Operiq
Legal

Privacy Policy

Last updated: 11 May 2026

Operiq is an AI-powered platform that helps brands create, schedule and publish social media content. This Privacy Policy explains what personal data we collect, why we collect it, how we protect it, and the rights you have under the GDPR.

1. Data controller

Operiq AB is the data controller. Contact us at support@operiq.se for any privacy-related question.

2. Information we collect

3. Connected social accounts and OAuth

When you connect an account, we request only the permissions required to publish, read profile information and retrieve basic analytics. We use the official APIs of each platform: Meta (Instagram & Facebook) Graph API, and LinkedIn Marketing & Share API.

OAuth access tokens are stored in a dedicated server-only table protected by row-level security, encrypted at rest, transmitted over TLS only, and never exposed to the browser. You can disconnect any platform at any time, which immediately revokes and deletes the corresponding tokens.

4. AI-generated content

Operiq uses AI models to generate captions, images and publishing suggestions based on your brand inputs. We do not train third-party models on your content. You retain ownership of all content you create through the platform.

5. Legal basis (GDPR)

6. Data storage and retention

Data is hosted within the EU on secure infrastructure. When you delete your account, your data and tokens are removed within 30 days, except where law requires us to keep specific records (e.g. invoices).

7. Account deletion

You can request full account deletion at any time. See our Delete Data page for instructions.

8. Your rights

You have the right to access, rectify, erase, restrict or object to processing of your data, and to data portability. You may also lodge a complaint with the Swedish Authority for Privacy Protection (IMY).

9. Contact

For any privacy question contact us at support@operiq.se.