Privacy Policy
SocialNexis
1. Introduction
This Privacy Policy describes how SocialNexis (“SocialNexis,” “we,” “us,” or “our”) collects, uses, discloses, and protects information when you use our social media automation platform and related services (collectively, the “Service”). The Service enables you to automate, schedule, and manage activity on supported third-party social media platforms, currently including LinkedIn and X (formerly Twitter), and any additional platforms we may support from time to time (each a “Supported Platform”).
For purposes of the EU and UK General Data Protection Regulation, SocialNexis acts as the data controller of the personal data described in this Privacy Policy. For any privacy-related inquiry, data subject request, or service of legal process, please write to privacy@socialnexis.com. The full legal identity of the operator of SocialNexis will be disclosed in response to any lawful request reasonably necessary for that purpose.
By accessing or using the Service, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with this Privacy Policy, you must not access or use the Service.
This Privacy Policy applies to all users of the Service, including visitors, registered users, and subscribers.
2. Information We Collect
2.1 Information You Provide Directly
When you register for, access, or use the Service, we may collect the following information that you provide directly:
Account Information
- Full name
- Email address
- Password (stored in encrypted form)
- Phone number (optional)
- Billing address
- Company name and title (optional)
- Profile photograph (optional)
Payment Information
- Credit card or debit card number
- Billing address
- Payment processing information
Supported Platform Account Information
When you connect a Supported Platform account (such as LinkedIn or X / Twitter) to the Service, we collect or process the following information about that account:
- Public profile URL and handle or username
- Publicly available profile information (name, headline, industry, location, profile picture, connection or follower counts)
- Content and engagement data (posts, comments, replies, reactions, reposts, likes, and engagement metrics)
- Activity data necessary to operate the Service on your behalf (scheduled actions, action history, performance analytics)
Content You Create
- Posts, comments, and messages drafted or scheduled through the Service
- Content preferences and templates
- AI prompt inputs and customizations
- Campaign configurations and scheduling preferences
Communications
- Customer support inquiries and correspondence
- Feedback and survey responses
- Communications with our team
2.2 Information Collected Automatically
When you access or use the Service, we automatically collect certain information:
Usage Data
- Features accessed and actions taken within the Service
- Date, time, and duration of access
- Frequency of use and interaction patterns
- Content performance metrics and analytics
- Error logs and diagnostic data
Device and Browser Information
- IP address
- Browser type and version
- Operating system
- Device type and unique device identifiers
- Screen resolution and display settings
- Language preferences
Cookies and Similar Technologies
- Session cookies
- Persistent cookies
- Pixel tags and web beacons
- Local storage data
2.3 Information from Third Parties
Supported Platforms
We receive information from Supported Platforms (such as LinkedIn and X / Twitter) when the edge agent operates on your behalf, including:
- Public profile information (name, handle, headline, industry, location, profile picture)
- Connection, follower, and network data
- Post, reply, and engagement analytics
- Page content the edge agent reads from a Supported Platform to determine whether a scheduled action has succeeded
Analytics Providers
We may receive aggregated analytics data from third-party analytics services.
Payment Processors
We receive transaction confirmation and limited payment details from our payment processors.
2.4 Information Processed by the Edge Agent
The Service includes a software component called the “edge agent” that runs locally on your own computer. The edge agent uses a real web browser (controlled by browser-automation software) to perform actions on Supported Platforms on your behalf. To do so, the edge agent:
- Opens a browser window in which you sign in to the Supported Platform yourself, using that platform's normal login flow
- Stores the resulting browser session state (including cookies and local storage) in a dedicated profile directory on your computer's disk
- Uses that session state to navigate, read pages, and submit actions on the Supported Platform during scheduled sessions
- Sends operational telemetry to our servers (such as success or failure status of each scheduled action, error messages, and limited diagnostic snippets) so that we can display your activity in the Service and diagnose problems
Important: where Supported Platform credentials live
Your Supported Platform credentials (including any password you type into a Supported Platform's login page) are never transmitted to or stored on SocialNexis servers. The browser session state captured after you log in is stored locally on the computer where the edge agent runs, inside a profile directory managed by the agent. When you disconnect a Supported Platform from the Service, the edge agent deletes the corresponding profile directory and the associated session state is wiped from disk.
The edge agent may also capture diagnostic information from the browser (such as the URL of the page being interacted with, a tail of agent log output, and, in limited cases, a screenshot) and send it to our servers solely to investigate errors and improve the Service. We do not collect general browsing activity from the browser used by the edge agent outside the scope of the Supported Platform actions you schedule.
3. How We Use Your Information
We use the information we collect for the following purposes:
3.1 Providing and Improving the Service
- Creating and managing your account
- Authenticating your identity and authorizing access
- Connecting to and interacting with Supported Platforms (such as LinkedIn and X / Twitter) on your behalf
- Scheduling, publishing, and managing content on Supported Platforms
- Generating AI-powered content suggestions and automation
- Providing customer support and responding to inquiries
- Processing payments and managing subscriptions
- Analyzing usage patterns to improve the Service
- Developing new features and functionality
- Detecting, preventing, and addressing technical issues
3.2 Communications
- Sending transactional emails (account confirmations, password resets, billing receipts)
- Providing service-related notices and updates
- Sending marketing communications (with your consent, where required)
- Responding to your requests, questions, and feedback
3.3 Safety and Security
- Protecting against unauthorized access, fraud, and abuse
- Enforcing our Terms of Service and other policies
- Investigating potential violations and suspicious activity
- Complying with legal obligations and law enforcement requests
3.4 Analytics and Research
- Understanding how users interact with the Service
- Measuring the effectiveness of features and campaigns
- Conducting research and analysis to improve our offerings
- Generating aggregated, de-identified insights and reports
4. How We Share Your Information
We may share your information in the following circumstances:
4.1 Service Providers and Sub-Processors
We share information with third-party service providers and sub-processors who perform services on our behalf. The principal categories and current providers are:
| Function | Provider(s) | Data Processed |
|---|---|---|
| Application hosting (API) | Fly.io | Account data, request logs, content |
| Application hosting (website + web app) | Vercel | Page requests, web vitals, deployment logs |
| Database hosting | Supabase (PostgreSQL) | Account data, content drafts, scheduled actions, action history, billing references |
| Job queue and cache | Upstash (Redis) | Job state for scheduled actions, short-lived session data |
| Payment processing | Stripe | Name, email, billing address, payment method, transaction history |
| Transactional email | Resend | Name, email, content of transactional and notification emails |
| AI content generation | Anthropic (Claude), OpenAI (GPT family), Google (Gemini) | Your prompts, drafts, persona settings, and Supported-Platform context required to generate or evaluate content; outputs returned by the provider |
| Profile lookup for onboarding suggestions | Brave Search | The LinkedIn profile URL you enter during onboarding, used to retrieve publicly indexed profile snippets |
| Onboarding profile draft | OpenAI (GPT family) | Publicly indexed snippets of the LinkedIn profile you provide during onboarding, processed once to suggest editable persona fields (name, headline, topics, writing style) |
| Browser automation (within the edge agent on your computer) | Anthropic, OpenAI (for vision/automation models used by the agent) | Limited screenshots and page extracts from the Supported Platform pages the agent operates on, sent only when needed to plan the next browser action |
We may engage additional service providers from time to time. These service providers are contractually obligated to use your information only for the purposes of providing services to us and in accordance with this Privacy Policy.
Business customers may request a Data Processing Agreement (DPA) by writing to privacy@socialnexis.com.
4.2 Supported Platforms
To provide the Service, we transmit content and instructions to Supported Platforms (such as LinkedIn and X / Twitter) on your behalf, generally by way of the edge agent operating on your computer. This includes posts, comments, replies, reactions, reposts, follows, connection requests, and other engagement activities you initiate through the Service. Your use of any Supported Platform through the Service is also subject to that platform's own privacy policy and user agreement, and SocialNexis is not responsible for the privacy practices of any Supported Platform.
4.3 Legal Requirements and Protection
We may disclose your information if required to do so by law or in response to valid legal process, including:
- Subpoenas, court orders, or other legal process
- Requests from government authorities or law enforcement
- To protect the rights, property, or safety of SocialNexis, our users, or the public
- To investigate potential violations of our Terms of Service
- To detect, prevent, or address fraud, security, or technical issues
4.4 Business Transfers
If SocialNexis is involved in a merger, acquisition, sale of assets, bankruptcy, or other business transaction, your information may be transferred as part of that transaction. We will notify you via email and/or prominent notice on the Service of any change in ownership or uses of your information.
4.5 With Your Consent
We may share your information for other purposes with your explicit consent.
4.6 Aggregated and De-Identified Data
We may share aggregated or de-identified information that cannot reasonably be used to identify you for research, analytics, marketing, or other purposes.
5. Data Retention
We retain your information for as long as necessary to fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law.
6. Data Security
We implement reasonable technical and organizational measures to protect your information against unauthorized access, alteration, disclosure, or destruction. Current measures include:
- Encryption of data in transit using TLS
- Encryption at rest for sensitive fields stored in our database
- Access controls and authentication requirements for our production systems, with access limited to personnel who need it to operate or support the Service
- Confidentiality obligations binding anyone with access to user data
- Periodic internal review of security configurations, dependencies, and access
How Supported Platform credentials are protected
SocialNexis does not use OAuth tokens for LinkedIn or X / Twitter, and we do not transmit or store your password for any Supported Platform. When you connect a Supported Platform, you sign in to that platform directly through a browser window opened by the SocialNexis edge agent running on your own computer. The browser session state (cookies, local storage) needed to keep you signed in is stored locally on your computer's disk inside a per-platform profile directory managed by the edge agent. This session state is functionally equivalent to remaining signed in to the Supported Platform in a regular web browser. You should protect access to the computer running the edge agent accordingly.
6.1 Data Breach Notification
If we become aware of a personal data breach affecting your information, we will notify you and any regulators where required, without undue delay and consistent with applicable law. Where the EU or UK GDPR applies, we will notify the competent supervisory authority within 72 hours of becoming aware of a reportable breach, and we will notify affected individuals where the breach is likely to result in a high risk to their rights and freedoms.
6.2 No Absolute Guarantee
While we strive to protect your information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee the absolute security of your information. You are responsible for maintaining the confidentiality of your account credentials, for protecting access to the computer on which the edge agent runs, and for all activities that occur under your account.
7. Your Rights and Choices
7.1 Account Information
You may access, update, or correct your account information at any time by logging into your account settings. You may also contact us at privacy@socialnexis.com to request changes.
7.2 Supported Platform Connections
You may disconnect any Supported Platform account (such as LinkedIn or X / Twitter) from the Service at any time through your account settings or within the edge agent. Upon disconnection, the edge agent will wipe the corresponding browser profile directory from your computer, and we will cease performing actions on your behalf on that Supported Platform.
7.3 Marketing Communications
You may opt out of receiving marketing communications from us by:
- Clicking the “unsubscribe” link in any marketing email
- Updating your communication preferences in your account settings
- Contacting us at privacy@socialnexis.com
Note: Even if you opt out of marketing communications, we may still send you transactional and service-related messages. All marketing emails we send include unsubscribe instructions and a postal contact channel as required by the U.S. CAN-SPAM Act and equivalent laws.
7.4 Cookies
Most web browsers are set to accept cookies by default. You can modify your browser settings to decline cookies or alert you when cookies are being sent. However, disabling cookies may limit your ability to use certain features of the Service.
7.5 Account Deletion
You may request deletion of your account by:
- Using the account deletion feature in your account settings
- Contacting us at privacy@socialnexis.com
Upon receiving a verified deletion request, we will delete your personal information within 90 days, except as required to comply with legal obligations.
8. Rights for Users in the EEA, United Kingdom, and Switzerland (GDPR)
If you are located in the EEA, UK, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR) and similar laws:
8.1 Legal Basis for Processing
We process your personal data based on the following legal bases:
- Contract: Processing necessary to perform our contract with you (providing the Service)
- Legitimate Interests: Processing necessary for our legitimate business interests, such as improving the Service, fraud prevention, and marketing (where not overridden by your rights)
- Consent: Processing based on your consent (such as marketing communications)
- Legal Obligation: Processing necessary to comply with legal requirements
8.2 Your GDPR Rights
You have the right to:
- Access: Request access to the personal data we hold about you and receive a copy in a portable format.
- Rectification: Request correction of inaccurate or incomplete personal data.
- Erasure: Request deletion of your personal data (“right to be forgotten”), subject to legal exceptions.
- Restriction: Request restriction of processing of your personal data in certain circumstances.
- Objection: Object to processing of your personal data based on legitimate interests or for direct marketing purposes.
- Data Portability: Receive your personal data in a structured, commonly used, machine-readable format (we provide exports in JSON by default) and transmit it to another controller.
- Withdraw Consent: Withdraw your consent at any time where we rely on consent as the legal basis for processing.
- Lodge a Complaint: Lodge a complaint with your local data protection authority if you believe we have violated your rights.
8.3 Exercising Your Rights
To exercise any of these rights, please contact us at privacy@socialnexis.com. We will respond to your request within 30 days. We may request verification of your identity before processing your request.
8.4 International Data Transfers
Your personal data may be transferred to and processed in the United States and other countries outside the EEA that may not provide the same level of data protection. When we transfer personal data outside the EEA, we implement appropriate safeguards, including:
- Standard Contractual Clauses approved by the European Commission
- Compliance with the EU-U.S. Data Privacy Framework, where applicable
9. Rights for California Residents (CCPA/CPRA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):
9.1 Categories of Personal Information
In the preceding 12 months, we may have collected the following categories of personal information:
| Category | Examples | Collected |
|---|---|---|
| Identifiers | Name, email, IP address, account name | Yes |
| Customer Records | Name, address, phone number, payment information | Yes |
| Commercial Information | Products/services purchased, transaction history | Yes |
| Internet Activity | Browsing history, search history, interaction with Service | Yes |
| Geolocation Data | Approximate location based on IP address | Yes |
| Professional Information | Company name, job title | Yes |
| Inferences | Preferences, characteristics, behavior predictions | Yes |
9.2 Sources of Personal Information
We collect personal information from the following categories of sources:
- Directly from you: account registration, account settings, content drafts, AI prompts, support inquiries, and survey responses
- Automatically from your devices: server logs, cookies, web analytics, device and browser information
- From the SocialNexis edge agent on your computer: operational telemetry about scheduled actions, error reports, and Supported Platform context the agent reads while operating on your behalf
- From Supported Platforms: public profile information and engagement data observed by the edge agent during scheduled actions
- From payment processors: transaction confirmations and limited payment metadata from Stripe
- From AI service providers: outputs returned in response to prompts we submit on your behalf to Anthropic, OpenAI, and Google
9.3 Use of Personal Information
We use personal information for the business and commercial purposes described in Section 3 of this Privacy Policy.
9.4 Sale and Sharing of Personal Information
We do not sell your personal information as defined by the CCPA, and we do not share your personal information with third parties for cross-context behavioral advertising as defined by the CPRA.
We have not sold or shared personal information for those purposes in the preceding twelve months and have no current plans to do so. If we change this practice in the future, we will update this Privacy Policy and provide the opt-out mechanisms required by California law before any such sale or sharing begins.
We do not knowingly sell or share the personal information of consumers under 16 years of age.
9.5 Your CCPA/CPRA Rights
- Right to Know: You have the right to request that we disclose the categories and specific pieces of personal information we have collected about you, the sources of collection, the purposes for collection, and the categories of third parties with whom we share your information.
- Right to Delete: You have the right to request deletion of your personal information, subject to certain exceptions.
- Right to Correct: You have the right to request correction of inaccurate personal information.
- Right to Opt Out: You have the right to opt out of the sale or sharing of your personal information.
- Right to Limit Use of Sensitive Personal Information: You have the right to limit our use of sensitive personal information to purposes necessary to provide the Service.
- Right to Non-Discrimination: We will not discriminate against you for exercising any of your CCPA/CPRA rights.
9.6 Exercising Your Rights
To exercise your California privacy rights, you may:
- Email us at privacy@socialnexis.com
- Submit a request through your account settings
We will verify your identity before processing your request, generally by matching information you provide against information already in your account. You may designate an authorized agent to make requests on your behalf; in that case we will require written permission from you signed under penalty of perjury authorizing the agent to act, and we will separately verify your identity directly with you before acting.
9.7 California “Shine the Light” Law
California Civil Code Section 1798.83 permits California residents to request information regarding the disclosure of personal information to third parties for direct marketing purposes. We do not share personal information with third parties for their direct marketing purposes.
10. Rights for Users in Other Jurisdictions
If you are located in a jurisdiction with data protection laws that provide additional rights (such as Brazil's LGPD, Canada's PIPEDA, or Australia's Privacy Act), we will comply with applicable requirements. Please contact us at privacy@socialnexis.com to exercise any rights provided by your local laws.
11. Cookies and Tracking Technologies
11.1 Types of Cookies We Use
- Essential Cookies: Required for the Service to function properly. These cookies enable core functionality such as authentication and security. You cannot opt out of essential cookies.
- Analytics Cookies: Help us understand how users interact with the Service by collecting usage data. We use services such as Google Analytics.
- Functional Cookies: Remember your preferences and settings to enhance your experience.
- Marketing Cookies: Used to deliver relevant advertisements and track the effectiveness of marketing campaigns.
11.2 Third-Party Cookies
Our Service may contain cookies from third-party services we use to operate the Service, including:
- Web analytics providers
- Stripe (payment processing)
- Embedded content or single-sign-on flows from Supported Platforms (such as LinkedIn or X / Twitter)
These third parties have their own privacy policies governing their use of cookies.
11.3 Managing Cookies
You can control cookies through your browser settings. Most browsers allow you to:
- View cookies stored on your device
- Delete all or specific cookies
- Block third-party cookies
- Block all cookies
Please note that blocking certain cookies may impact the functionality of the Service.
11.4 Do Not Track and Global Privacy Control
Some browsers offer a “Do Not Track” (DNT) feature. Our Service does not currently respond to DNT signals.
Where we are required to do so by applicable law, including under the California Consumer Privacy Act as amended by the California Privacy Rights Act, we treat a valid Global Privacy Control (GPC) signal that we are able to detect as a request to opt out of any sale or sharing of personal information for cross-context behavioral advertising. As stated in Section 9.4, we do not currently sell or share personal information for those purposes, so this opt-out takes immediate effect with no further action required.
12. Children's Privacy
The Service is intended for users who are at least 18 years of age, consistent with our Terms of Service. We do not direct the Service to children, and we do not knowingly collect personal information from anyone under 18. If we learn that we have collected personal information from a person under 18, we will take steps to delete that information promptly.
If you are a parent or guardian and believe a person under 18 has provided us with personal information, please contact us at privacy@socialnexis.com.
13. Third-Party Links and Services
The Service may contain links to, or interoperate with, third-party websites, applications, or services that are not owned or controlled by SocialNexis. This Privacy Policy does not apply to such third-party services. We encourage you to review the privacy policies of any third-party services you access.
In particular, your use of any Supported Platform (such as LinkedIn or X / Twitter) through the Service is subject to that platform's own privacy policy and user agreement. SocialNexis is not responsible for the privacy practices of any Supported Platform or any other third-party service.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will:
- Update the “Last Updated” date at the top of this Privacy Policy
- Notify you by email (if you have an account) or by posting a prominent notice on the Service
- Obtain your consent where required by law
Your continued use of the Service after the effective date of any changes constitutes your acceptance of the updated Privacy Policy.
15. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
SocialNexis
Privacy inquiries and data subject requests: privacy@socialnexis.com
General legal and service of process: legal@socialnexis.com
16. Additional Information for Specific Features
16.1 AI-Generated Content
The Service uses artificial intelligence to generate content suggestions, draft posts, and assist with browser automation. We use third-party large-language-model providers including Anthropic (Claude), OpenAI (GPT family), and Google (Gemini) to perform these functions. When you use AI features:
- Your inputs (prompts, persona settings, content drafts, and the Supported Platform context required to produce a relevant output) are transmitted to one or more of these AI providers for processing
- Outputs returned by the AI provider are stored in our systems to display in your account and to operate the Service
- You should review all AI-generated content before publishing it to any Supported Platform
We may use aggregated, de-identified data derived from your use of AI features to improve and evaluate the Service. We will not use your individually identifiable content to train our own AI models without your explicit consent. Our use of third-party AI providers is governed by our contracts with those providers; in general, those providers do not use API content submitted by business customers to train their general-purpose models, but you should review each provider's own privacy policy for current details.
16.2 Supported Platform Automation
To automate activities on Supported Platforms (such as LinkedIn and X / Twitter), we process:
- Content you create or schedule for posting on a Supported Platform
- Engagement instructions you configure (likes, comments, replies, follows, connection requests)
- Public profile and activity data observed by the edge agent while operating on your behalf
- Operational telemetry from the edge agent (success/failure status of each scheduled action, error messages, limited diagnostic snippets)
Browser session state used to keep you signed in to a Supported Platform is stored locally on the computer where the edge agent runs (see Section 2.4) and is not transmitted to SocialNexis servers. The data described above is used solely to provide the automation features you request. We do not use Supported Platform data for any purpose other than operating the Service on your behalf.
By using SocialNexis, you acknowledge that you have read and understood this Privacy Policy.
Last Updated: June 2, 2026
© SocialNexis. All rights reserved.