Privacy notice · 1 September 2026
Privacy is part of the publishing boundary.
This implementation-facing notice describes the current data model. A qualified owner must review company identity, jurisdiction, retention periods and contact details before broad promotion.
Information PostLumi handles
Authenticated account identity, workspace and Brand Brain fields, social connection metadata, ideas, drafts, selected private media, immutable approvals, destination delivery records, subscription state, usage, MCP grants and redacted audit events.
How it is used
To provide workspace authorization, generate and edit content, enforce capabilities and limits, preserve publishing consent, maintain delivery truth, secure agent access and diagnose service health. PostLumi does not sell personal data or use private drafts for advertising.
Storage and sharing
Structured records are held in the configured application database and image originals in private object storage. An authorized MCP client receives only the workspace data returned by the invoked tool. X receives authorized account and approved publishing data only when you connect it; simulated Instagram and Facebook adapters send nothing to their providers. When paid billing is enabled, Stripe receives the minimum account and workspace references needed for hosted checkout, invoices and subscription lifecycle processing; PostLumi does not receive full card details.
Security and retention
Tenant IDs are derived from verified identity or a scoped MCP grant; media paths, session tokens and token hashes are not exposed. Account session history intentionally omits raw IP addresses, browser fingerprints and user-agent strings. MCP grants expire after 30 days. Final retention, backup deletion and incident processes remain an operator responsibility.
Your controls
Review or edit Brand Brain and private media metadata, connect or disconnect X, revoke MCP grants and other browser sessions, pause or cancel delivery records, use Stripe’s portal when billing is active, download a JSON export and permanently delete the workspace in Settings.