Draftyx logo

Privacy Policy

Last updated: May 19, 2026

1. Information we collect

We collect the following types of information to provide and improve Draftyx:

  • Account information — email address and authentication credentials when you sign up or log in (including via Google OAuth).
  • Profile data — brand name, brand description, and preferences you add to your profile.
  • Content data — posts, captions, images, videos, and voice samples you upload or create within the platform.
  • Social connections — OAuth tokens and account identifiers for connected platforms (e.g., Instagram via Meta) required for publishing.
  • Usage data — basic logs of actions taken in the app (e.g., generations, schedules) to operate features and enforce limits.
  • Payment information — handled entirely by Stripe. We do not store full payment card details on our servers.

2. How we use your information

We use the information we collect to:

  • Provide core Draftyx services (AI caption generation, content pool management, and scheduling).
  • Train AI-generated captions to match your brand voice using the samples you provide.
  • Publish content to connected social media accounts on your behalf.
  • Process payments and manage subscriptions or credit top-ups.
  • Maintain security, enforce free trial limits, and prevent abuse.
  • Communicate important service updates or respond to support requests.

3. AI processing and third-party services

Draftyx uses AI services to generate captions and images. When you request AI-generated content, your prompts, brand voice samples, and any attached images or video frames are sent to our AI provider (via the Lovable AI Gateway, which uses Google Gemini models) for processing. We do not use your content to train public or shared AI models.

We also rely on the following third-party services:

  • Stripe — for payment processing.
  • Meta (Facebook/Instagram) — for OAuth authentication and content publishing.
  • Google — for OAuth sign-in.
  • Lovable Cloud — for authentication, database, and file storage infrastructure.

4. Data storage and security

Your data is stored on Lovable Cloud infrastructure (backed by encrypted databases and object storage). We use industry-standard security practices, including encrypted connections (TLS), hashed passwords, and row-level access controls. Social media OAuth tokens are stored securely and are only used to perform actions you explicitly request (e.g., publishing a scheduled post).

5. Data retention

We retain your data for as long as your account is active. If you delete your account or specific content, we remove it from active systems within a reasonable timeframe. Some data may remain in encrypted backups for a limited period. Payment records are retained as required for tax and accounting purposes.

6. Your rights

Depending on your location, you may have the right to access, correct, delete, or export your personal data. You can manage much of this directly in your account settings. For other requests, contact us and we will respond within applicable timeframes.

7. Children's privacy

Draftyx is not intended for users under the age of 13 (or the minimum age of digital consent in your jurisdiction). We do not knowingly collect personal information from children.

8. Changes to this policy

We may update this Privacy Policy from time to time. If we make material changes, we will notify you through the app or by email. Continued use of Draftyx after changes constitutes acceptance of the updated policy.

9. Contact us

If you have questions or concerns about this Privacy Policy or how we handle your data, please reach out through the chat support in the app.