Preamble
SUPASST ("we", "us", "our") publishes an AI marketing agent SaaS platform for creating, scheduling and publishing content on social networks. This policy describes how we process your personal data, in accordance with the General Data Protection Regulation (GDPR) and French "Informatique et Libertés" law.
Data we collect
- Identification data: email, display name, password (argon2id-hashed).
- Usage data: AI conversations, content you create, connected integrations, settings.
- Technical data: IP address, user agent, audit logs (retained 90 days).
- Payment data: handled by Stripe, never stored on our servers.
- Connected social accounts: when you link a network (TikTok, Meta, LinkedIn, YouTube…) via OAuth, we receive an access token and public profile information (account identifier, display name, avatar). For TikTok (Login Kit), this is your `open_id`, your display name and your avatar.
Content you entrust to us for publishing
When you request that content (video, image, text) be published on a connected network, that content is transmitted to the destination platform via its official API, on your behalf and under your control. On TikTok, videos are sent via the Content Posting API; the privacy level of each post is chosen among the options your account is authorized for, and may remain private until the application has been audited by TikTok.
Purposes of processing
- Operating the service (legal basis: performance of the contract).
- Publishing content on the networks YOU connect and trigger.
- Security and fraud prevention (legitimate interest).
- Marketing communications (explicit consent only, double opt-in).
- Legal obligations (invoicing, 5-year retention).
Sharing with third parties
We never sell your data. It is only shared with:
- The platforms you connect (TikTok, Meta, LinkedIn, YouTube…), to carry out the publications you request, within the limits of the permissions (scopes) you grant.
- Our technical subprocessors (hosting, Stripe for payment, AI providers), bound by contract and GDPR-compliant.
One exception, described in detail below: the *free mode*, whose models are not covered by this non-reuse commitment. This mode is never activated without your explicit consent.
Free mode: your exchanges are used to train third-party models
Once your trial or subscription expires, SUPASST may offer you a free mode: chat only, on so-called "open" models, with a daily quota. This mode has a trade-off, and we would rather spell it out plainly than leave it buried in terms and conditions.
What actually happens. Messages you send in this mode are transmitted to OpenRouter, a US gateway that routes them to partner model providers. On the account we use for this free mode, these providers are authorized to:
- use your requests to train their models (the "may train on inputs" setting);
- publish your requests, subject to their own terms (the "may publish prompts" setting).
This is precisely what makes these models free. We have no technical means to retrieve, correct or have a piece of data deleted once it has been used for training by a third party — this is an irreversible consequence, and it is why we ask for your prior agreement.
Legal basis: your explicit consent (not performance of the contract). Concretely:
- a screen describes this trade-off before your first message on a free model, and nothing is sent until you have accepted;
- you can withdraw this consent at any time, in one click, from your settings ("Data" tab → "Consents granted") or by writing to support@supasst.ai. Withdrawal takes effect immediately: once recorded, no further request is sent to these models without a fresh agreement from you. It applies going forward — it does not undo processing already carried out by third parties, which we have no way of stopping retroactively;
- declining or withdrawing your agreement causes no data deletion: your conversations, documents and automations remain intact. Feature access stays that of your plan — free mode only unlocks chat, a subscription reopens the rest.
What not to put in there. Do not use free mode for your customers' personal data, confidential information, contractual documents or your business strategy. If you process third parties' personal data, note that you remain the data controller for it: sending it to a model that trains on it commits you.
Transfer outside the European Union. OpenRouter and its partner providers are mostly based in the United States. This transfer is governed by the European Commission's standard contractual clauses, and here it also rests, in addition, on your explicit consent within the meaning of Article 49.1.a of the GDPR.
Paid plans are not affected. On an active subscription, premium models are called via accounts whose reuse and training settings are disabled: your exchanges do not train any model. That is the substantive difference between the two modes — not just a quota.
Access tokens and revocation
OAuth tokens are encrypted at rest (AES-256-GCM). You can disconnect a network or a tool at any time from your settings: we then revoke the token with the platform where it allows it, before deleting it from our servers. When your account is purged, we likewise ask each platform, where it allows it, to revoke your connections before erasing them, including connections you had just disconnected whose revocation was still pending. When revocation isn't possible (the platform doesn't offer it, or the access is no longer valid), we erase the connection from our servers; you can also remove it from the platform's own settings. If a platform refuses revocation, we retry for 7 days, then erase the connection anyway: your right to erasure doesn't depend on it.
Team spaces: what happens to your content when you leave
Content you create in a team space belongs to that space. When you leave a team space (you leave it, an administrator removes you, or you delete your account):
- What stays with the space. Everything you created there for the team stays there and passes to its owner: in particular the files in your media library (images, videos, audio), your documents, your design templates, your sites, your video and motion projects, your Flows, your team missions and scheduled tasks, your knowledge bases and your shared views. Their visibility does not change: what was shared with the team stays shared, and what was private becomes private to the space's owner, who can therefore read it.
- Nothing runs in the owner's name without their consent. Your Flows pass unpublished or paused, your missions and scheduled tasks paused, your automations disabled: nothing runs in the owner's name until they restart it.
- Your brand social accounts pass disconnected. The pages, organizations, channels and boards you connected in the space pass to the owner with their history, but never with your credentials: access is erased and the account must be reconnected. Scheduled sends on these accounts (messages, sequences, messaging agent) are stopped. Your personal social accounts are disconnected and stay with your account.
- Duplicates are merged or renamed. If the owner already has the same item (a file or document linked to an agent, a synthetic voice), only one copy is kept. A shared view with the same name as one of their views is renamed "Name (your name)".
- This is irreversible. If you are invited back to the space, you do not regain ownership of that content. Restoring your account does not undo it either.
- What never passes to the owner. Your credentials are never transferred: your connections to tools and networks, and your MCP connections, stay with your account and are revoked when it is purged, where the platform allows it (see "Access tokens and revocation"). Data that concerns only you also stays with your account, even when it was created in a team space: the reference data of your cloned avatar (biometric data), your cloned voice, your meeting recordings, the recordings of your sessions with Jade, the SUPASST assistant, your conversations and conversation attachments, your personal views and memories, and your private missions and tasks. They are deleted when your account is purged.
Deleting your account
- As soon as you ask to delete your account, you leave every team space you are a member of, with the effects described above.
- Your other data is kept for 30 days, then purged. During those 30 days, you can ask for your account to be restored by writing to support@supasst.ai. Restoring it gives back neither your team-space memberships nor ownership of the content that passed to their owners.
- Once the purge has started, it can no longer be stopped or cancelled: your account can no longer be restored.
- Team spaces you own are deleted along with your account when it is purged, with all their content, including content their other members added.
- If you take part in the affiliate program and commissions or payouts concern you, the purge of your account is suspended until that financial record, which the law requires us to keep, is settled.
Your rights
At any time, you can exercise your rights of access, rectification, erasure, portability and objection from your settings or by writing to support@supasst.ai. You can also lodge a complaint with the CNIL.
Retention
- Active account: for the duration of the contractual relationship.
- Deleted account: 30 days, then purge (see "Deleting your account").
- Social account tokens: until the network is disconnected, you leave the space concerned, or the account is deleted.
- Proof of marketing consent: 5 years after the last communication.
- Audit logs: 90 days.
Contact
SUPASST — support@supasst.ai.