Skip to the text
PostFlo

Legal

Privacy policy

Last updated September 23, 2026

PostFlo schedules and publishes social media posts for businesses and the people who manage them. This policy explains what WorkFlo HQ collects when you use it, why, who sees it, and how to have it deleted.

1.What we collect

  • Your account. Your name, email address and password. The password is stored only as a one-way hash, so nobody at WorkFlo HQ can read it.
  • Workspaces. Workspace names, members and their roles, posting schedules, branding and notification settings.
  • Connected social accounts. When you connect an account, the network gives us an access token and basic profile details: the account's name, handle, picture and ID. Tokens are stored encrypted.
  • What you create. Post text, the images and videos you upload, schedules, labels, notes, approvals and comments on drafts.
  • What we read from the networks for you. Comments and direct messages on your connected accounts, which appear in the inbox, and the performance of your published posts: views, likes, comments, shares and clicks.
  • How the service is used. Sign-in times, a log of actions in each workspace, and error reports. Error reports leave out your content, cookies and tokens.
  • The AI assistant. If you use it, the text, links and files you give it.

2.How we use it

  • To publish the posts you schedule, at the time you choose, to the accounts you connected.
  • To show you comments, messages and results, and to send the replies and automatic replies you set up.
  • To email you about your account and your posts: sign-in links, invitations, and posts or channels that need attention.
  • To keep the service secure, fix problems and prevent abuse.

We do not sell your data or use it for advertising. We do not use your content, or data we receive from the networks, to train AI models.

3.Who we share it with

  • The networks you connect, to publish your posts and to read comments, messages and results. What you post there is also covered by that network's own privacy policy.
  • Companies that run parts of PostFlo for us: hosting and the database, file storage, email delivery, error monitoring, payment processing (Stripe) when you pay for a plan, and the AI provider (Anthropic) when you use the assistant. They may use the data only to provide their service to us.
  • People in your workspace, who see its posts, channels, inbox and activity as their role allows.
  • Authorities, when the law requires it.

4.Google and YouTube

PostFlo uses YouTube API Services to upload videos to the YouTube channels you connect and to show their comments and statistics. By connecting a YouTube channel you agree to the YouTube Terms of Service, and the Google Privacy Policy applies to how Google handles your data.

PostFlo's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

You can remove PostFlo's access at any time on your Google account's third-party connections page. Comments we read from YouTube are deleted after 30 days.

5.Facebook, Instagram, Threads, TikTok and other networks

For each network we ask only for the permissions needed to publish, to read comments and messages, and to read results. For Facebook and Instagram that means the pages and business accounts you choose; for TikTok, your profile, what TikTok lets you post, and the status of your uploads.

You can disconnect an account in PostFlo under Channels at any time, or remove PostFlo in the network's own settings. Either way, we delete the account's access token. If you remove PostFlo from Facebook, Instagram or Threads, we also delete the comments and messages we stored for that account; see the data deletion page.

6.How long we keep it

  • Your account and workspaces: until you delete them.
  • Access tokens: until you disconnect the account, the network revokes access, or the workspace is deleted.
  • Posts, including what was published where: for as long as the workspace exists, so you can see what went out.
  • Comments and messages in the inbox: 180 days, or 30 days for YouTube comments.
  • Engagement history for a post: 400 days, apart from its latest numbers.
  • The workspace activity log: 180 days.
  • When a workspace is deleted, its posts, channels, inbox and settings are deleted at once and its uploaded files within a day. When you delete your account, your name, email and sign-in history go with it. Copies in backups are deleted as those backups expire.

7.Your choices and rights

  • Everything you create can be seen, edited and deleted in the app, and exported through the API.
  • Owners can delete a workspace in Settings, and you can delete your own account from your profile.
  • To see, correct or delete what we hold about you, or to ask anything, write to don@workflohq.com. We answer within 30 days.

Depending on where you live, for example in the European Union, the United Kingdom or California, you may have more rights, such as objecting to how we use your data or taking a copy of it elsewhere. Contact us to use them. We rely on our contract with you to provide the service, on our legitimate interest in keeping it secure and working, and on your consent where we ask for it.

8.Security

Connections to PostFlo use HTTPS. Access tokens are encrypted with AES-256-GCM, passwords are hashed, and each person sees only the workspaces they belong to, as far as their role allows. If a breach affects your data, we will tell you without undue delay.

9.Children

PostFlo is not meant for anyone under 16, and we do not knowingly collect data about children.

10.Changes to this policy

When this policy changes we update the date at the top. If a change affects how we use your data, we email workspace owners before it takes effect.

11.Contact

PostFlo is run by WorkFlo HQ. Write to don@workflohq.com with any question about this policy or your data.