postmatic

Privacy policy

Last updated: September 4, 2026

Postmatic is an API and a dashboard for publishing and scheduling content on social networks, Instagram today. This policy states which data we process, why, for how long, and how you delete it. It applies to postmatic.dev and to the API at api.postmatic.dev.

Who we are

Postmatic is operated by Cleidson França, in Brazil. Contact: privacidade@postmatic.dev.

Your account data

Meta and Instagram data

When you connect an Instagram account, we use the Instagram Graph API (Instagram API with Instagram Login), from Meta Platforms, Inc. In that process:

Our use of Meta's data follows the Meta Platform Terms and the Developer Policies. You can revoke access at any time under Settings → Security → Apps and websites, on Instagram.

Images and post content

Text and images you submit for publishing are kept so we can publish them on the chosen date and show the history on the dashboard; they are stored until the account is deleted. Images coming from a URL are copied into our bucket before publishing, because Meta requires a stable, public URL.

Usage data and logs

We keep, for up to 30 days, technical logs of every API request: time, route, HTTP status, and IP address, hosted at our API provider. They are used for security, usage limits, and support. Logs never contain tokens, API keys, or post content.

Where data is processed

Database, authentication, and storage on Supabase; API and dashboard on Railway. Both may run on servers outside Brazil, under data-protection agreements.

Your rights

You can access, correct, and delete your data at any time. Full deletion is one click away, at Account → Delete account; the paths are described on the data deletion page. For other requests, write to privacidade@postmatic.dev.

Changes to this policy

Material changes are announced by email at least 15 days in advance. The version in force is always the one published on this page.