Back to Home
Amplypost

Privacy and data use

Privacy Policy

for Amplypost

Last Updated: September 11, 2026

Thank you for using Amplypost ("we," "us," or "our"). This Privacy Policy outlines how we collect, use, and protect your personal and non-personal information when you use our website located at https://amplypost.com (the "Website").

By accessing or using the Website, you agree to the terms of this Privacy Policy. If you do not agree with the practices described in this policy, please do not use the Website.

1

Information We Collect

1.1 Personal Data

We collect the following personal information from you:

  • Name: We collect your name to personalize your experience and communicate with you effectively.
  • Email: We collect your email address to send you important information regarding your account, updates, and communication.
  • Payment Information: We collect payment details to process your orders securely.
  • Social Media Authentication Access Keys: We collect these to enable cross-posting functionality to your social media accounts.

1.2 Non-Personal Data

We use web cookies to collect non-personal information such as your IP address, browser type, device information, and browsing patterns. This information helps us enhance your browsing experience, analyze trends, and improve our services.

2

Purpose of Data Collection

We collect and use your personal data for order processing and social media posting. This includes processing your orders, enabling cross-posting functionality, sending confirmations, providing customer support, and keeping you updated about the status of your account and posts.

3

YouTube API Services

Amplypost uses YouTube API Services to enable cross-posting functionality to YouTube. By using our service to interact with YouTube, you are also subject to the YouTube Terms of Service.

4

Google Privacy Policy

As we use YouTube API Services, your data may also be subject to Google's Privacy Policy. For more information on how Google collects and processes data, please refer to the Google Privacy Policy.

5

Google User Data Retention and Deletion

Amplypost retains Google user data only for as long as necessary to provide the services requested by the user, such as connecting a YouTube channel and publishing or managing scheduled content.

When a user disconnects their Google account from Amplypost, we delete stored Google OAuth access and refresh tokens associated with that connection and cease accessing the user's Google account.

Users may also request deletion of their Google-related data by contacting us at support@amplypost.com. Upon receiving a valid deletion request, we will delete the associated Google user data from our active systems within 30 days, except where retention is required by law or necessary for legitimate security, fraud-prevention, or compliance purposes.

Deleting an Amplypost account will also result in deletion of Google user data associated with that account, subject to the same limited legal and security exceptions.

Amplypost does not sell Google user data or use Google user data for advertising purposes.

6

Data Sharing

We do not share your personal data with any other parties except as required for order processing and social media posting functionality. This may include sharing necessary data with the social media platforms you choose to post to, including YouTube through the YouTube API Services.

7

Children's Privacy

Amplypost is not intended for children, and we do not collect any data from children.

8

Updates to the Privacy Policy

We may update this Privacy Policy from time to time. Users will be notified of any changes via email.

9

Contact Information

If you have any questions, concerns, or requests related to this Privacy Policy, you can contact us at:

10

Data Protection Mechanisms

We take the protection of your sensitive data seriously and have implemented the following security measure:

a) Encryption

Your Google OAuth access keys are encrypted using industry-standard encryption protocols both in transit and at rest.

While we implement this security measure to protect your sensitive information, please be aware that no method of transmission over the Internet or method of electronic storage is 100% secure. We strive to use commercially acceptable means to protect your personal information, but we cannot guarantee its absolute security.

11

Canva Integration and Customer Data

When you connect Canva, Amplypost uses the permissions you grant to display your available designs and, where authorized, your Canva display name. Design information may include design IDs, titles, thumbnails, page counts, editor links, and supported export formats. When you choose to add a design, we export the selected pages in your chosen format and import the resulting images or videos for use in your Amplypost posts.

Data retention policy

We retain your Canva connection details and encrypted authorization tokens while your account remains connected, so you can browse and import designs without reconnecting each time. We store export records, including design IDs, formats, and references to imported media, to process your selections and avoid duplicate imports when you retry.

Imported images and videos are stored separately from your Canva connection for use in drafts, scheduled posts, and published content. Disconnecting Canva does not automatically remove these files or content you have already added to Amplypost.

Data archival and removal policy

You can disconnect Canva from your connected accounts in Amplypost. On successful disconnection, we remove the stored Canva connection, access and refresh tokens, and associated export records. This ends Amplypost's access through that connection. Removing an Amplypost user account also removes its associated Canva connection and export records from our database.

To request removal of imported Canva media or other customer data, contact support@amplypost.com. We verify requests before processing them to protect your account. Please identify whether you want to remove your Canva connection, imported files, or your Amplypost account. Any data that must be retained for legal or security reasons is subject to those obligations.

Disconnecting Canva or removing data from Amplypost does not delete your original Canva designs or posts already published to social media. Those copies must be managed on the relevant platform. Copies cached or downloaded outside Amplypost may remain available independently.

Data storage policy

Canva connection and export records are stored in our server-side database and associated with your Amplypost account. Canva access and refresh tokens are encrypted using AES-256-GCM before database storage. The encryption key is supplied through server configuration separately from the stored token values. Canva API requests and export downloads use HTTPS, and integration requests require an authenticated Amplypost session.

Imported images and videos are stored in Cloudflare R2 object storage and served through Amplypost's media URLs for previews and publishing. These media URLs are accessible to anyone who has the link. Files may also be held temporarily on our server while an import is processed; unsuccessful imports can leave temporary files pending cleanup. Canva tokens are handled by the backend and are not returned to the asset picker.

Your Privacy is Protected

By using Amplypost, you consent to the terms of this Privacy Policy.