Privacy policy.

developer data is sacred

1. Scope and Controller

This Privacy Policy explains how Postgit collects, uses, discloses, and protects information when you visit the Postgit website, connect a GitHub account, generate drafts, schedule posts, or contact support. Postgit is the controller of the personal information described here unless a separate agreement says otherwise.

Questions or privacy requests can be sent to hello@postgit.com.

2. Information We Collect

We collect the minimum information needed to authenticate your account, understand repository activity, generate content, operate billing, and support the service.

  • Account information such as your name, email address, GitHub user ID, profile details, and support messages.
  • GitHub OAuth tokens, repository metadata, commit messages, branch names, pull request references, and file-level change context you authorize Postgit to process.
  • Draft content, edited post copy, scheduling preferences, connected social-account status, queue history, and publishing results.
  • Billing records handled through our payment providers, including plan, invoice status, transaction identifiers, and limited payment metadata. We do not store full card numbers.
  • Device, log, analytics, and security information such as IP address, browser, pages viewed, referral source, coarse location, timestamps, error logs, and cookie identifiers.

3. How We Use Information

We use information to provide, secure, improve, and explain Postgit. This includes authenticating GitHub, finding meaningful repository activity, generating drafts, scheduling or publishing approved posts, managing subscriptions, preventing abuse, debugging errors, sending service messages, responding to support, and measuring website performance.

We do not sell your personal information. We do not use private repository content for advertising profiles. We process repository data to provide the product features you request.

4. Legal Bases for EU, UK, and Similar Laws

Where GDPR, UK GDPR, or similar privacy laws apply, we rely on several legal bases: contract performance to provide your account and paid plan; legitimate interests to secure, improve, prevent abuse, and understand product usage; consent for optional marketing or non-essential cookies where required; and legal obligation for tax, accounting, compliance, or lawful requests.

5. Sharing and Processors

We share information with service providers that help us host the product, authenticate accounts, process payments, send transactional messages, run analytics, monitor errors, and provide support. These providers may only process information for the services they provide to Postgit.

We may also disclose information if required by law, to protect users or the service, to investigate abuse, or as part of a merger, acquisition, financing, or sale of assets, subject to appropriate confidentiality and notice where required.

6. Retention and Deletion

We retain account, repository, draft, queue, billing, and log information for as long as needed to provide Postgit, comply with legal obligations, resolve disputes, prevent abuse, and maintain security. You can request deletion of your account or personal information at hello@postgit.com. We may retain limited records where required for tax, fraud prevention, legal compliance, backups, or legitimate business records.

7. Security

We use reasonable technical and organizational safeguards designed to protect personal information, including access controls, encryption in transit, provider security controls, logging, and token handling practices. No online service can guarantee absolute security, so you should also protect your GitHub and social accounts with strong authentication.

8. International Transfers

Postgit and its service providers may process information in countries other than where you live. When required, we use appropriate safeguards for international transfers, such as contractual protections or transfer mechanisms recognized by applicable data protection laws.

9. GDPR and UK Privacy Rights

Depending on where you live, you may have the right to access, correct, delete, restrict, or object to processing of your personal information; request portability; withdraw consent; and lodge a complaint with a data protection authority. To exercise these rights, email hello@postgit.com. We may need to verify your identity before completing a request.

10. California Privacy Rights

California residents may have rights under the CCPA/CPRA to know what personal information we collect, use, disclose, sell, or share; access specific pieces of information; request deletion; request correction; opt out of sale or sharing; limit use of sensitive personal information where applicable; and avoid discrimination for exercising privacy rights.

Postgit does not sell personal information. If we use analytics or advertising tools in a way that applicable California law treats as sharing, we will provide a way to opt out. You can start a request by emailing hello@postgit.com.

11. Cookies and Analytics

We may use cookies, local storage, and analytics tools to keep the site working, remember preferences, measure traffic, understand conversion paths, and detect abuse. Browser settings can limit cookies, but some product features may not work correctly without essential storage.

12. Children, Changes, and Contact

Postgit is not intended for children under 13, and we do not knowingly collect personal information from children. We may update this policy as the product, law, or providers change. If changes are material, we will take reasonable steps to notify users. Contact us at hello@postgit.com for privacy, support, or account questions.

Last Updated: June 28, 2026
Cat approved

postgit