Privacy Policy
This policy explains how AutoPostMD accesses, uses, stores, shares, and deletes information when you use the service.
AutoPostMD is a user-directed video publishing service. We do not sell personal information or connected-platform data.
1. Scope
This policy applies to autopostmd.com, the AutoPostMD application, support interactions, and the related video preparation, scheduling, and publishing services. It does not replace the privacy policies of social platforms you choose to connect.
2. Information we collect
- Account information: name, email address, authentication information, physician or practice profile, timezone, and preferences.
- Content: videos, audio, transcripts, thumbnails, titles, descriptions, captions, hashtags, edits, and scheduling instructions.
- Connected-platform information: selected account or channel identity, granted permissions, OAuth tokens, token expiration, connection status, provider identifiers, publishing results, and errors.
- Service information: device, browser, IP address, logs, security events, feature interactions, support messages, and diagnostic information.
- Billing information: subscription, invoice, and payment status. Payment-card details are processed by our payment provider and are not stored directly by AutoPostMD.
3. Google and YouTube user data
When you choose to connect YouTube, AutoPostMD uses Google OAuth and the YouTube Data API. We access Google user data only after you grant permission on Google's consent screen.
Data AutoPostMD may access
- Basic information needed to identify and display the YouTube channel you select, such as channel ID, name, URL, description, and provider-returned channel details.
- Information about videos published or managed through AutoPostMD, including video ID, title, description, tags, audience designation, privacy setting, processing status, and available publishing details.
- OAuth access tokens, refresh tokens, expiration information, and the permissions you granted.
Why AutoPostMD uses that data
- Show the selected channel so you can confirm the publishing destination.
- Upload a video you selected with the title, description, tags, audience designation, privacy setting, and timing you approved.
- Retrieve the provider result for videos managed through AutoPostMD and troubleshoot connection or publishing errors.
- Maintain the authorized connection until you disconnect it, revoke access, delete your account, or the credentials expire.
AutoPostMD does not sell Google user data, use it for advertising, or use Google user data to train generalized artificial-intelligence or machine-learning models. Humans do not review Google user data except with your affirmative permission for support, when needed for security or abuse investigation, or when required by law.
AutoPostMD's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
4. How we use information
- Create and secure your account and provide the features you request.
- Receive and process uploaded media, prepare editable publishing drafts, and preserve your changes.
- Connect the destinations you authorize and submit content only after your publishing confirmation.
- Schedule jobs, retrieve publishing status, display provider results, and support retries or reconnection.
- Process subscriptions, send service communications, prevent abuse, diagnose failures, and comply with law.
5. When information is shared
We share information only as needed to operate AutoPostMD, follow your direction, protect the service, or comply with law. Recipients may include infrastructure, hosting, storage, database, authentication, email, payment, logging, security, transcription, and AI-processing providers under appropriate service obligations.
Videos and the publishing fields you approve are sent to the social platforms you select. Those platforms process the information under their own policies. We may also disclose information during a business transaction, with your consent, or when legally required.
6. AI-assisted processing
AutoPostMD may send uploaded or transcribed content and limited profile context to contracted AI services to prepare the draft fields you request. Outputs remain editable and are not published until you confirm the campaign.
We do not use Google user data or connected-platform credentials to train generalized AI models. Do not upload protected health information or patient-identifying material to AutoPostMD.
7. Storage, retention, and security
We retain account data, active content, connection credentials, and publishing records while needed to provide the service. When you delete your account or make a verified deletion request, we remove covered information from active systems subject to completion of in-flight publishing, provider revocation, fraud prevention, financial accounting, legal obligations, dispute resolution, and normal backup rotation.
We use safeguards designed to protect information, including encrypted network transport, access controls, private media access, managed service infrastructure, and logging restrictions. No storage or transmission method is completely secure.
8. Your choices and controls
- Edit account and publishing information within AutoPostMD.
- Disconnect a supported platform in connection settings.
- Revoke Google access at Google Account connections .
- Request access, correction, export, or deletion by emailing privacy@autopostmd.com.
- Use the account deletion control when available in your profile. Revocation or AutoPostMD deletion does not remove posts already published to a social platform.
9. Children, changes, and contact
AutoPostMD is intended for adults and is not directed to children under 13. We may update this policy as the service or legal requirements change and will post the revised effective date here.
Privacy questions and requests: privacy@autopostmd.com. General support: support@autopostmd.com.