Privacy

Postrim schedules and publishes social media posts on your behalf. This page describes what it stores, who it sends data to, and how to get rid of it.

What we store

Your email address and password, held by Firebase Authentication. We never see your password.

The content you create: accounts and channels, posts, drafts, schedules, the persona documents you write, and any media you upload. Uploaded media is stored in Google Cloud Storage.

A short summary of each generation you keep, so the AI can avoid repeating itself, and daily counts of posts and generations so we can apply plan limits.

Access tokens for the social accounts you connect, so posts can be published. You can disconnect any of them at any time, which deletes the stored token.

Who else receives it

Google Firebase hosts the database, file storage and sign-in.

The social platforms you connect receive the posts you publish to them, which is the point of the product.

OpenAI receives the prompts and context needed to generate content, when you use an AI feature.

Lemon Squeezy handles payment if you subscribe. They are the merchant of record and take your payment details directly; we never receive your card number.

An AI client you connect, such as Claude through our connector, receives whatever it asks for on your behalf: the brands, posts and queue it reads while you are working with it. That connection is made by you, acts only as you, and can be revoked at any time from the app, after which it receives nothing further.

Depending on the features you use, media features may call Pexels for stock photography or Thum.io for website screenshots.

Google Analytics measures how this site and the app are used: which pages are opened, roughly where visitors come from, and what kind of device they are on. Addresses inside the app carry account and post ids, so those are stripped out before a page is reported. It never receives your posts, drafts, media or personas. On this website it does nothing at all until you agree to it; see Cookies below.

There is no advertising, and your content is never sold or used to train anyone's models by us.

Cookies

This website keeps three things on your device, and only the last of them is optional:

A sign-in hint, written only after you sign in, so the header offers you a Dashboard button instead of a login one. It holds nothing but a yes or a no.

The sign-in itself, held by Firebase Authentication if you signed in through the panel on this site rather than in the app.

One Google Analytics cookie, for the measurement described above. This one is optional: analytics starts denied on every visit and is switched on only if you accept it in the banner. Until then it writes no cookie and holds no identifier for you.

The first two are storage you asked for by signing in, and there is no version of this site without them. The third is a choice, and you can change it whenever you like, here or from the footer of any page: . Turning it off takes effect immediately.

Your answer is kept in this browser's local storage rather than in a cookie, so it never reaches our servers and it is specific to this browser: clearing site data means we ask again. There are no advertising cookies and no cross-site tracking of any kind.

Keeping tenants apart

Every record carries the id of the account that owns it, and the server refuses to return a record to anyone else. If you bring your own API keys, they are stored against your account and used only for your work.

Deleting your data

Email support@postrim.com and we will delete your account and everything attached to it: posts, drafts, media, personas, connected-account tokens and usage records. Deletion is permanent and there is no backup we can restore from afterwards.

Contact

support@postrim.com

Last updated: 25 August 2026