PostZenly

Privacy Policy

Effective date: September 25, 2026

This policy explains what information PostZenly collects, why we collect it, and what rights you have over it. PostZenly is a self-hosted multi-platform social media scheduling tool. The site operator is ANzik Chaudhry (postzenly.com).

1. Information We Collect

We collect only what is needed to run the scheduling service:

2. How We Use It

We do not run analytics or tracking SDKs, we do not show advertising, we do not sell your data, and we do not use your data for any purpose other than operating the service you asked for.

3. How OAuth Tokens Are Stored

OAuth tokens are stored encrypted at rest using Fernet encryption derived from the server's SECRET_KEY. They are decrypted only when the publishing worker needs them to post on your behalf, and are never exposed in the interface or transmitted to third parties beyond the platform the token belongs to.

4. Data Sharing

We share your data only with the social platforms you have explicitly connected, and only the content necessary to publish your scheduled posts (for example, your caption and media are sent to YouTube when a scheduled YouTube upload runs). We do not share data with advertisers, data brokers, or any other third parties.

5. Your Rights

You control your data at all times:

6. Data Retention

We keep your data only for as long as you use the service. Disconnected platform tokens are deleted immediately. Scheduled posts and media are deleted when you delete them. When you request account deletion, all associated data — tokens, posts, media, and credentials — is permanently removed.

7. Security

We protect your data with reasonable safeguards: encrypted storage of OAuth tokens at rest, password-protected dashboard accounts, and secure (HTTPS) connections. No system is completely immune to attack, so we encourage you to use a strong, unique password for your dashboard account.

8. Self-Hosting Note

PostZenly is a self-hosted application: each customer runs their own instance on their own hosting. The operator of each instance is the data controller for that instance. This policy describes the official PostZenly instance at postzenly.com; if you use a PostZenly instance hosted by someone else, that operator's own policy applies.

9. Contact

For any privacy questions or data requests, contact us at support@postzenly.com.