SUUR SOCIAL
Effective May 2, 2026

Privacy Policy

This policy explains how SUUR SOCIAL handles account, content, publishing, scheduling, and analytics data for creators and operators.

Product workflow
1
Choose videos
2
Connect accounts
3
Review settings
4
Publish and learn

Overview

SUUR SOCIAL is a social publishing console for preparing carousels and short-form assets, connecting authorized social accounts, publishing or scheduling content, and reviewing performance snapshots. We process information only as needed to provide those product features, maintain security, support the service, and comply with connected platform requirements.

Information You Provide

  • Account information such as your email address, sign-in status, and authentication cookies.
  • Carousel and post information such as titles, captions, tags, campaign labels, favorites, notes, and schedule times.
  • Media assets you upload, render, or select for publishing, including images, videos, and asset URLs.
  • Support or operational messages you send to us, including the contact details needed to respond.

Connected Social Account Data

When you connect Instagram, TikTok, or YouTube, we receive information made available by the relevant platform after you authorize SUUR SOCIAL through its OAuth or authorization flow. Depending on the platform and scopes granted, this may include:

  • Platform account identifiers, usernames, display names, profile images, channel or Page identifiers, and granted scopes.
  • Access tokens, refresh tokens, token expiry times, and authorization state needed to keep the connection working.
  • Creator/account metadata such as available TikTok privacy options, Instagram professional account details, or YouTube channel details.
  • Publishing results such as platform post IDs, upload status, live URLs, error messages, and selected privacy or disclosure settings.
  • Analytics snapshots such as views, likes, comments, shares, saves, reach, engagement rate, follower count, subscriber count, and similar metrics when available.

How We Use Information

  • To authenticate users and protect access to the studio.
  • To show connected accounts and help you select the correct destination before publishing.
  • To render, upload, publish, schedule, and track the status of content you submit.
  • To pull post and account analytics that help you compare formats, designs, messages, and platform performance.
  • To troubleshoot errors, detect abuse, keep the service reliable, and comply with legal or platform obligations.

Platform APIs and Third-Party Services

SUUR SOCIAL connects to official platform APIs and service providers that help operate the product. These providers process information only for the purposes described in this policy.

  • TikTok: used for account authorization, creator/account information, content publishing, publishing status, and analytics where approved by TikTok.
  • Instagram/Meta: used for Instagram professional account connection, content publishing, media status, and insights where approved by Meta.
  • YouTube/Google: used for YouTube channel authorization, Shorts/video upload, channel information, and YouTube-related analytics where approved by Google.
  • Cloudflare Workers and Cloudflare R2: used for hosting, edge routing, logs, media transport, and lightweight record storage.
  • Resend, when configured: used for magic-link email delivery and related email metadata.

SUUR SOCIAL uses YouTube API Services. Google may process information according to the Google Privacy Policy. Our use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Token Handling and Security

Social platform tokens are used by server-side routes to call the relevant platform APIs. Token payloads are encrypted before storage, are not exposed to client-side JavaScript, and are not sold or shared with unrelated third parties. No online service can guarantee perfect security, but we use reasonable technical and organizational safeguards designed to protect the information we process.

Cookies and Similar Technologies

We use cookies and similar browser storage for sign-in, session protection, OAuth state validation, and basic product operation. We do not use SUUR SOCIAL to serve behavioral advertising.

How We Share Information

We do not sell personal information. We share information only as needed to operate SUUR SOCIAL, including:

  • With connected platforms when you authorize a connection, submit a post, request analytics, or revoke access.
  • With infrastructure and email providers that help us host, store, secure, and deliver the service.
  • With professional advisors, authorities, or other parties when required by law or needed to protect rights, safety, and security.
  • In connection with a business transfer, such as a merger, acquisition, financing, or sale of assets, subject to appropriate protections.

Data Retention

We retain information for as long as needed to provide the service, maintain publishing history, preserve analytics snapshots, resolve disputes, comply with legal or platform obligations, and improve the product. Published content may remain available on the destination platform according to that platform's controls and policies. We may retain aggregated or de-identified analytics that no longer identify a specific user or connected account.

Disconnecting Accounts and Deletion Requests

You can disconnect connected accounts from the SUUR SOCIAL account area. Disconnecting removes the stored connection record and token payload for that account. You can also revoke access directly from the relevant platform:

  • Google/YouTube: revoke access from the Google security permissions page at security.google.com/settings/security/permissions.
  • Meta/Instagram: manage connected apps from your Facebook or Instagram account settings.
  • TikTok: manage connected apps from your TikTok account settings.

To request deletion of information associated with your SUUR SOCIAL account, email hello@suur.io. We will verify the request and delete or de-identify data that we are not required to retain. For YouTube Authorized Data, we delete stored Authorized Data after revocation as required by YouTube API Services policy.

Your Choices and Rights

Depending on where you live, you may have rights to access, correct, delete, export, or object to certain processing of your personal information. You may also have the right to withdraw consent where processing is based on consent. To make a request, contact us at hello@suur.io. We may need to verify your identity and authority before fulfilling a request.

Children

SUUR SOCIAL is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided personal information to SUUR SOCIAL, contact us so we can take appropriate action.

Changes to This Policy

We may update this policy as the product, platform requirements, or legal obligations change. The effective date above shows when this policy was last updated. Continued use of SUUR SOCIAL after an update means the updated policy applies to future use.

Contact

Questions or requests about SUUR SOCIAL privacy practices can be sent to hello@suur.io.