Privacy Policy
Last updated: September 19, 2026
1. Overview
This Privacy Policy explains how PrismSuite collects, uses, stores, and shares information when you use our website, applications, content-creation tools, publishing features, and connected-platform integrations.
2. Information we collect
Depending on the features you use, we may collect:
- Account information, such as your name, email address, authentication identifiers, and organization membership.
- Content and files you submit, create, upload, import, translate, analyze, schedule, or publish.
- Connected-account information provided through OAuth or similar authorization flows.
- Publishing metadata, such as selected accounts, schedules, post settings, provider status, and publishing results.
- Usage and diagnostic information, including feature activity, device/browser information, logs, errors, and security events.
- Billing and plan information when paid features are used. Payment processors may handle payment-card information directly.
3. Connected social and publishing accounts
If you connect a third-party account, PrismSuite receives only the information and permissions made available through the authorization you approve. This may include an account identifier, display name, username, avatar, granted scopes, access tokens, refresh tokens, and provider-specific posting settings.
Authentication tokens are used to perform authorized actions on your behalf, such as retrieving creator/account information or publishing content you choose to publish. PrismSuite does not ask you to provide the password for a connected social account.
4. TikTok data
When you connect TikTok, PrismSuite may receive information made available through the scopes you approve, such as your TikTok account identifier, display information, granted permissions, access credentials, Creator Info, current privacy options, interaction availability, and publishing-status information.
PrismSuite uses this information to display the connected creator, present TikTok's current posting choices, publish videos only when you request it, and determine whether a requested post has completed, failed, or remains pending. PrismSuite does not publish to TikTok merely because an account is connected.
5. YouTube API Services
PrismSuite uses YouTube API Services when you connect a YouTube channel or upload content to YouTube. Depending on the permissions you approve, PrismSuite may access and store YouTube channel identifiers, channel display information, OAuth access and refresh credentials, granted scopes, upload-session state, video identifiers, visibility choices, audience settings, synthetic-media disclosures, and upload results needed to perform actions you request.
PrismSuite uses this information only to identify the channel you authorized, maintain the connection, upload videos you expressly choose to publish, resume interrupted uploads safely, display publishing results, and protect the integrity of your account and publishing history.
Your use of YouTube-connected features is also subject to the YouTube Terms of Service. Google's handling of information is described in the Google Privacy Policy.
You can revoke PrismSuite's Google/YouTube access through your Google Account security settings and can disconnect the YouTube channel in PrismSuite. You may also request deletion of YouTube-related data that PrismSuite is not required to retain for security, legal, fraud-prevention, or dispute-resolution purposes.
6. How we use information
We use information to:
- Provide, operate, secure, troubleshoot, and improve PrismSuite.
- Authenticate users and enforce organization and account permissions.
- Generate, analyze, review, translate, transform, schedule, and publish content at your direction.
- Maintain connected integrations and refresh authorized credentials when supported.
- Prevent abuse, investigate errors, maintain audit trails, and protect service integrity.
- Provide support, service communications, and information about material changes.
- Meet legal obligations and enforce applicable agreements.
7. AI and service providers
PrismSuite may send relevant content or instructions to third-party AI model providers, infrastructure providers, storage services, analytics providers, payment processors, and other vendors when necessary to provide a feature you request or operate the service. We limit disclosures to what is reasonably necessary for those functions and use providers subject to contractual or platform terms applicable to their services.
8. How we share information
We may share information with service providers acting on our behalf; with third-party platforms you choose to connect; with members of your organization according to their permissions; in connection with a business transaction; or when required to comply with law, protect rights and safety, investigate abuse, or enforce agreements.
We do not sell your personal information for money, and we do not give advertisers access to your private PrismSuite content for their own independent use.
9. Security
We use technical and organizational safeguards designed to protect information, including access controls, organization-scoped authorization, encrypted credential storage where applicable, and restricted server-side handling of third-party access credentials. No online service can guarantee absolute security.
10. Retention
We retain information for as long as reasonably necessary to provide the service, maintain account and publishing history, comply with legal obligations, resolve disputes, enforce agreements, and protect security. Retention periods can vary by data type, feature, and legal requirement.
11. Disconnecting third-party accounts
You can disconnect supported third-party accounts from PrismSuite. Disconnecting stops future use of the stored authorization for new actions, subject to provider behavior and any records PrismSuite must retain for security, audit, legal, or dispute-resolution purposes. You may also revoke PrismSuite's access through the third-party platform where that platform provides such controls.
12. Your choices and requests
Depending on your location, you may have rights to request access, correction, deletion, portability, restriction, or objection regarding personal information. You may also request account deletion or disconnect integrated accounts. We may need to verify your identity before completing a request.
13. Cookies and analytics
PrismSuite may use cookies, local storage, and similar technologies for authentication, security, preferences, analytics, and product operation. Where required, you may have additional choices regarding non-essential analytics technologies.
14. Children
PrismSuite is not directed to children under 13, and we do not knowingly collect personal information from children under 13 through the service.
15. International processing
PrismSuite and its service providers may process information in countries other than the country where you live. Where required, we use appropriate safeguards for international transfers.
16. Changes to this policy
We may update this Privacy Policy as PrismSuite changes. We will post the revised version here and update the date above. Material changes may also be communicated through the service when appropriate.
17. Contact
Privacy questions or requests may be submitted through the support channels available in PrismSuite or through our website at prismsuite.io.