GraFix Content CalendarPrivacy Policy
How GraFix handles account, content and connected social-platform data.
1. Information we handle
GraFix may process user names, email addresses, roles, assigned brands, login and security records, content calendars, uploaded media, comments, approvals, schedules, agreements and platform activity needed to provide the service.
2. Connected social accounts
When an authorized user connects a professional social account, GraFix receives only the information and permissions approved in that platform’s authorization screen. This can include account or Page identifiers, profile names, handles, access tokens, granted permissions, post identifiers, publication results and enabled analytics. GraFix does not ask for or store the social account password.
3. How information is used
Information is used to authenticate users, control brand access, operate reviews and approvals, store and display content, connect authorized social accounts, publish approved content when enabled, retrieve supported performance data, send operational notifications, prevent abuse and maintain service reliability.
4. Sharing and processors
GraFix sends content and required account data to a social platform only when a user connects that platform or instructs GraFix to perform an enabled action. Hosting, database and email providers may process limited data to operate the service. GraFix does not sell personal information.
5. Storage, security and retention
Access tokens and configured application secrets are encrypted at rest. Access is restricted by user role and brand assignment. Content remains until an authorized user deletes it or the workspace is closed. Social tokens remain until disconnection, expiry or a verified deletion request. Limited operational records may be retained when reasonably necessary for security, legal obligations and dispute resolution.
6. Your choices and deletion
You can disconnect a social account from Connected Accounts. Authorized users can delete unpublished platform content and its uploaded media. A request received through a supported platform’s verified user-data deletion callback removes matching stored social connections and tokens. See the Data Deletion page for details and confirmation status.
7. Contact
For privacy questions, access requests or deletion help, contact your GraFix administrator.
8. Updates
This policy may be updated as GraFix features or legal requirements change. The effective date above identifies the current version.