Social Playbook
Privacy Policy
Last Updated: March 16, 2026
Social Playbook LLC ("Social Playbook," "we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you access or use the Social Playbook platform and related services (collectively, the "Services").
Please read this Privacy Policy carefully. By accessing or using our Services, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree, please discontinue use of the Services immediately.
This Privacy Policy is incorporated into and subject to our Terms of Service.
1. Information We Collect
1.1 Information You Provide Directly
We collect information you provide when you register for an account, configure your profile, or interact with our Services, including:
- Account and identity information: your name, email address, and password.
- Business profile information: business name, business type or category, business description, location, primary social media goals, brand tone preferences, and social media platform handles or URLs.
- Competitor data: social media handles and URLs of competitors you choose to monitor through the Services.
- Payment information: billing details processed through our payment processor, Stripe. We do not store full payment card numbers on our servers. Please refer to Stripe's Privacy Policy at stripe.com/privacy for information on how Stripe handles your payment data.
- Communications: messages, support requests, or other correspondence you send to us.
1.2 Information We Collect Automatically
When you use our Services, we automatically collect certain information about your device and usage, including:
- Log and usage data: IP address, browser type, operating system, referring URLs, pages visited, features used, and timestamps.
- Device information: hardware model, device identifiers, and network information.
- Cookies and similar tracking technologies: session cookies, persistent cookies, web beacons, and pixel tags. See Section 6 (Cookies and Tracking Technologies) for more detail.
1.3 Information We Collect from Third Parties
To provide the core functionality of our Services, we collect publicly available social media data relating to the competitor accounts you identify. This is done through Apify, a third-party data provider, and may include:
- Post content, captions, hashtags, and media thumbnails.
- Engagement metrics such as likes, comments, shares, saves, views, and follower counts.
- Posting frequency, timing, and format information.
- Video metadata including duration, cover images, and audio origin.
This competitor data relates to third-party public accounts and is not your personal data. We use this information solely to generate strategic insights for your benefit.
2. How We Use Your Information
We use the information we collect for the following purposes:
- Service delivery: to create and maintain your account, process your subscription, generate your foundational Social Playbook, and deliver weekly strategy updates and content calendars.
- Personalization: to tailor recommendations, insights, and content to your business type, goals, tone preferences, and selected platforms.
- AI strategy generation: to analyze competitor data and your business profile using large language model (LLM) technology to produce actionable, non-repetitive strategic guidance.
- Communications: to send you transactional emails (account confirmations, payment receipts, weekly strategy availability notifications) and, where you have opted in, promotional communications.
- Customer support: to respond to your inquiries and resolve issues.
- Product improvement: to understand how users interact with our Services, diagnose technical issues, and improve features and performance.
- Security and fraud prevention: to detect, investigate, and prevent unauthorized access, fraudulent activity, and other security incidents.
- Legal compliance: to comply with applicable laws and regulations and to enforce our Terms of Service.
- Analytics: to measure platform usage, user engagement, and the effectiveness of our features using tools such as Google Analytics.
3. Legal Basis for Processing (GDPR and UK GDPR)
If you are located in the European Economic Area (EEA) or the United Kingdom, we process your personal data under the following legal bases:
- Contractual necessity: processing required to perform our contract with you, including account creation, subscription management, and strategy generation.
- Legitimate interests: processing necessary for our legitimate business interests, including fraud prevention, service improvement, and analytics, where such interests are not overridden by your rights and interests.
- Legal obligation: processing required to comply with applicable law.
- Consent: where we rely on consent (for example, for certain marketing communications or non-essential cookies), you may withdraw your consent at any time without affecting the lawfulness of processing carried out prior to withdrawal.
4. How We Share Your Information
We do not sell your personal information. We may share your information in the following limited circumstances:
4.1 Service Providers
We engage trusted third-party vendors who process data on our behalf, subject to confidentiality obligations and data processing agreements.
4.2 Legal Requirements
We may disclose your information if required to do so by law or in response to valid requests from public authorities (e.g., a court or government agency), or where we believe disclosure is necessary to protect our rights, protect your safety or the safety of others, or investigate fraud.
4.3 Business Transfers
In the event of a merger, acquisition, reorganization, bankruptcy, or sale of all or substantially all of our assets, your information may be transferred as part of that transaction. We will provide notice before your personal data is transferred and becomes subject to a different privacy policy.
4.4 With Your Consent
We may share your information with third parties when you have given us your explicit consent to do so.
5. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law. Specifically:
- Account and profile data is retained for the duration of your subscription and for a reasonable period thereafter to accommodate account reactivation and legal compliance purposes.
- Strategy outputs and weekly playbook history are retained for the life of your account to provide continuity of service.
- Payment and billing records are retained as required by applicable tax and financial regulations.
- Competitor social media data is retained as needed to support ongoing strategy generation and historical analysis.
When data is no longer required, we will securely delete or anonymize it in accordance with our data retention procedures.
7. Your Privacy Rights
7.1 Rights Under GDPR and UK GDPR
If you are located in the EEA or the United Kingdom, you have the following rights with respect to your personal data:
- Right of access: the right to request a copy of the personal data we hold about you.
- Right to rectification: the right to request correction of inaccurate or incomplete personal data.
- Right to erasure: the right to request deletion of your personal data in certain circumstances.
- Right to restriction of processing: the right to request that we limit how we use your data in certain circumstances.
- Right to data portability: the right to receive your data in a structured, commonly used, machine-readable format.
- Right to object: the right to object to processing based on legitimate interests or for direct marketing purposes.
- Right to withdraw consent: where processing is based on consent, you may withdraw it at any time.
To exercise any of these rights, please contact us at support@socialplaybook.io. We will respond to your request within 30 days. You also have the right to lodge a complaint with your local data protection authority.
8. International Data Transfers
Our services are global, which means your information may be transferred to, stored, and processed in countries other than the one in which you reside. We ensure that appropriate safeguards are in place to protect your personal information when it is transferred internationally.
9. Children's Privacy
Our Services are not intended for use by children under the age of 16, and we do not knowingly collect personal information from children under 16. If you believe we have collected information from a child under 16, please contact us.
10. Data Security
We implement and maintain commercially reasonable administrative, technical, and physical security measures designed to protect your personal information from unauthorized access, loss, misuse, alteration, or destruction. These measures include encrypted data transmission (TLS/HTTPS), access controls, and secure cloud infrastructure provided by our hosting partners.
However, no method of transmission over the Internet or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee its absolute security. In the event of a data breach that affects your rights and freedoms, we will notify you and applicable regulators as required by law.
11. Third-Party Links and Services
Our Services may contain links to third-party websites, applications, or services (for example, social media platforms such as Instagram, TikTok, Facebook, or X). This Privacy Policy does not apply to those third-party services, and we are not responsible for their privacy practices. We encourage you to review the privacy policies of any third-party services you access through our platform.
12. Do Not Track
Some web browsers offer a "Do Not Track" (DNT) feature that signals to websites that you do not want your online activities tracked. Our Services do not currently respond to DNT signals. We will update this Privacy Policy if our approach changes.
13. Changes to This Privacy Policy
We reserve the right to update or modify this Privacy Policy at any time. If we make material changes, we will notify you by updating the Effective Date at the top of this policy and, where required by applicable law, by providing additional notice (such as an in-app notification or email to the address associated with your account).
Your continued use of the Services after any changes to this Privacy Policy constitutes your acceptance of the updated policy. We encourage you to review this Privacy Policy periodically.
14. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:
Social Playbook LLC
Privacy & Data Requests
Email: support@socialplaybook.io