DispatchSocial publishing & comment automation

Privacy Policy

Effective 9 September 2026

Dispatch is a social-media publishing and comment-automation tool operated by Dheeraj Raikwar, Jabalpur, Madhya Pradesh, India ("we", "us"). It lets businesses schedule content to connected accounts, including Facebook Pages, Instagram professional accounts, Threads and, when enabled, YouTube channels. Comment and message automation is available for supported Facebook and Instagram accounts. This policy explains what data Dispatch handles and why.

Data we collect

  • Account data. Your name, email address and a salted hash of your password (we never store the password itself), plus workspace and team-membership records. Google sign-in also supplies your Google account identifier and, when available, your profile photo URL.
  • Content you create. Posts, captions, media files and automation rules you set up in your workspace.
  • Data from Meta Platforms (Platform Data). When you connect a Facebook Page or Instagram professional account, we receive and store: the Page and Instagram account IDs and names, access tokens, the posts Dispatch publishes for you, and — for accounts with automation enabled — comment and message events on your connected accounts, including the commenter's ID, name and comment text as delivered by Meta's webhooks.
  • Interaction data. When someone replies to an automated message or taps a WhatsApp link Dispatch sent on your behalf, we record that event so your workspace can measure its own campaigns.
  • Data from YouTube. Connecting YouTube is separate from signing in with Google. With your permission, we receive your channel ID, name and handle, access and refresh tokens, and identifiers and processing results for videos you upload through Dispatch. We store the public title, description, visibility, audience and altered-content choices you supply for each upload.

How we use it

  • To publish the content you schedule, at the time you schedule it.
  • To send the automated comment replies and direct messages that your workspace has explicitly configured.
  • To show your workspace its own engagement statistics.
  • When you request a poster, to generate its artwork, caption and hashtags from your selected photos, project information and brief. Results are saved as drafts for review.

We do not sell personal data, use it for advertising, build profiles for any purpose beyond the features above, or share it with third parties except the service providers listed below.

Where it lives

  • Application hosting: Fly.io (Singapore region).
  • Database: Supabase (AWS ap-southeast-1, Singapore). Access tokens are stored encrypted (AES-256-GCM envelope encryption); row-level security isolates each workspace's data.
  • Media and encrypted nightly database backups: Cloudflare R2 (Asia-Pacific). Backups rotate automatically after 30 days.

These hosting providers are bound by their own data-processing terms.

When you request AI poster generation, we send the selected campus photos, the project's logo if available, public project or selected listing details, your brief and chosen language to OpenAI. Owner-contact fields and internal property notes are excluded from these requests. Do not place private information in photo labels or the generation brief. Generation history and uploaded reference photos remain with your workspace; reference photos are separate from published-post media retention.

Platform Data from Meta

Dispatch uses Meta's Graph API under Meta's Platform Terms and Developer Policies. Platform Data is used only to provide the features described above to the workspace that owns the connected account, is never sold or transferred to data brokers, and is deleted as described on our Data Deletion page — including when you disconnect an account, when you ask us to, or when Meta requires it.

YouTube API Services

Dispatch uses YouTube API Services to identify the channel you authorize, upload your selected videos, and check their upload and processing results. The video and metadata you approve are sent to Google/YouTube when you publish or schedule an upload. Your authorized workspace team can access this information in Dispatch. YouTube data is not sent to our AI poster service or used to train AI models. Google handles information under its Privacy Policy.

You can disconnect YouTube in Channels or revoke Dispatch's access through Google's security settings. Disconnecting removes the stored YouTube credentials and provider data from the live app after any active upload finishes. Your original uploaded files, authored drafts and local publishing history remain until you delete them or the applicable retention period ends. Disconnecting Dispatch does not delete videos on YouTube; manage those in YouTube Studio.

We periodically check YouTube authorization and refresh channel details. Stored YouTube upload identifiers and session records are removed within 30 days; historical Dispatch publishing records may therefore no longer include a YouTube link. If you request deletion of YouTube data by emailing dheeraj.raikwar224@gmail.com, we remove it from the live app as soon as possible and within seven days. Encrypted backups rotate under the backup retention described above.

Browser storage

Dispatch uses session cookies to keep you signed in, short-lived cookies to protect account connection flows, and browser storage for interface preferences. We do not embed the YouTube player or serve third-party advertisements in the YouTube connection and publishing screens.

Retention

We keep data while your workspace is active. Media attached to a post is deleted from our storage 7 days after the post is published, unless the workspace downloads it or marks it to keep first (some workspaces are configured with a longer window, shown on their Published page); the post's text and history remain. Disconnecting a channel deletes its access token immediately. Deleting your workspace, or asking us to, removes your data from the live database within 30 days; rotated backups expire within a further 30 days.

Your rights

You can ask us to access, correct, export or delete personal data we hold about you by writing to dheeraj.raikwar224@gmail.com. If you interacted with a business that uses Dispatch and want your data removed, the Data Deletion page explains how.

Changes

If this policy changes materially we will update this page and its effective date.

Privacy Policy · Data Deletion · Terms of Service
Questions: dheeraj.raikwar224@gmail.com