Skip to content
Podium
FeaturesProductPricing
Sign inGet started
FeaturesProductPricingSign inGet started

Legal

Privacy policy

Last updated: July 12, 2026

Who we areData we collectOAuth tokensHow we use dataAnonymized learningAI processingBilling & creditsCookiesSharingRetention & deletionSecurityYour rightsChildrenChangesContact

Who we are

Podium Social (“Podium”, “we”, “us”) is a social media command center operated by Intelligent Solutions LLC, a United States company. This policy explains what data we collect when you use podiumsocial.com and the Podium application, why we collect it, how we protect it, and the choices you have. It is written to be read — if anything is unclear, write to us at [email protected].

Data we collect

Account data

When you create a Podium account we collect your name, email address and authentication credentials (passwords are stored only as salted hashes; passkeys and social sign-in never give us a password at all), plus workspace and team membership details you set up.

Connected social account data

When you connect a social account, you authorize Podium — through each platform's official authorization flow — to access data about that account on your behalf. Depending on the platform and the permissions you grant, this includes profile information, audience and follower metrics, content and its performance, comments and messages, and account activity. We collect this data to show it to you; it remains scoped to your workspace.

Public social data

Podium also collects publicly available social media data — public profiles, posts and engagement figures — to power competitor tracking, trends and niche benchmarks. This data is public by nature and is not tied to your Podium account.

Usage and technical data

We collect standard technical logs (IP address, browser type, pages viewed, feature usage, error reports) to keep the service secure, debug problems and understand which features matter. We do not run third-party advertising trackers.

Billing data

Payments are processed by Stripe. We receive and store your plan, subscription status, invoice history and the last digits of your card for display — never full card numbers.

OAuth tokens

The access and refresh tokens that let Podium read from and publish to your connected accounts are sensitive, and we treat them that way:

  • Tokens are encrypted at rest with AES-256-GCM before they ever touch our database. A database backup or dump does not contain usable credentials.
  • Tokens are never written to logs and never shown to anyone, including our staff.
  • When you disconnect an account — or delete your Podium account — the stored tokens are deleted, and you can additionally revoke Podium's access from the platform's own security settings at any time.

How we use data

  • To provide the product: dashboards, analytics, alerts, reports, scheduling and publishing you request.
  • To act on your instructions — for example publishing a post you approved to a connected account.
  • To benchmark your performance against your niche (see anonymized learning below).
  • To send service notifications you've configured — alerts, digests, approval requests.
  • To secure the service, prevent abuse and comply with legal obligations.

We do not sell or rent your personal data, and we do not use your private data for third-party advertising.

Anonymized learning & benchmarks

Podium's benchmarks, predictions and recommendations improve as the platform learns. That learning uses de-identified, aggregated signals derived from usage across the platform — for example, “carousels in this niche currently outperform single images” — combined with public social data. Before anything enters this shared learning corpus:

  • Direct identifiers (workspace, account and user IDs) are removed.
  • Signals are aggregated and subject to minimum group-size (k-anonymity) thresholds, so no individual account is identifiable or reconstructable from the corpus.
  • Your raw, private data — your posts' non-public metrics, your messages, your drafts — never crosses into another customer's workspace.

This is how your niche percentiles and Performance Score exist at all: everyone contributes anonymized signal, everyone gets better intelligence back. If you delete your account, your data stops contributing; already-aggregated statistics cannot be traced back to you.

AI processing

Podium's AI features (drafting, generation, the agent, recommendations) run on our platform keys against established model providers such as Anthropic, OpenAI and Google, plus creative-generation providers. When you use an AI feature, the relevant content — for example the post you're drafting and the performance context that informs it — is sent to the provider to produce the result. We use these providers' business/API offerings, which under their published terms do not use API content to train their generally available models. We only send what the feature needs, and AI usage is metered through your credit balance.

Billing & the credit system

AI usage is measured in credits. We keep a ledger of credit-consuming events (which feature ran, when, and its credit cost) so your balance is accurate and disputable — this ledger describes usage, not the content you generated. Subscriptions, credit-pack purchases and invoices are handled by Stripe under their privacy policy.

Cookies & analytics

The Podium application uses essential cookies only for sign-in sessions and security (CSRF protection). The marketing site does not set advertising cookies and does not embed third-party trackers. If we adopt product analytics beyond our own first-party usage logs, we will disclose the provider here first.

When we share data

We share data only with the service providers needed to run Podium:

  • Stripe — payment processing and invoicing.
  • Cloudflare — network security, content delivery and media storage (R2).
  • AI model providers (Anthropic, OpenAI, Google and creative-generation providers) — only the content needed to fulfil an AI request you make.
  • Social platforms — when you instruct Podium to publish or interact, we transmit that content to the platform you chose.

Transactional email is sent from our own self-hosted infrastructure rather than a third-party email service. Beyond the above, we disclose data only if required by law, to protect our users, or as part of a corporate transaction — in which case this policy continues to apply.

Retention & deletion

  • Raw collected payloads (the unprocessed responses from platforms) are kept for up to 90 days for auditability, then deleted.
  • Metric history is retained according to your plan's history window, so your charts and benchmarks stay meaningful.
  • Account data is kept while your account is active. When you delete your account, personal data, connected-account data and stored tokens are deleted within 30 days, and rotate out of encrypted backups within 90 days. Records we must keep (for example invoices, for tax law) are retained only as long as legally required.

You can delete individual connected accounts at any time, or your whole account from settings — no support ticket required.

Security

  • All traffic is encrypted in transit with TLS.
  • OAuth tokens are encrypted at rest (AES-256-GCM), with keys managed outside the database.
  • Tenant isolation is enforced at the database layer with row-level security — every query runs inside your workspace's boundary, not just filtered in application code.
  • Access to production systems is limited, logged and protected by strong authentication.

No system is perfectly secure; if we learn of a breach affecting your data we will notify you without undue delay and tell you what we know, what it means and what we're doing.

Your rights

Depending on where you live (including under GDPR and CCPA), you may have rights to access, correct, export, restrict or delete your personal data, and to object to certain processing. Most of these are self-serve in the product — export and deletion included. For anything else, email [email protected] with the subject “Privacy request” and we'll respond within 30 days. We do not discriminate against you for exercising these rights.

Children

Podium is not directed at children and may not be used by anyone under 16 (or the age of digital consent in your jurisdiction, if higher). We do not knowingly collect data from children; if you believe a child has created an account, contact us and we will delete it.

Changes to this policy

When we change this policy we will update the date at the top and, for material changes, notify you in the product or by email before they take effect. Continued use after a change means you accept the updated policy.

Contact

Intelligent Solutions LLC · [email protected]

See also our terms of service.

Podium Social

The AI-first social media command center for creators, agencies and brands.

Product

  • Features
  • Product tour
  • Pricing
  • Sign in
  • Get started

Company

  • About
  • Contact

Legal

  • Privacy policy
  • Terms of service

© 2026 Intelligent Solutions LLC. All rights reserved.

Twelve platforms. One stage.