Privacy Policy
Quick answer: This Privacy Policy explains what information BofuPosts collects, how we use it, who we share it with, and the choices you have. Written in plain language for founders. Last updated: August 8, 2026.
1. Introduction
BofuPosts ("we", "us", or "our") is a SaaS product that helps founders and teams monitor public social media conversations and generate AI reply suggestions. This policy applies to bofuposts.com, our web application, and related services we operate.
By creating an account or using BofuPosts, you acknowledge this Privacy Policy. If you do not agree, please do not use the service. For product rules and responsibilities, see our Terms and Conditions.
2. Information we collect
We collect information you provide, information generated when you use the product, and limited technical data needed to run and secure the service.
2.1 Account information
When you sign up or manage your account, we may collect:
- Name or display name
- Email address
- Password (stored as a secure hash; we do not store plain-text passwords)
- Account preferences and authentication session data
2.2 Workspace and product information
To run monitoring and reply workflows, we may store:
- Workspace names and membership details
- Keywords, platforms, and monitoring settings you configure
- Product or brand details you provide for context (for example product name, description, or website)
- Reply settings such as tone, brand mention rules, custom instructions, and draft preferences
- Saved posts, status tracking (for example Pending, Replied, Skipped), and related workflow notes
- Usage counters such as credits consumed and plan entitlements
2.3 Usage data
When you use BofuPosts, we automatically collect limited technical and usage information, which may include:
- IP address, approximate location derived from IP, browser type, and device information
- Pages or features used, timestamps, and basic diagnostic logs
- Error reports and performance data needed to fix issues and prevent abuse
- Rate-limit and security signals to protect the service
2.4 Payment-related data
Paid plans and credit purchases are processed by Stripe. We may store billing-related metadata such as your plan, subscription status, invoice references, and Stripe customer or payment identifiers.
Card numbers and full payment credentials are handled by Stripe. We do not store your full credit card number on our servers.
2.5 Notification settings
If you enable notifications, we collect the settings and destinations you configure so we can deliver alerts. Depending on what you connect, this may include:
- Email notification preferences and destination address
- Telegram, Discord, or Slack channel or webhook configuration you provide
- Custom webhook URLs and related delivery settings
- Notification history needed for delivery, retries, and troubleshooting
Note: You can change or disconnect notification channels in your account settings at any time.
2.6 Communications
If you contact us for support, sales, or feedback, we keep the content of those messages and related metadata so we can respond and improve the product.
3. How we use the information
We use the information described above to:
- Create and manage accounts, workspaces, and access controls
- Provide monitoring, opportunity queues, reply drafting, credits, and related features
- Process subscriptions, credit purchases, and billing events
- Send transactional messages such as security notices, billing receipts, and product alerts you enable
- Improve reliability, performance, documentation, and product quality
- Detect, prevent, and investigate fraud, abuse, spam, or security incidents
- Comply with legal obligations and enforce our Terms and Conditions
4. AI processing (reply generation)
When you request AI-generated reply suggestions, we process relevant inputs such as the public post content you select, your reply settings, and product or brand context you provide. That information may be sent to our AI infrastructure providers solely to generate suggestions for you.
AI outputs are drafts for your review. We do not claim that AI processing creates a human review of every result, and you remain responsible for what you choose to post or send. We do not use your private workspace content to train public foundation models unless we clearly state otherwise in writing.
5. Social media data (public posts only)
BofuPosts monitors publicly available social media conversations based on keywords and platforms you configure (for example Reddit, X, LinkedIn, and Facebook public content that our product can access).
We process public post content to surface high-intent opportunities and to generate reply suggestions for you. We do not claim access to private messages, locked accounts, or content that is not publicly available through normal product integrations.
Public posts may include personal data about other people who posted them. We process that public content to provide the service to you. You are responsible for using public engagement tools in a way that respects platform rules and applicable law.
6. Cookies and tracking
We use cookies and similar technologies that are necessary for authentication, security, preferences, and core product function. We may also use limited analytics tools to understand aggregate product usage and improve the experience.
You can control cookies through your browser settings. Disabling certain cookies may affect login sessions or other core features.
7. Third-party services
We rely on trusted third parties to operate BofuPosts. Depending on configuration, these may include:
- Stripe for payment processing and subscription billing
- Email delivery providers for transactional and notification email
- Hosting, database, and infrastructure providers that store and run the application
- AI model or API providers used to generate reply suggestions
- Optional analytics tools for product usage insights
- Notification delivery channels you connect (email, Telegram, Discord, Slack, or webhooks)
Note: These providers process data only as needed to deliver their services under their own terms and privacy policies.
8. Data sharing
We do not sell your personal information. We share information only in limited situations:
- With service providers who help us host, bill, email, generate AI drafts, or operate the product
- With notification destinations you configure (for example a Slack channel or webhook you choose)
- If required by law, legal process, or government request
- To protect the rights, safety, or security of BofuPosts, our users, or the public
- In connection with a merger, acquisition, financing, or sale of assets, where permitted by law
9. Data retention
We keep account, workspace, and product data while your account is active and as needed to provide the service. After account deletion or a valid deletion request, we delete or anonymize personal data within a reasonable period, except where we must retain information for legal, tax, fraud-prevention, or accounting reasons (for example billing records).
Public post caches and operational logs may be retained for a limited time for product function, security, and debugging, then deleted or aggregated.
10. Data security
We use reasonable technical and organizational measures designed to protect your information, including encrypted transport (HTTPS), hashed passwords, access controls, and operational monitoring.
No internet service is perfectly secure. You are responsible for keeping your login credentials confidential and for using strong passwords. Notify us promptly if you believe your account has been compromised.
11. User rights
Depending on where you live, you may have rights to access, correct, update, export, or delete personal information we hold about you. You can often update account details and notification settings directly in the product.
To request access, correction, or deletion, contact us using the details below. We may need to verify your identity before fulfilling a request. We will respond within a reasonable time and as required by applicable law.
You may also unsubscribe from non-essential marketing emails using the unsubscribe link in those messages. Transactional messages related to security, billing, or service operation may still be sent when needed.
12. International users
BofuPosts may be hosted or supported in countries different from where you live. If you use the service from outside the country where our systems operate, you understand that your information may be transferred to and processed in other jurisdictions that may have different data protection laws.
13. Children's privacy
BofuPosts is not directed to children under 16, and we do not knowingly collect personal information from children under 16. If you believe a child has provided us personal information, contact us and we will take reasonable steps to delete it.
14. Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will change the "Last updated" date at the top of this page. For material changes, we may also provide additional notice such as an email or in-app message. Continued use of the service after an update means you accept the revised policy.
15. Contact information
If you have questions about this Privacy Policy or want to exercise your privacy rights, contact us at:
- Email: [email protected]
- Contact form: https://bofuposts.com/contact
Questions about your data?
Reach out anytime. We keep privacy language practical so founders can make informed choices.