Legal

Privacy Policy

Last updated July 20, 2026. This policy explains how Schedo handles your information.

1. Who we are

Schedo (“we”, “us”) provides a social media planning and publishing product. This Privacy Policy describes how we collect, use, disclose, and protect personal information when you use our website and Service.

2. Information we collect

Account and profile

  • Name, email address, and authentication identifiers
  • Business details you provide (e.g. brand name, industry, voice)
  • Billing and subscription status (processed by payment partners)

Content and usage

  • Plans, captions, templates, calendars, and edits you create
  • Product usage events (features used, device/browser metadata)
  • Support messages and feedback you send us

Connected platforms

  • If you connect Instagram, Facebook, or Threads, we receive OAuth tokens and account metadata (such as usernames, account IDs, and Page names) needed to schedule or publish posts on your behalf, subject to Meta's policies and the permissions you approve

Automatically collected

  • IP address, approximate location, device type, and log data
  • Cookies or similar technologies for session and preferences

3. How we use information

  • Provide, operate, and improve the Service
  • Generate and schedule content you request
  • Process payments and manage subscriptions
  • Authenticate users and secure accounts
  • Respond to support requests and communicate service updates
  • Comply with law and enforce our Terms

4. AI processing

To generate captions and related recommendations, we may send relevant brand and content context to AI model providers under contractual safeguards. Do not submit sensitive personal data you do not want processed for content generation.

5. Sharing

We may share information with:

  • Service providers (hosting, auth, analytics, email, payments)
  • Third-party platforms you connect (e.g. Meta publishing APIs for Instagram, Facebook, and Threads)
  • Professional advisors or authorities when legally required
  • A successor entity in a merger, acquisition, or asset transfer

We do not sell your personal information.

6. Data retention

We retain account and content data while your account is active and for a reasonable period afterward for backups, legal obligations, dispute resolution, and security. You may request deletion as described below.

7. Security

We use industry-standard measures to protect data in transit and at rest. No method of transmission or storage is 100% secure; please use a strong unique password and protect your credentials.

8. Your choices and rights

Depending on applicable law, you may have rights to:

  • Access, correct, or delete personal information
  • Export certain account data
  • Withdraw consent where processing is consent-based
  • Object to or restrict certain processing
  • Disconnect Instagram, Facebook, or Threads in Settings, or cancel your subscription in-product

To exercise privacy rights, email contact@thetwocoders.com. We may verify your identity before fulfilling requests.

9. Children’s privacy

The Service is not directed to children under 18. We do not knowingly collect personal information from children.

10. International transfers

Your information may be processed in countries other than your own, including where our providers operate. Where required, we use appropriate safeguards for cross-border transfers.

11. Meta platform data (Instagram, Facebook, Threads)

When you connect a Meta platform, we process only the data needed to provide scheduling and publishing features for your connected account or Page. We do not sell Meta platform data, use it for unrelated advertising, or access private messages unless you explicitly connect a feature that requires it.

What we store

  • OAuth access tokens and expiry metadata
  • Account identifiers (Instagram user ID, Facebook Page ID, Threads user ID)
  • Public profile metadata shown in the app (e.g. @username, Page name)
  • Your auto-publish preference for each connected platform

How to disconnect in Schedo

  • Instagram: Settings → Instagram → Disconnect
  • Facebook Page: Settings → Facebook → Disconnect
  • Threads: Settings → Threads → Disconnect

Disconnecting stops future publishing and removes stored connection tokens for that platform. Your calendar, captions, and brand content remain in your workspace until you delete the brand or account.

Data deletion requests

You can request deletion in any of these ways:

  1. Disconnect the platform in Settings (removes connection tokens immediately)
  2. Delete a brand under Settings → Delete brand (removes that brand's connected platform data)
  3. Email contact@thetwocoders.com to request account-level deletion
  4. Remove Schedo from your Meta account under Meta's Apps and Websites settings — we process those requests through our documented data-deletion callbacks

Meta may also send automated deauthorize or data-deletion requests to our servers when you remove app access from your Meta account. When we receive a valid request, we delete the associated connection tokens and publish credentials from our database.

12. Changes

We may update this Privacy Policy. We will post the revised version with a new “Last updated” date. Continued use of the Service after changes means you acknowledge the updated policy.

13. Contact

Privacy inquiries: contact@thetwocoders.com
Support: support@thetwocoders.com
Related: Terms of Service · Legal center