Last updated: 12 September 2026
Postorb is a social media marketing tool. It helps its users plan, write and schedule posts, and publishes those posts to social media accounts they have connected. This policy explains what data Postorb holds, why, and how to get rid of it.
Postorb does not use advertising trackers, does not build advertising profiles, and does not sell or rent data to anyone.
Access to connected accounts is limited to publishing and reading the information needed to publish. Postorb does not read private messages and does not access data beyond the accounts you explicitly connect.
Data is stored on Cloudflare infrastructure — a D1 database and R2 object storage, hosted in Western Europe, encrypted at rest. Access to the application requires authentication.
To stop Postorb posting to a social account, open Connections in Postorb and choose Disconnect on that account. Postorb deletes the access token it stored and asks the platform to drop the permissions you granted. Publishing to the account stops immediately; posts already published stay on the platform.
You can also revoke access from the provider’s own settings — on Facebook, Settings & Privacy → Settings → Apps and Websites → Post Orb → Remove. This has the same effect on the token Postorb holds.
To have your content and stored tokens deleted entirely, email the address below. Deletion requests are actioned within 30 days. Full deletion instructions.
Content is kept until you delete it or ask for your account to be removed. Access tokens are deleted as soon as you disconnect the account in Postorb; they also stop working if you revoke Postorb from the provider, and expired tokens are discarded.
If this policy changes materially, the date at the top of this page will be updated.
How we handle government and law enforcement requests for user data is set out in our Government Data Request Policy.
Questions, or a data deletion request: privacy@postorb.com