Privacy Policy

Updated: 12 August 2026

What we receive

When you connect your Threads account we receive: your Threads user id and username, an access token, and the text of public posts found by your search phrases. We never receive your password — the connection is made through Meta’s own authorisation flow.

What we use it for

Only to find relevant public posts for you and to publish replies from your account, and only when you have permitted it. We do not sell data, pass it to advertising networks, or use it to train our own models.

How tokens are stored

Access tokens are stored encrypted (AES-256-GCM). The encryption key is not kept in the database. Tokens are never written to logs.

Third-party data

We store the text of other people’s public posts found by your queries, so we can show them to you and draft a reply. We do not collect their contact details, do not build profiles of them, and use the data for nothing else. Posts you dismissed, or that failed verification, are deleted after 90 days.

Retention

Your account data is kept while the account is connected. On disconnection or deletion we remove tokens immediately and the remaining data within 30 days.

Your rights

You can revoke access in your Threads settings at any time, which immediately ends all activity on your account. You may request deletion of all your data, and we will complete it within 30 days.

Contact

For data questions, write to the address published on this site.