1. Choose the right action
- Disconnect: stop future access to one social or storage provider while keeping your PostBod account.
- Delete content: remove drafts, media, documents, campaigns, or scheduled items you control.
- Delete an account: close your user account and remove or de-identify associated personal data, subject to workspace ownership and legal retention.
- Privacy request: ask to delete personal data under an applicable privacy law.
2. Disconnect a social or storage service
- Sign in and open Brand Settings.
- Open Connected Accounts or Media Library for storage connections.
- Select the provider and choose Disconnect.
- Confirm the action and, if desired, remove PostBod from the provider's own connected-app settings.
Disconnecting stops future API access through the stored authorization and removes the active credential from PostBod. It does not delete content already published to a social network or copies you exported elsewhere.
3. Request account or personal-data deletion
Email privacy@postbod.app from the address associated with the account. Use the subject PostBod Data Deletion Request and include your account email, workspace or brand name, the data or connection concerned, and whether you are requesting account closure or a narrower deletion.
Do not send passwords, access tokens, payment-card information, private keys, or government identification unless we specifically request a secure verification method.
4. What a verified deletion can cover
Depending on authority and request scope, deletion may cover profile data, authentication-linked records, provider identifiers and stored credentials, brand profiles, prompts, drafts, generated media, uploaded files, campaigns, approval history, schedules, imported metrics, and support records not needed for another lawful purpose.
If an organization controls the workspace, its owner may be the controller of workspace content. We may forward or coordinate a request with that organization rather than delete business records against its instructions.
5. Information that may be retained
Limited information may be retained when needed for legal, tax, accounting, fraud prevention, security, dispute resolution, enforcement, or another lawful obligation. Data can also remain temporarily in access-restricted backups until normal rotation completes. Retained data is not used for ordinary product activity and is deleted or de-identified when the obligation ends.
6. Verification and timing
We will acknowledge and respond within the period required by applicable law. Timing begins after we have enough information to verify identity, authority, and scope. If an extension is legally permitted and necessary because of complexity or volume, we will explain it. We will confirm completion or explain any lawful denial and available appeal route.
7. Remove authorization at the provider
You may also remove PostBod from the connected-app settings of Facebook and Instagram, LinkedIn, X, TikTok, Pinterest, YouTube or Google. Provider menu names change over time. Removing authorization there prevents continued access under that grant, but does not automatically remove data already lawfully stored in PostBod; send the request above for that step.
8. Questions and appeals
If you disagree with a privacy-request decision, reply to the decision and ask for an appeal. You may also have the right to complain to your local privacy regulator. See the Privacy Policy, GDPR page, and Global Compliance page.

