Privacy Policy
Last updated: June 11, 2026
This Privacy Policy explains what data SocialiQ (“SocialiQ,” “we,” “us”) collects when you use socialiq.dev and our API, why we collect it, who we share it with, and the choices you have. SocialiQ provides a unified, normalized social-media data REST API that returns public social data from third-party platforms (TikTok, Instagram, YouTube, Reddit, X/Twitter, Threads, and LinkedIn) in a single consistent shape.
This document is a starting template intended to help us be transparent about our practices. It is not legal advice and should be reviewed by qualified legal counsel before you rely on it. Items marked [FILL IN: ...] are placeholders the SocialiQ owner needs to complete.
1. What we collect
We aim to collect only what we need to run the service. Specifically:
- Account information— when you sign up, authentication is handled by Clerk. This typically includes your name, email address, and login credentials. We don’t store your password; Clerk manages it.
- Payment information — billing and payments are processed by Stripe. Stripe collects and stores your card details. We do not store full card numbers — we only keep billing-related metadata (such as a customer ID, plan, the last four digits, and invoice history) needed to operate billing.
- API usage and logs — we record request metadata in our database (Supabase): the endpoints you call, timestamps, response status, billable units, and similar operational logs. This powers metering, billing, debugging, and abuse prevention.
- Basic web analytics — we collect aggregate, privacy-conscious analytics about how the marketing site and docs are used (for example, page views and referrers) to improve the product.
- Device fingerprint (anonymous playground) — when you try the interactive playground without an account, we derive a lightweight device fingerprint solely to rate-limit anonymous usage and prevent abuse.
Note: the API itself returns public social data already published on third-party platforms. That public content is the data you request, not personal data we collect about you.
2. How we use your data
- Provide and meter the service — authenticate requests, serve API responses, and count usage.
- Billing — calculate charges, process payments, and issue invoices and receipts.
- Security and abuse prevention — detect, investigate, and stop fraud, abuse, and rate-limit evasion.
- Support — respond to your questions and help troubleshoot issues.
- Product improvement — understand how the service is used so we can make it better, faster, and more reliable.
3. Subprocessors
We rely on a small set of trusted third parties to run SocialiQ. Each processes data only as needed to provide their service to us:
- Clerk — authentication and account management.
- Stripe — payments and billing.
- Supabase — database and operational data storage.
- Vercel — hosting for the web app and marketing site.
- Railway — hosting for backend/API services.
- Licensed, third-party social-data providers — upstream providers that supply the public social data our API normalizes and returns.
4. API keys
Your API keys are formatted as sc_live_... and are sensitive credentials. We hash API keys at rest — we store only a hash, not the raw key. The full key is shown to you only once at creation time, so store it somewhere safe. If a key is lost or compromised, revoke it and generate a new one from your dashboard. We can never recover a raw key for you.
5. Cookies
We use cookies and similar technologies for essential functions such as keeping you signed in and securing sessions, and for the basic, aggregate web analytics described above. We do not sell your data, and we do not use cookies for cross-site advertising.
6. Data retention
We keep account and billing records for as long as your account is active and as needed to comply with legal, tax, and accounting obligations. Operational API logs are retained for [FILL IN: log retention window] and then deleted or aggregated. When data is no longer needed, we delete or anonymize it.
7. Your rights
You can request access to, correction of, or deletion of your personal data. To make a request, email support@socialiq.dev. We may need to verify your identity before acting on a request. Deleting your account removes associated personal data, subject to records we must retain for legal or billing reasons.
8. International transfers
SocialiQ and our subprocessors may process and store data in countries other than the one you live in, including the United States. Where data is transferred across borders, we rely on our subprocessors’ safeguards and applicable transfer mechanisms. The data controller’s primary jurisdiction is [FILL IN: governing jurisdiction].
9. Children
SocialiQ is a developer tool intended for businesses and adults. It is not directed to anyone under 18, and we do not knowingly collect personal data from individuals under 18. If you believe a minor has provided us data, contact us and we will delete it.
10. Changes to this policy
We may update this Privacy Policy from time to time. When we do, we’ll revise the “Last updated” date above. Material changes will be communicated through the site or by email where appropriate. Continued use of the service after changes take effect means you accept the updated policy.
11. Contact
Questions about privacy? Email support@socialiq.dev. For security matters, email security@socialiq.dev. SocialiQ is built by Tyler Yin.
Legal entity: [FILL IN: company legal entity]. Mailing address: [FILL IN: mailing address].