This Privacy Policy explains how PostDid ("PostDid", "we", "our" or "us") collects, holds, uses and discloses personal information when you interact with postdid.com, the PostDid application and related services (collectively, the "Service").
Business address: Burj Vista, Downtown Dubai, Dubai, 00971, United Arab Emirates
Privacy contact: postdid.com/contact
We take privacy seriously and aim to handle personal information transparently and responsibly.
Where the UAE Personal Data Protection Law (Federal Decree-Law No. 45 of 2021) applies to us, we intend to handle personal information consistently with its requirements.
Other privacy laws may also apply depending on where you are located.
1. ScopeThis Privacy Policy applies to personal information we collect through:
• the PostDid website;
• PostDid accounts;
• guest creation functionality;
• paid subscriptions;
• credit purchases;
• uploaded content;
• Style Profiles;
• AI-generation features;
• customer support;
• communications with us;
• analytics and security systems; and
• other interactions with PostDid.
It does not govern third-party websites, platforms or services that operate under their own privacy policies.
2. Personal Information We May CollectThe information we collect depends on how you use PostDid.
Account Information
We may collect:
• name;
• email address;
• account identifier;
• organisation or business name;
• profile information;
• login and authentication information;
• account preferences;
• team membership; and
• account permissions.
Passwords may be handled by our authentication provider rather than stored directly by PostDid in readable form.
Billing and Subscription Information
We may collect:
• subscription plan;
• billing status;
• transaction history;
• credit purchases;
• credit balance;
• invoice information;
• billing country;
• payment status; and
• limited payment-related identifiers provided by our payment processor.
Payment-card information may be collected directly by our payment processor rather than stored by PostDid.
User Content
Depending on your use of the Service, we may process:
• uploaded photographs;
• graphics;
• screenshots;
• logos;
• fonts;
• brand materials;
• text;
• prompts;
• instructions;
• captions;
• URLs;
• imported source material;
• generated text;
• generated images;
• rendered posts;
• Style Profile material; and
• other content you provide.
Some User Content may incidentally contain personal information relating to you or other people.
Source Information
When you provide a URL or other source, we may collect or process:
• the URL;
• publicly accessible content associated with the source;
• metadata;
• images;
• text;
• page titles;
• structured information; and
• other information required to provide the requested functionality.
Device and Technical Information
We may automatically collect information such as:
• IP address;
• device type;
• browser type;
• operating system;
• language;
• approximate geographic region derived from technical information;
• referring pages;
• timestamps;
• session information;
• diagnostic information;
• error logs;
• network information; and
• security-related information.
Usage Information
We may collect information about how the Service is used, including:
• features used;
• creation mode selected;
• generation requests;
• rendering activity;
• credits consumed;
• pages viewed;
• interactions with the interface;
• account activity;
• performance data;
• crash information; and
• general usage patterns.
Communications
If you contact us, we may collect:
• your contact details;
• the contents of your message;
• attachments;
• support history;
• feedback; and
• information reasonably necessary to respond.
3. Information About Other PeopleContent submitted to PostDid may contain information relating to another person.
For example, an uploaded photograph may depict an individual, or imported material may contain a person's name or contact information.
If you provide personal information about another person, you are responsible for having any authority, permission or consent required to provide that information to us for processing.
You should not submit highly sensitive information about another person unless doing so is lawful, necessary and appropriate.
4. Sensitive InformationPostDid is not designed for the routine storage or processing of highly sensitive personal records.
We ask that you avoid submitting sensitive information unless it is genuinely necessary for your lawful use of the Service.
Depending on applicable law, sensitive information may include information concerning health, genetics, biometrics, racial or ethnic origin, political opinions, religious beliefs, sexual orientation, criminal history or similar matters.
Where we knowingly collect sensitive information and applicable law requires consent, we will seek appropriate consent or rely on another lawful basis where permitted.
5. How We Collect InformationWe may collect personal information:
• directly from you;
• when you create or use an account;
• through guest use of the Service;
• when you upload content;
• when you submit a URL;
• when you purchase a subscription or credits;
• through your organisation or account administrator;
• through cookies and similar technologies;
• through service providers;
• from publicly accessible sources that you instruct the Service to process; and
• when you communicate with us.
6. Why We Use Personal InformationWe may use personal information to:
Provide the Service
Including to:
• create and manage accounts;
• authenticate users;
• process uploaded material;
• process source URLs;
• create Style Profiles;
• generate text and images;
• render content;
• provide exports;
• manage team accounts;
• calculate and deduct credits; and
• maintain your content and account.
Process Payments
Including to:
• process subscriptions;
• process credit purchases;
• issue invoices;
• manage renewals;
• detect payment problems; and
• maintain financial records.
Operate and Improve PostDid
Including to:
• diagnose errors;
• analyse product performance;
• understand feature usage;
• improve workflows;
• develop new features;
• improve reliability;
• test functionality; and
• maintain service quality.
Safety and Security
Including to:
• detect abuse;
• prevent fraud;
• prevent unauthorised access;
• investigate security incidents;
• enforce usage restrictions;
• protect accounts; and
• maintain the integrity of PostDid.
Customer Support
Including to:
• respond to enquiries;
• troubleshoot problems;
• investigate complaints;
• provide account assistance; and
• communicate important service information.
Legal and Compliance Purposes
Including to:
• comply with applicable law;
• respond to valid legal process;
• establish or defend legal claims;
• investigate suspected violations;
• enforce our Terms of Service; and
• protect PostDid, users and third parties.
Communications and Marketing
Where permitted by law, we may use contact information to:
• communicate product updates;
• send account notices;
• send service announcements;
• provide information about new features; and
• send promotional communications.
You may opt out of marketing communications through the unsubscribe mechanism provided or by contacting us.
Service-related communications may still be sent where necessary to operate your account.
7. Artificial Intelligence ProcessingPostDid uses artificial-intelligence and machine-learning systems to provide features such as:
• image analysis;
• content planning;
• text generation;
• caption generation;
• image generation;
• image transformation;
• source summarisation; and
• related functionality.
Information you submit may therefore be transmitted to and processed by third-party AI infrastructure providers where necessary to perform the requested function.
Depending on the feature used, this information may include prompts, text, photographs, source material, instructions or other content.
Those providers may process information in accordance with contractual arrangements with PostDid and their applicable privacy and data-processing terms.
We select and manage providers with regard to factors including functionality, security and privacy, but no third-party system can be guaranteed to be risk-free.
You should not submit information to AI features that you are not authorised to process.
8. Service ProvidersWe may disclose or make personal information available to third parties that help us operate PostDid.
These may include providers of:
• cloud infrastructure;
• hosting;
• database services;
• content delivery;
• authentication;
• artificial intelligence;
• image generation;
• payments;
• analytics;
• performance monitoring;
• error reporting;
• email delivery;
• customer support;
• security;
• fraud prevention;
• communications; and
• professional services.
These providers are permitted to process information for the purposes for which we engage them and subject to applicable contractual and legal requirements.
9. Payment ProvidersPayments may be processed by third-party payment providers such as Stripe.
Payment providers may collect information directly from you, including payment-card information and billing details.
Their handling of information is also governed by their respective privacy policies.
PostDid may receive limited information concerning the transaction, such as payment status, payment identifier, card type or limited card details.
10. Overseas Processing and DisclosurePostDid uses cloud-based technology and service providers that may operate internationally.
Personal information may therefore be stored, processed or accessed outside the United Arab Emirates.
Based on our current infrastructure, personal information is likely to be processed or stored in the United States.
Information may also be processed in other countries in which our technology or service providers operate.
Where reasonably practicable and required by applicable law, we take reasonable steps in relation to overseas handling of personal information.
The countries in which providers operate may change as our infrastructure evolves.
11. Cookies and Similar TechnologiesPostDid may use cookies, local storage, software development kits, pixels and similar technologies.
These technologies may be used for:
• authentication;
• session management;
• remembering preferences;
• fraud prevention;
• security;
• performance monitoring;
• analytics;
• product improvement; and
• where applicable and permitted, marketing.
Some technologies are necessary for the Service to function.
Others may be optional depending on your location and our implementation.
Where consent is required by applicable law, we will seek consent before using relevant non-essential tracking technologies.
Browser settings may allow you to block or delete certain cookies, although doing so may affect functionality.
12. AnalyticsWe may use analytics tools to understand how users interact with PostDid.
Analytics information may include device information, page interactions, feature usage, session information and technical identifiers.
We use this information to understand product performance, troubleshoot issues and improve the Service.
Where analytics information constitutes personal information, we handle it in accordance with this Privacy Policy and applicable law.
13. When We May Disclose Personal InformationWe may disclose personal information:
To Service Providers
Where reasonably necessary to operate PostDid.
At Your Direction
For example, where you intentionally use functionality that transmits content to another service.
To Your Organisation
If your PostDid account is controlled by an employer, agency or other organisation, authorised administrators may have access to information relating to that organisation's account.
For Legal Reasons
We may disclose information where we reasonably believe disclosure is required or authorised by law, regulation, court order or legally valid government process.
To Protect Rights and Safety
We may disclose information where reasonably necessary to:
• detect or prevent fraud;
• investigate abuse;
• protect PostDid;
• protect users;
• protect third parties;
• investigate security incidents; or
• establish, exercise or defend legal claims.
Business Transactions
If PostDid is involved in a merger, acquisition, financing, restructuring, sale of assets or similar corporate transaction, information may be disclosed to relevant advisers, counterparties or successors subject to appropriate confidentiality and legal safeguards.
14. We Do Not Sell Personal InformationPostDid does not sell your personal information for monetary consideration.
If our practices change in a manner that would constitute a "sale" or "sharing" under an applicable privacy law, we will provide any notice and choices required by that law.
15. Data SecurityWe use technical, organisational and administrative measures designed to protect personal information against unauthorised access, misuse, interference, loss, alteration and disclosure.
Depending on the nature of the information and system, these measures may include:
• access controls;
• authentication systems;
• restricted internal access;
• encryption in transit;
• cloud-security controls;
• time-limited access mechanisms;
• monitoring;
• logging;
• backup procedures; and
• security reviews.
However, no internet-based service, software platform, cloud provider or storage system can guarantee absolute security.
You are responsible for maintaining the security of your own account credentials and devices.
16. Data BreachesIf we become aware of a data incident, we will investigate and respond according to the circumstances and applicable law.
Where a data breach triggers legal notification obligations, we will make notifications required by applicable law.
17. Data RetentionWe retain personal information for as long as reasonably necessary for the purposes described in this Privacy Policy, including to:
• provide the Service;
• maintain accounts;
• comply with legal obligations;
• resolve disputes;
• maintain security;
• prevent fraud; and
• enforce agreements.
Retention periods may vary by category of information.
When information is no longer reasonably required, we may delete, destroy or de-identify it, subject to legal obligations and technical limitations.
Deleted information may remain temporarily in secure backups or logs before being overwritten according to normal backup cycles.
18. Account and Content DeletionWhere functionality is available, you may delete individual posts or content through your account.
You may request closure of your account by contacting:
postdid.com/contact
Following an account-deletion request, we will take reasonable steps to delete or de-identify information that we are not legally or operationally required to retain.
Some records may need to be retained for legitimate purposes such as:
• payment records;
• fraud prevention;
• legal compliance;
• dispute resolution;
• security;
• enforcing agreements; and
• backup integrity.
19. Access to Personal InformationSubject to applicable law, you may request access to personal information we hold about you.
Requests may be sent to:
postdid.com/contact
We may need to verify your identity before providing access.
There may be circumstances in which applicable law permits or requires us to refuse access.
Where required, we will explain the basis for refusal.
20. CorrectionIf you believe personal information we hold about you is inaccurate, incomplete, out of date, irrelevant or misleading, you may request correction.
We will take reasonable steps to consider and, where appropriate, correct the information.
21. Privacy ComplaintsIf you have a concern about our handling of personal information, contact:
postdid.com/contact
Please provide sufficient detail for us to investigate the issue.
We will take reasonable steps to:
1. acknowledge the complaint;
2. investigate the circumstances;
3. request further information where necessary; and
4. provide a response within a reasonable period.
If you are dissatisfied with our response, you may have the right to make a complaint to the UAE Data Office or another privacy regulator with jurisdiction over the matter.
22. International Privacy RightsDepending on where you live and the laws applicable to PostDid, you may have additional rights concerning your personal information.
These may include rights to:
• request access;
• request correction;
• request deletion;
• object to certain processing;
• restrict certain processing;
• request portability;
• withdraw consent;
• opt out of certain marketing;
• lodge a complaint with a privacy regulator; or
• receive information concerning processing activities.
These rights are not absolute and may be subject to statutory exceptions.
To exercise an applicable privacy right, contact:
postdid.com/contact
We may need to verify your identity before processing a request.
23. European Economic Area and United KingdomWhere the EU General Data Protection Regulation, UK GDPR or similar law applies to our handling of personal data, the legal basis for processing may include:
• performance of a contract;
• compliance with a legal obligation;
• our legitimate interests in operating, securing and improving the Service;
• your consent, where required; and
• establishment, exercise or defence of legal claims.
Where consent is the legal basis for processing, you may withdraw consent subject to applicable law.
International transfers will be handled using lawful mechanisms where required.
24. Customer Content and Business UsersWhere a business, agency or other customer submits personal information relating to its own clients, employees, followers or other individuals, that customer may be responsible for determining why and how that information is processed.
In those circumstances, PostDid may process relevant information on the customer's instructions for the purpose of providing the Service.
Business customers are responsible for ensuring that their use of PostDid complies with applicable privacy and data-protection requirements.
Where appropriate, enterprise customers may contact us regarding additional data-processing terms.
25. ChildrenPostDid is not intended for children under 18.
We do not knowingly seek to collect personal information from children through accounts intended for adults.
If you believe a child has provided personal information to PostDid contrary to this policy, contact us at postdid.com/contact.
We may delete the information or take other appropriate action.
26. Third-Party LinksPostDid may contain links to third-party websites, applications or services.
We do not control their privacy practices.
Your interaction with a third-party service is governed by that third party's privacy policy and terms.
27. Social-Media AccountsIf you interact with PostDid through Instagram or another social network, that platform may process information in accordance with its own privacy practices.
PostDid is not responsible for the privacy practices of those platforms.
28. Business TransfersIf ownership or control of all or part of PostDid changes, information associated with the business may be transferred as part of the transaction.
Any successor will be required to handle relevant personal information subject to applicable privacy obligations.
29. Changes to This Privacy PolicyWe may update this Privacy Policy to reflect:
• changes to PostDid;
• changes to our providers;
• new features;
• security developments;
• changes in law; or
• changes to our privacy practices.
The current version will be published on our website with its effective date.
Where required by law, we will provide additional notice of material changes.
30. Contact UsFor privacy requests, questions or complaints:
PostDid
Burj Vista, Downtown Dubai, Dubai, 00971, United Arab Emirates
Contact: postdid.com/contact
We will take reasonable steps to respond to legitimate privacy enquiries and requests in accordance with applicable law.