Privacy Policy
Last updated: 24 August 2026
This Privacy Policy explains how Easypost (“Easypost”, “we”, “us”) collects, uses, stores, shares, and deletes personal data when you visit easypost.online, create an account, pay for a plan, or connect social accounts including LinkedIn Company Pages, Facebook Pages, and Instagram professional accounts. We wrote this policy for platform app review as well as for our customers: it describes LinkedIn and Meta data specifically, how long we keep it, and how you can delete it.
1. Who we are
Easypost is a social media management service at https://easypost.online. We help brands and agencies plan campaigns, generate captions and images, schedule posts, and publish to connected business pages.
For privacy requests we act as the controller of account, billing, and workspace data you give us directly. When we process LinkedIn, Facebook, or Instagram data through their APIs on your instructions (for example to publish a post you created), we do so as your processor for that platform data.
We operate from Egypt. The public website, this policy, and the in-product English and Arabic interfaces are provided by Easypost.
2. Scope
This policy applies to the marketing website, demo requests, customer accounts, billing, and the publishing product (campaigns, calendar, AI generation, and connected social pages).
It does not apply to LinkedIn, Meta, Kashier, or OpenAI’s own sites and apps. Those companies process data under their own policies when you interact with them directly.
3. Information we collect
We collect only what we need to run the service you asked for. Categories include:
- Account data: name, email address, password hash (we do not store your password in plain text), language preference, and role in a workspace.
- Workspace data: brands, campaign briefs, captions, media you upload, design kits, schedules, publish status, and team seats you invite.
- Support and sales data: demo request name, email, company, phone, website, role, team size, message, and platforms of interest.
- Billing data: plan, billing period, amount, currency (EGP), invoice/order identifiers, and payment status. Card numbers are collected by Kashier, not by Easypost.
- Technical data: IP address, browser type, device, approximate time of requests, and security logs needed to keep the service running and investigate abuse.
- Platform connection data: described in the LinkedIn and Meta sections below (page IDs, page names, OAuth tokens, and publish results).
4. LinkedIn data (Company Pages)
Easypost uses LinkedIn APIs so a page admin can connect a LinkedIn Company Page and publish or schedule posts from our product. We do not provide LinkedIn login as a consumer identity product, people search, Inbox/InMail, lead scraping, or profile enrichment.
When you click Connect LinkedIn and approve access, LinkedIn may share with us, and we may store:
- OAuth access tokens (and expiry) so we can publish on the Company Page you selected until you disconnect or the token expires.
- LinkedIn organization / Company Page identifiers and the page name you choose to connect.
- Confirmation that your LinkedIn user can administer that page (so we only list pages you are allowed to manage).
- Content you create in Easypost that is sent to LinkedIn (captions, images or video you upload, scheduled time) and the LinkedIn post identifier returned after a successful publish.
- Aggregate engagement counts for posts you published through Easypost (for example total reactions or comments), used only to show performance inside your workspace. We do not store the profiles of members who liked or commented.
5. How we use LinkedIn data — and what we do not do
We use LinkedIn data solely to provide the publishing features you enabled: list Company Pages you administer, publish or schedule posts to the page you selected, record whether a post succeeded or failed, and show aggregate post results to users of your Easypost workspace.
- We do not sell LinkedIn data.
- We do not share LinkedIn data with advertisers or data brokers.
- We do not scrape LinkedIn, replicate LinkedIn, or build a graph of members or connections.
- We do not store other LinkedIn members’ profile fields (name, photo, headline, profile URL) from comments, likes, or mentions.
- We do not use LinkedIn data to train general-purpose AI models, and we do not send LinkedIn member profile data to OpenAI.
- We do not use LinkedIn APIs to message members, download your network, or enrich third-party databases.
- We do not combine LinkedIn data with other sources to profile individuals outside your workspace.
6. LinkedIn retention and LinkedIn’s storage rules
We follow LinkedIn Marketing API / Community Management data storage rules. Where those rules are stricter than our general retention, the stricter rule wins.
- Access tokens and connected page identifiers are stored only while the LinkedIn connection is active. We delete them when you disconnect the page, when the token is revoked or expired and cannot be used, or when you delete your Easypost account.
- Captions and media you authored in Easypost are your workspace content. They remain until you delete the campaign/post or your account, even if they were later published to LinkedIn.
- LinkedIn post IDs and aggregate organization-level metrics for pages you authenticated may be kept with your publish history while the connection is active, and no longer than LinkedIn allows for authenticated organization reporting data.
- Other members’ profile data retrieved from LinkedIn (if it ever appears in an API response) is not stored. If received transiently it is discarded and in any event is not cached longer than 24 hours.
- Member social activity content retrieved from LinkedIn (for example the text of another member’s comment) is not stored as a product feature. If received transiently it is not kept longer than 48 hours.
- If LinkedIn terminates our API access, we delete or destroy LinkedIn API data in our systems within 10 days, except data you independently typed into Easypost (your own campaign copy and uploads).
7. How to disconnect LinkedIn and delete LinkedIn data
You can stop Easypost from accessing your LinkedIn Company Page at any time. After disconnect, we stop publishing to that page and we delete the stored LinkedIn token and page connection for that brand.
- In Easypost: open Brands (or the brand settings for the connected page) and disconnect LinkedIn. This removes the token from our application.
- On LinkedIn: go to LinkedIn → Settings & Privacy → Data privacy → Permitted services (or https://www.linkedin.com/mypreferences/d/permitted-services) and remove Easypost / the LinkedIn app you authorized.
- For a full workspace erasure (account, campaigns, media, and remaining platform tokens), email privacy@easypost.online from the address on the account, or use the contact form at https://easypost.online/contact and write “Delete my data”. We complete deletion requests within 30 days, and LinkedIn connection data is removed immediately on disconnect or within 10 days of a written request.
- Posts already published on LinkedIn stay on LinkedIn until you delete them there. Disconnecting Easypost does not automatically remove historical Company Page posts from LinkedIn.
8. Facebook and Instagram (Meta) data
When you connect a Facebook Page or an Instagram professional account linked to a Page, Meta may share page identifiers, page name, Page access tokens, and (for Instagram) the professional account id and name needed to publish. We request Page publishing and engagement permissions such as listing Pages, reading engagement, managing posts, and reading user content on the Page. For Instagram we request professional publishing permissions needed to post to the connected account.
We use this data only to publish and schedule content you create, confirm delivery, and show Page/post status inside your workspace. We do not sell Meta data, scrape personal profiles, or use Meta APIs to contact people who are not your Page.
You can disconnect Facebook or Instagram in brand settings. You can also remove the app from Facebook Settings → Business integrations. We delete stored Page tokens when you disconnect or when you request deletion as described in this policy. Meta users may also use Facebook’s data deletion tools; we honor those requests for tokens and connection records we hold.
9. How we use information
We use personal data to:
- Create and secure your account, and remember that you are signed in.
- Provide campaign planning, scheduling, auto-publishing, and delivery status.
- Generate captions or images with AI only when you run those features, using the brief and brand assets you supply.
- Process subscriptions and send payment receipts via Kashier.
- Answer support, demo, and privacy requests.
- Maintain security, prevent abuse, and comply with law.
10. Legal bases
Depending on your location, we process data because: (a) it is needed to perform our contract with you (providing the workspace and publishing you requested); (b) we have a legitimate interest in securing the service and understanding aggregate reliability; (c) we must meet legal obligations (for example tax records for paid invoices); or (d) you consented, including when you authorize LinkedIn or Meta via OAuth. You may withdraw platform consent by disconnecting the integration and revoking the app on LinkedIn or Facebook.
12. General retention
Account and workspace content is kept while your account is open. After you delete your account or we close it, we delete or irreversibly anonymize personal data within 30 days, except where we must keep a limited record (for example paid invoice identifiers) for tax or accounting periods, or where a shorter platform rule applies (see LinkedIn sections above).
Demo requests are kept so we can follow up and for a reasonable sales record, then deleted on request.
Security logs are kept only as long as needed for incident investigation, typically no more than 12 months.
13. Your rights and data deletion
Subject to applicable law (including Egypt’s Personal Data Protection Law and, where it applies, GDPR/UK GDPR), you may request access, correction, deletion, restriction, or a copy of personal data we hold, and you may object to certain processing. You may also lodge a complaint with a supervisory authority.
Practical ways to exercise these rights:
- Correct profile details from your account settings where available.
- Disconnect a social page from Brands to delete that platform’s token from Easypost.
- Email privacy@easypost.online to export or erase your account. Tell us the account email and whether you want a full wipe or only a specific brand/connection.
- Use https://easypost.online/data-deletion for step-by-step deletion instructions (also used for platform app review).
- We will verify the request (usually by email) and respond within 30 days, sooner where LinkedIn or Meta rules require faster deletion of API tokens.
14. Security
We use HTTPS for data in transit, restrict product access to authenticated users of the relevant workspace, and store platform tokens on our servers for the sole purpose of publishing on your behalf. No method of transmission or storage is 100% secure. You must use a strong unique password and only connect pages you are authorized to manage.
15. International transfers
Your data may be processed in Egypt and in other countries where our subprocessors operate (for example LinkedIn, Meta, OpenAI, and Kashier). Those providers apply their own contractual and security safeguards. By using Easypost you understand that platform APIs are global services.
17. Children
Easypost is a business tool. It is not directed at children under 16, and we do not knowingly collect data from them. If you believe a child provided personal data, email privacy@easypost.online and we will delete it.
18. Changes
We may update this policy as the product or the law changes. The “Last updated” date at the top will change. Material changes that affect LinkedIn or Meta data use will be reflected here before we expand that use. Continued use after an update means you accept the revised policy.
19. Contact
Controller: Easypost, website https://easypost.online.
Privacy email: privacy@easypost.online.
Contact form: https://easypost.online/contact (Arabic: https://easypost.online/ar/contact).
This is the policy URL to use in LinkedIn and Meta developer apps: https://easypost.online/privacy (Arabic: https://easypost.online/ar/privacy).
Privacy contact
Privacy, deletion, and LinkedIn or Meta data requests are handled by email. Write to privacy@easypost.online · Contact form