Privacy Policy
Last Updated: May 7, 2026
1. Introduction
Welcome to Buziness AI ("we," "our," or "us"). We are committed to protecting your privacy and ensuring you have a positive experience on our platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our social media platform and related services (collectively, the "Service").
By using our Service, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our Service.
2. Information We Collect
2.1 Information You Provide to Us
- Account Information: Name, email address, username, phone number, profile picture, bio, website, country, gender, and other profile information you choose to provide.
- Content: Posts, stories, reels, comments, messages, and other content you create, upload, or share on our platform.
- Business Information: If you create a business account, we collect business name, email, phone number, category, address, registration details, and verification documents.
- Payment Information: When you make purchases or subscriptions, we collect billing information through our payment processor (Razorpay). We do not store full credit card details on our servers.
- Social Media Account Connections: When you connect your Facebook, Instagram, LinkedIn, or Google accounts, we collect access tokens and related information necessary to provide our expert services.
2.2 Information Automatically Collected
- Usage Data: Information about how you interact with our Service, including pages visited, features used, time spent, and actions taken.
- Device Information: Device type, operating system, browser type, IP address, and device identifiers.
- Location Data: General location information based on your IP address or location data you choose to share in posts.
- Search History: Your search queries and interactions with search results.
- Analytics Data: We use Google Analytics to collect and analyze usage patterns and trends.
2.3 Information from Third-Party Services
When you connect your social media accounts (Facebook, Instagram, LinkedIn, Google), we may receive:
- Profile information from connected accounts
- Access tokens and refresh tokens for API access
- Page and account information for business accounts
- Analytics and insights data from connected platforms
2.4 Google Ads API Data
When you connect your Google Ads account via the Google Ads API, we access and process the following data solely to provide our advertising management features:
- Account information: Google Ads customer ID, account name, and currency settings
- Campaign data: Campaign names, budgets, bid strategies, status, and settings
- Ad group and ad data: Ad group names, ads, keywords, and targeting settings
- Performance metrics: Impressions, clicks, cost, conversions, CTR, CPC, and ROAS
- OAuth credentials: Access tokens and refresh tokens issued by Google, stored securely and used only to make authorised API calls on your behalf
We use this data exclusively to display campaign reports, enable campaign management actions, and provide AI-powered recommendations within the Buziness AI platform. We do not share Google Ads data with third parties or use it for any purpose beyond providing the service features you have explicitly enabled. You may revoke Google Ads API access at any time through your account settings or via your Google account permissions page.
2.5 Meta Ads API Data (Facebook & Instagram)
When you connect your Meta (Facebook/Instagram) ad account via the Meta Marketing API, we access and process the following data solely to provide advertising management features:
- Ad account information: Account ID, name, currency, timezone, and account status
- Campaign data: Campaign names, objectives, budgets, schedules, and status
- Ad set and ad data: Targeting settings, placements, creatives, and bid amounts
- Lead form data: Lead information submitted through Facebook Lead Ads forms that you have explicitly enabled on your pages
- Performance metrics: Reach, impressions, clicks, spend, CPM, CPC, and conversions
- OAuth access tokens: Meta-issued access tokens used exclusively to perform authorised API operations on your behalf
Meta Ads data is used exclusively to enable campaign management, lead capture, and performance reporting within Buziness AI. We comply with Meta's Platform Terms and Data Use Policy. You may revoke Meta API access at any time through your Facebook account settings under Apps and Websites.
2.6 Pinterest API Data
When you connect your Pinterest account, we access your Pinterest profile information, boards, and pin data solely to enable scheduling and publishing of pins through the Pinterest API. We do not use Pinterest data for any purpose beyond operating the pin scheduling features you have enabled. You may disconnect Pinterest at any time through your account settings.
3. How We Use Your Information
We use the information we collect for the following purposes:
- Service Provision: To provide, maintain, and improve our Service, including posts, stories, reels, messaging, and social features.
- Authentication: To authenticate your identity, manage your account, and secure your session.
- Content Delivery: To display your content and the content of other users in your feed, stories, and explore sections.
- Expert Services: To enable our expert services (Ad Expert, Design Expert, Post Expert) that help you manage your social media accounts and create content.
- Communication: To send you notifications, updates, and respond to your inquiries.
- Personalization: To personalize your experience, recommend content, and suggest connections.
- Analytics: To analyze usage patterns, improve our Service, and develop new features.
- Payment Processing: To process payments, manage subscriptions, and handle billing.
- Security: To detect, prevent, and address fraud, abuse, and security issues.
- Legal Compliance: To comply with legal obligations and enforce our terms of service.
4. Data Storage and Security
4.1 Data Storage
Your data is stored using the following services:
- PostgreSQL Database: User accounts, profiles, posts, comments, likes, follows, and other structured data are stored in secure PostgreSQL databases.
- MongoDB: Messages and chat data are stored in MongoDB for flexible schema and high-performance messaging.
- Amazon S3: Media files (images, videos, audio) are stored securely in Amazon S3 buckets with appropriate access controls.
4.2 Security Measures
We implement industry-standard security measures to protect your information:
- Encryption of data in transit using HTTPS/TLS
- Secure authentication using Better Auth with session management
- Access tokens stored securely with expiration handling
- Regular security audits and updates
- Limited access to personal data on a need-to-know basis
However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security.
5. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to track activity on our Service and store certain information.
5.1 Types of Cookies We Use
- Session Cookies: Essential cookies for authentication and session management (e.g., "better-auth.session_token"). These are required for the Service to function.
- Analytics Cookies: Google Analytics cookies to understand how visitors interact with our Service.
- Preference Cookies: Cookies that remember your preferences and settings.
5.2 Cookie Settings
You can control cookies through your browser settings. However, disabling essential cookies may affect the functionality of our Service. Our session cookies are set with the following attributes:
- HttpOnly: Prevents client-side JavaScript access
- Secure: Transmitted only over HTTPS in production
- SameSite: Configured for cross-domain compatibility
- MaxAge: 7 days for session persistence
6. Third-Party Services
We use third-party services that may collect, process, or store your information:
- Google Analytics: We use Google Analytics to analyze website traffic and user behavior. Google's privacy policy applies to their collection and use of data.
- Amazon Web Services (S3): We use AWS S3 for secure media storage. AWS handles data according to their security and privacy standards.
- Razorpay: We use Razorpay for payment processing. Payment information is handled according to Razorpay's privacy policy and PCI DSS compliance.
- OAuth Providers: When you connect Facebook, Instagram, LinkedIn, or Google accounts, these platforms' privacy policies apply to the data they share with us.
- Google Ads API: We use the Google Ads API to enable campaign management features. Data accessed via the Google Ads API is governed by the Google Ads API Terms of Service and Google's Privacy Policy. We access only the data necessary to provide the advertising management features you have enabled.
- Meta Marketing API (Facebook & Instagram Ads): We use the Meta Marketing API to enable Facebook and Instagram ad campaign management and lead capture. Data accessed is governed by Meta's Platform Terms and Data Use Policy. We access only data necessary to provide the advertising and lead management features you have enabled.
- Pinterest API: We use the Pinterest API to enable pin scheduling and board management. Data accessed is governed by Pinterest's Developer Terms of Service and Privacy Policy.
- LinkedIn Marketing API: We use the LinkedIn Marketing API for LinkedIn Ads campaign management. Data accessed is governed by LinkedIn's API Terms of Use and Privacy Policy.
- Better Auth: We use Better Auth for authentication services, which processes authentication data according to their privacy practices.
We encourage you to review the privacy policies of these third-party services to understand how they handle your information.
7. Data Sharing and Disclosure
We do not sell your personal information. We may share your information in the following circumstances:
- Public Content: Posts, stories, and profile information you make public are visible to other users and may be indexed by search engines.
- Service Providers: We share information with service providers who perform services on our behalf (hosting, analytics, payment processing).
- Legal Requirements: We may disclose information if required by law, court order, or government regulation.
- Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred.
- Protection of Rights: We may disclose information to protect our rights, property, or safety, or that of our users or others.
- With Your Consent: We may share information with your explicit consent or at your direction.
8. Your Rights and Choices
You have the following rights regarding your personal information:
- Access: You can access and review your personal information through your account settings.
- Correction: You can update or correct your profile information at any time.
- Deletion: You can request deletion of your account and associated data, subject to legal retention requirements.
- Data Portability: You can request a copy of your data in a portable format.
- Opt-Out: You can opt out of certain data collection, such as analytics cookies, through your browser settings.
- Account Controls: You can control privacy settings for your posts, profile visibility, and who can message you.
- Disconnect Social Accounts: You can disconnect connected social media accounts at any time through your settings.
To exercise these rights, please contact us using the information provided in the "Contact Us" section below.
9. Children's Privacy
Our Service is not intended for children under the age of 13 (or the minimum age in your jurisdiction). We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately, and we will take steps to delete such information.
10. Data Retention
We retain your personal information for as long as necessary to provide our Service and fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law. When you delete your account, we will delete or anonymize your personal information, except where we are required to retain it for legal, regulatory, or legitimate business purposes.
11. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that differ from those in your country. By using our Service, you consent to the transfer of your information to these countries. We take appropriate measures to ensure your information is protected in accordance with this Privacy Policy.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.
13. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
14. Additional Information
This Privacy Policy is part of our Terms of Service. By using our Service, you agree to both this Privacy Policy and our Terms of Service. If you do not agree with any part of this Privacy Policy, please discontinue use of our Service.
For users in the European Economic Area (EEA), United Kingdom, or other jurisdictions with specific data protection laws, you may have additional rights under applicable regulations such as the General Data Protection Regulation (GDPR). Please contact us if you wish to exercise these rights.
Was this helpful?