection, and choose Revoke connection. We immediately delete the stored access tokens for that connection and its channels. For a Facebook connection, we also ask Meta to remove the permissions you granted PresenceHub; for an Instagram connection, remove PresenceHub from your Instagram settings as described in Remove PresenceHub from Facebook or Instagram. To also delete the rest of the data for that connection, remove PresenceHub on Facebook or Instagram and request deletion, or email us.
Option 2: Remove PresenceHub from Facebook or Instagram
You can remove PresenceHub from your Facebook or Instagram settings at any time, for example under the “Business integrations” or “Apps and websites” settings. When you do, Meta tells us, and we immediately stop using your access and delete the stored access tokens for that connection and its channels. If you also ask for your data to be deleted, Meta sends us a deletion request and we then delete, automatically:
- the access tokens for that Facebook or Instagram account;
- the Page and account identifiers, names, usernames, profile details, and profile picture links we received;
- the insights we collected for those channels and posts;
- the post IDs and publishing responses we received from Meta; and
- Meta identifiers in our activity and audit logs.
You will receive a confirmation code and a link to a page where you can check the status of your request. We keep a record of the request itself (including the Meta-assigned ID and confirmation code) so that the status page keeps working and repeat requests are handled correctly. Posts, drafts, and media you created in your PresenceHub workspace are your workspace content and are not removed by this request; you can delete them yourself in PresenceHub, or email us.
If you connect the same Facebook or Instagram account to PresenceHub again later, it is treated as a new connection. The insights and post links we deleted are not restored, and posts you published before the deletion will no longer show insights.
Option 3: Email us
Email [contact email] from the address you use to sign in to PresenceHub, and tell us whether you want us to delete your Facebook and Instagram data or your entire PresenceHub account. We will confirm your request and complete it within 30 days, except where we are required by law to keep certain records.
9. Security
We take reasonable technical and organizational measures to protect your data, including:
- Passwords stored using industry-standard hashing (bcrypt).
- Social platform access tokens encrypted at rest using AES-256 encryption and never exposed to your browser.
- Session cookies set as HTTP-only and secure in production, limiting exposure to scripts and insecure connections.
- Data transmitted over encrypted (HTTPS) connections.
- Rate limiting on authentication endpoints to deter abuse.
No method of transmission or storage is completely secure, and we cannot guarantee absolute security. If we become aware of a breach affecting your personal data, we will notify you as required by applicable law.
10. Internal Access
A limited number of PresenceHub staff can access user and workspace data through an internal administration dashboard, solely for operating the service, providing support, and investigating problems or abuse. Staff access is restricted to what is necessary for those purposes.
11. Children's Privacy
PresenceHub is not directed at children under 13, and we do not knowingly collect personal data from children under 13. If you believe a child has provided us with personal data, please contact us at [contact email] and we will delete it.
12. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the “Last updated” date at the top of this page and, where appropriate, notify you by email or through the service. Your continued use of PresenceHub after changes take effect constitutes acceptance of the updated policy.
13. Contact Us
If you have any questions about this Privacy Policy or how we handle your data, contact us at [contact email].
You can also review the terms that govern your use of the service in our Terms of Use.