Privacy Policy
Last updated: August 9, 2026
sociogency is operated by Kivaan Solutions ("we", "us", "our"). This policy explains what
information sociogency collects, how it's used, and how you can control or delete it.
If you have questions, contact us at
contact@kivaan.co.uk.
1. Information we collect
We collect the following categories of information:
- Account information: the email address, password (stored as a secure hash, never in plain text), and business name you provide when you sign up.
- Connected social account data: when you connect Instagram, we receive an access token from Meta and use it to read basic profile fields (username, account type, media count) and your recent public posts (captions, like counts, comment counts, timestamps, permalinks, and post images) via the Instagram Graph API. To generate the sentiment tags shown next to a post, we also read the text of comments left on your own posts (not who left them); this is processed in memory to produce the tags and is not stored in our database. We only ever read data belonging to the Instagram account you connect, never other people's posts, direct messages, or follower lists. We do not receive your Instagram password.
- Content you create in sociogency: draft captions, brand-voice preferences (tone, topics to cover or avoid), your approve/edit/reject decisions on drafts, and which of your own past photos you choose to publish a new caption with.
- Basic technical data: session cookies used to keep you logged in. We do not use tracking or advertising cookies.
- Billing information: sociogency is a paid subscription. Payment is handled entirely by Stripe; we never see or store your full card number. We store your Stripe customer and subscription IDs and your subscription status (e.g. trialing, active, canceled) so the app can check whether you're subscribed.
2. How we use this information
We use your data only to operate sociogency for you:
- To generate draft weekly posts based on your past Instagram content and stated brand voice.
- To display your connected accounts and let you review, edit, approve, or reject drafts.
- To write new draft captions, we send a small amount of context to an AI provider (see section 3): never your access token, and never anything belonging to another person.
- To show sentiment tags (green/red) on your Recent posts and a sentiment-over-time view on the Analytics page, based on a simple keyword/emoji match against your posts' comment text. This runs locally in the app: comment text is never sent to Groq, Anthropic, or any other third party.
- To publish a post when you use "Create post," using an image you choose from your own past posts.
- To keep you signed in and secure your account.
We do not sell your data, use it for advertising, or share it with data brokers. Our AI providers do not train their models on this data (see section 3).
3. Who we share information with
We share data only with the service providers that make sociogency work:
- Meta / Instagram Graph API: to fetch your profile and post data, and to publish a post when you use "Create post," using the access token you grant when you connect your account.
- Groq, and optionally Anthropic (Claude): to write draft captions, we send these providers your account's public username and category, a short bio if available, a sample of your recent post captions and like counts, and the brand-voice preferences you've entered. We never send your access token, your email, or any other person's data to these providers. Per their published policies, neither provider trains its models on this API traffic.
- Neon (Postgres hosting): stores your account data, connected-account tokens, and drafts.
- Render (application hosting): runs the sociogency application itself.
- Stripe: processes your subscription payment and stores your payment details on their own secure systems. We send Stripe your email address to set up billing; Stripe never shares your full card number with us.
These providers process data on our behalf and don't use it for their own purposes beyond what's described above. We don't share your data with any other third party.
4. Data retention
We retain your account data and connected-account access tokens for as long as your account is active. If you disconnect an Instagram account in Settings, we stop using that access token and it's no longer valid to fetch new data. If you delete your account (see below), we delete your stored data, including access tokens, brand-voice settings, and drafts.
5. Your choices and data deletion
You can disconnect a connected social account at any time from Settings: this deletes the stored access token immediately and stops sociogency from accessing that account going forward.
You can permanently delete your sociogency account and all associated data (login credentials, connected-account tokens, brand-voice settings, and drafts) yourself at any time from Settings → Delete my account. This also cancels your subscription with Stripe immediately, if you have one, so you won't be charged again. It takes effect immediately and cannot be undone. If you'd rather we do it for you, email
contact@kivaan.co.uk
from the email address on your account.
6. Security
Passwords are hashed before storage (never stored in plain text). Data is stored with our hosting providers' standard encryption at rest and in transit (HTTPS/TLS). Access tokens are only used server-side to call the Instagram Graph API on your behalf.
7. Changes to this policy
If this policy changes, we'll update the "Last updated" date above. Material changes will be communicated to active users by email where practical.
8. Contact
Questions about this policy or your data: contact@kivaan.co.uk.