Privacy policy
Last updated 11 August 2026
This policy explains what Sigacius collects, why, and what we do with it. If anything here is unclear, write to us and we will answer.
What we collect
- Your email address. Used to sign you in and to contact you about your account. We do not use passwords.
- Website addresses you submit. The public URLs you ask us to analyse, and the public text we retrieve from them.
- Content generated for you. The marketing plans, content ideas and keyword sets produced from your input.
- Social account authorisations. If you connect a social account, we store the access token that platform issues so we can publish on your instruction. We do not receive or store your password for that platform.
- Basic technical logs. Records of requests to our service, used to diagnose faults.
What we do not collect
We do not buy data about you from third parties, we do not track you across other websites, and we do not use advertising or analytics trackers that follow you elsewhere.
How we use it
Your data is used to operate the service you asked for: analysing the sites you submit, generating content for you, and publishing to accounts you have connected. We also use aggregate, non-identifying usage information to fix problems and improve the product.
We do not sell your data. We do not share it with third parties for their own marketing.
Third parties we rely on
Running the service requires a small number of providers, each of which processes data only to deliver their part of it:
- Supabase — stores your account and your generated content, and handles sign-in.
- OpenAI — generates content from the website text you submit.
- Vercel — hosts and serves the application.
- Resend — delivers sign-in emails.
- The social platforms you connect — receive only the content you have approved for publishing.
Social account access
When you connect a social account, we request only the permissions needed to publish content you have approved. We do not read your private messages, and we do not post anything you have not reviewed and scheduled.
You can disconnect an account at any time from your settings. Disconnecting immediately revokes our access and deletes the stored token. You can also revoke access directly from the platform's own settings.
How long we keep it
We keep your account and generated content for as long as your account is open. Delete a project and its content is removed. Ask us to close your account and we delete your data within 30 days, except where we are required to keep records by law.
Your rights
You can ask us for a copy of your data, ask us to correct it, or ask us to delete it. Write to hello@sigacius.com and we will respond within 30 days.
Security
Data is stored on managed infrastructure with access restricted to your own account. Access tokens are stored server-side and are never exposed to your browser. No system is perfectly secure, and we will tell you promptly if a breach affects your data.
Children
Sigacius is a business tool and is not directed at children. We do not knowingly collect data from anyone under 16.
Changes
If we change this policy we will update the date above. Material changes will be communicated to account holders by email.
Contact
Questions about this policy: hello@sigacius.com