Privacy Policy

Last updated: August 19, 2026

Who we are

Naked Post is operated by Tansfom. If you have questions about this policy or your data, contact us at dmuggli@tansfom.com.

What we collect

We collect what we need to run the service, nothing more:

  • Account info — your email and an auth identifier, via Firebase Authentication.
  • Connected social accounts — profile identifiers and usernames for any LinkedIn or X account you connect.
  • OAuth access and refresh tokens for those accounts, stored encrypted, used only to publish on your behalf.
  • The drafts, scheduled posts, and publish history you create in the app.
  • Any images or video you upload, stored in Firebase Storage for publishing.
  • Beta signup info (name and email), if you join the waitlist.
  • Product feedback you submit through the in-app feedback form.
  • Basic technical and log data needed to operate and secure the service.

How we use data

  • To provide the service: authentication, scheduling, and publishing your posts.
  • To run the private beta: sending invites, applying beta post caps, and letting an admin review feedback and signups.
  • To maintain security and prevent abuse of the service.

We don't sell your personal data. We don't use your posts to train or generate AI content — that's the point of the product.

Third parties

  • Firebase and Google Cloud — authentication, database, file storage, and hosting for the app.
  • LinkedIn and X — when you connect an account and publish, your post content is sent to that platform under its own terms. Once posted, that platform's policies govern the content, not this one.

Tokens & permissions

Access tokens for your connected accounts are used only to publish and manage the specific channels you authorized — nothing else. You can disconnect any connected account at any time from the Channels page, which removes its stored tokens.

Retention

We keep your account, drafts, and publish history while your account is active. If you want your account and data deleted, contact us at the email above and we'll take care of it — during this beta, deletion is handled manually rather than through a self-serve control.

Security

  • OAuth tokens and other sensitive credentials are encrypted at rest.
  • Access is controlled: signup is invite-only during the beta, and admin areas are restricted to designated admin accounts.

Changes

We may update this policy as the product changes. The "Last updated" date at the top of this page reflects the most recent revision.