Zyncast legal
Privacy Policy
What Zyncast collects, why, who we share it with, and how to get all of it deleted. Written to be read, not to be survived.
Last updated 1 August 2026
1.Who we are
Zyncast is a publishing tool. You send us a message on WhatsApp, and we schedule and publish that post to the social accounts you have connected — currently Instagram, Facebook, TikTok, LinkedIn and X.
Zyncast is the data controller for the information described here. You can reach our privacy contact at privacy@zyncast.com.
2.What we collect
Only what the product needs to do its job.
| Category | Examples |
|---|---|
| Account details | Your name, email address and WhatsApp phone number. |
| Message content | The messages you send Zyncast on WhatsApp, and the photos, videos and voice notes you attach to them. |
| Post content | Captions, hashtags, media and scheduling times for posts you create, including drafts you never publish. |
| Connected account data | Access tokens issued by each platform, the account ID and display name of each connected profile or page, and the permissions you granted. |
| Publishing results | Whether each post succeeded, the platform’s post ID, and any error the platform returned. |
| Insights | Aggregate reach, impressions, engagement and follower counts that platforms report for posts published through Zyncast. |
| Technical logs | IP address, timestamps and error traces, kept for security and debugging. |
We do not collect payment card details. We do not buy data about you from anyone, and we do not run advertising or tracking pixels on this website.
3.How we use it
- To publish what you ask us to publish. Your message becomes a scheduled post; at the scheduled time we send it to each connected platform on your behalf.
- To adapt content per platform. Resizing and cropping media to each platform’s specification, and — when you ask for it — drafting, rewriting, translating or generating captions, hashtags and images.
- To report back. Confirming in your WhatsApp thread when a post goes live or fails, and showing performance in your dashboard.
- To run automations you set up. For example, turning a LinkedIn post into an X thread, if you have asked for that.
- To keep the service working and secure. Diagnosing errors, preventing abuse, and meeting our legal obligations.
4.Data from connected platforms
When you connect an account, you are sent to that platform’s own login screen and shown exactly which permissions you are granting. We never ask for, see, or store your social media passwords. What we receive is an access token scoped to the permissions you approved.
We use platform data only to provide features you have asked for:
- Publishing and scheduling posts to the accounts you connected.
- Reading the profile or page name so you can tell your accounts apart.
- Reading insights for posts published through Zyncast, to show you how they did.
We do not sell platform data, use it for advertising or profiling, use it to train machine learning models, or share it with data brokers. Our use of information received from Meta APIs adheres to the Meta Platform Terms, and our use of TikTok, LinkedIn and X data adheres to those platforms’ respective developer terms.
You can disconnect any account from your Zyncast dashboard, or revoke our access from within the platform itself, at any time. When you do, we delete the stored token immediately and stop publishing to that account.
5.How AI features handle your content
When you ask Zyncast to write, rewrite, translate or illustrate something, the relevant content is sent to a third-party AI provider to generate the result, and the result comes back to you for approval.
- Your content is not used to train the AI provider’s models. We use enterprise API terms that exclude training.
- AI features only run when you invoke them or when an automation you created invokes them.
- You are responsible for reviewing AI-generated content before it goes out. Nothing publishes without your approval.
7.How long we keep it
- Account details — for as long as you have an account.
- Messages and media — for 12 months after the related post publishes, so you can reuse and review your content.
- Access tokens — until you disconnect the account or the platform expires them.
- Publishing records and insights — for 24 months, so year-on-year comparisons work.
- Technical logs — 90 days.
8.Your rights, and how to delete everything
You can ask us to give you a copy of your data, correct it, restrict how we use it, or delete it entirely. Depending on where you live these rights come from the GDPR, the UK GDPR, the CCPA/CPRA, or the Nigeria Data Protection Act — we apply them to everyone regardless.
The fastest route is to message DELETE to Zyncast on WhatsApp. For every method, and what exactly gets erased, see the data deletion instructions.
For anything else, email privacy@zyncast.com. We respond within 30 days. If you are in the EEA or UK and think we’ve got it wrong, you have the right to complain to your local data protection authority.
9.How we protect it
- Access tokens are encrypted at rest, and are never shown in the dashboard or logs.
- All traffic is encrypted in transit with TLS.
- Incoming WhatsApp webhooks are signature-verified, so we only act on messages that genuinely came from Meta.
- Access to production data is limited to staff who need it, and is logged.
10.Where your data lives
Zyncast is operated from Nigeria and our infrastructure runs in the European Union and the United States. Where we transfer personal data out of the EEA or the UK, we rely on Standard Contractual Clauses with the providers involved.
11.Children
Zyncast is a business tool and is not directed at children. You must be at least 18 to use it. If you believe a child has given us personal data, email privacy@zyncast.com and we will delete it.
12.Changes to this policy
If we change how we handle your data in a way that materially affects you, we’ll email you and post a notice in your WhatsApp thread before the change takes effect. The date at the top of this page always reflects the current version.