Draft — pending legal review. This document is a starting template and has not been reviewed by counsel. Replace with a finalized version before public launch.

Privacy Policy

Last updated: May 8, 2026

This Privacy Policy describes how GrowLinkAI ("we", "us", or "our") collects, uses, and shares information when you use our website and services (collectively, the "Service"). By using the Service, you agree to the collection and use of information in accordance with this policy.

1. Information We Collect

Account information

When you create an account, we collect your name, email address, and (for password-based sign-ups) a hashed password. If you sign in via Google or LinkedIn, we receive basic profile information from those providers as permitted by the OAuth scopes you grant.

LinkedIn OAuth data

When you connect your LinkedIn account, we store an access token (and, when issued, a refresh token) so we can act on your behalf within the scopes you authorized — typically reading your basic profile and publishing posts you explicitly create through the Service. We do not access, copy, or store your LinkedIn connections, messages, or data outside the granted scopes.

Content you create

We store the posts you draft, schedule, or publish through the Service, along with associated metadata (status, scheduled time, publish history) and your voice profile preferences.

Usage data

We track per-user, per-month counters (chat messages used, posts generated) to enforce subscription quotas. We log standard request metadata (timestamps, IP addresses, user agents) for security and debugging.

Payment information

Subscription billing is processed by our payment provider (Stripe). We do not store full credit card numbers on our servers; Stripe holds those. We retain only the subscription status, plan, and billing history needed to manage your account.

2. How We Use Your Information

  • To provide and maintain the Service
  • To authenticate you and protect your account
  • To generate AI-powered LinkedIn content tailored to your profile and voice
  • To publish content to LinkedIn on your behalf when you explicitly request it
  • To enforce subscription quotas and process payments
  • To communicate service updates, security notices, and (with your consent) product news
  • To detect and prevent fraud, abuse, and violations of our Terms of Service

3. Third-Party Services

OpenAI

We send your chat messages and profile context to OpenAI to generate AI responses. OpenAI processes this data subject to its own Privacy Policyand API data-handling terms. We do not permit OpenAI to use your data to train its models.

LinkedIn

We integrate with LinkedIn's API to authenticate you and publish posts on your behalf. Your interactions with LinkedIn are also subject to LinkedIn's privacy policy.

Stripe

Stripe processes subscription payments. Stripe's handling of your payment information is governed by its own privacy policy.

Hosting and infrastructure

The Service is hosted on Vercel and uses managed PostgreSQL (Neon). These providers process data on our behalf under their respective data processing agreements.

4. Data Sharing

We do not sell your personal data. We share data only:

  • With third-party service providers strictly as needed to operate the Service (listed above)
  • To comply with applicable law, legal process, or enforceable governmental request
  • To protect the rights, property, or safety of GrowLinkAI, our users, or others
  • In connection with a merger, acquisition, or sale of assets, with notice to you

5. Data Retention and Deletion

We retain your data for as long as your account is active. When you delete your account, we delete or anonymize your personal data within 30 days, except where we are required to retain it for legal, tax, or fraud-prevention purposes (typically up to 7 years for billing records).

You can request export or deletion of your data at any time by emailing hello@futureofaistudio.com.

6. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access the personal data we hold about you
  • Correct inaccurate data
  • Delete your data ("right to be forgotten")
  • Export your data in a portable format
  • Object to or restrict certain processing
  • Withdraw consent where processing is based on consent

EU/EEA users: the legal bases on which we rely are contract performance (to deliver the Service), legitimate interests (security, fraud prevention), legal obligation, and consent (where required).

California users: under the CCPA/CPRA, you have the right to know what personal information we collect, request deletion, and opt out of any "sale" of personal information. We do not sell personal information.

7. Cookies

We use only essential cookies required for authentication and session management. We do not use advertising or cross-site tracking cookies.

8. Security

We use industry-standard measures to protect your data, including encryption in transit (HTTPS), encrypted database storage, hashed passwords, and access controls. No method of transmission or storage is 100% secure; we cannot guarantee absolute security.

9. Children's Privacy

The Service is not directed to children under 16. We do not knowingly collect personal information from children. If we learn we have collected data from a child, we will delete it promptly.

10. International Data Transfers

Your data may be processed in countries other than your country of residence, including the United States. Where required by law, we rely on Standard Contractual Clauses or equivalent transfer mechanisms.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by email or via a notice in the Service. Your continued use of the Service after changes take effect constitutes acceptance.

12. Contact Us

Questions about this policy or your data?

GrowLinkAI
Email: hello@futureofaistudio.com