Privacy
Privacy policy
Effective date: 5 August 2026
ReplytoSocial is a browser extension that helps you draft AI-assisted replies to posts on supported social networks. You stay in control: the extension acts on a post only when you tell it to, and nothing is posted on your behalf without your review. This policy explains exactly what data the extension collects, how we use it, where we store it, and who we share it with.
Single purpose
The extension has one purpose: to help you write and manage replies to social media posts you choose to act on. Every kind of data below is collected only to serve that purpose.
What data we collect
- Authentication information — an account identifier (anonymous or your email address if you sign up) and a workspace ID. Used to sign you in and apply your plan.
- Website content you act on — when you tell the extension to draft a reply, it reads the text and any images of that one post from the page you are viewing, and sends them to an AI model to generate the draft. By default we store only the URL and platform of that post, not its text, images, or the author's details.
- Posts you choose to save — if you click "Save to history", we then store the full text and media of that post so you can reuse it. This is off unless you click it.
- User-generated content — the reply drafts and reply options you create, so you can manage and reuse them.
- Your own AI provider keys (optional) — if you bring your own key, we store it encrypted and use it only to call that provider for you. It is never shown back in the UI and never shared.
- Settings and usage counts — your per-platform settings, plan, and request counts, used to save your preferences and enforce plan limits.
- An audit log — a record of key actions (such as generating or approving a reply), so you and we can see what happened.
We do not collect your browsing history, we do not run in the background, and we do not collect posts you did not act on.
Data we access through browser permissions
- Host access to the supported social networks (X/Twitter, LinkedIn, Reddit, Threads, Bluesky, Facebook, Instagram, TikTok, YouTube) and their image CDNs — lets the extension read the post you choose to act on and insert a draft reply into the page. It is used only on those sites, and only when you invoke it.
- activeTab — lets the extension act on the tab you are currently using when you click it.
- storage — saves your settings and session locally in your browser.
- sidePanel — shows the extension's interface in the browser side panel.
Automated rules only draft
If you set up automation rules, they generate drafts and place them in your approval queue. They never post anything. A reply is only submitted after you approve it or send it yourself from the action bar.
How we use your data
We use the data above only to run the service: to draft replies, manage your content, sign you in, enforce plan limits, process payments, and measure conversion performance. We do not use your data to build profiles unrelated to the extension's purpose.
Who we share it with
We share data only with the service providers we need to run the extension:
- AI providers — OpenAI, Anthropic, Google, and OpenRouter — receive the post content (text and images) needed to draft a reply. On paid plans we call them with our key; if you bring your own key, we call the provider you chose with it. OpenRouter routes a request to the model you pick.
- Stripe — processes payments for paid plans. Stripe handles your payment details directly; we do not store card numbers.
- Cloudflare — provides our hosting, database, storage, and transactional email.
We do not sell your data, and we do not share it with anyone other than the providers listed above.
For conversion measurement and audience matching, we share hashed identifiers such as your email address and IP address with advertising partners including Google, Meta, and Microsoft. We do not share raw email addresses for this purpose. You can opt out by disabling advertising cookies or contacting us at hello@replytosocial.com; you can also use the opt-out controls provided by those partners.
Limited use
Our collection, use, and transfer of any information received through the extension adheres to the Chrome Web Store User Data Policy, including its Limited Use requirements.
Where we store your data and how we secure it
Your data is stored on Cloudflare infrastructure. Settings and your session are also kept locally in your browser. Any AI provider keys you add are encrypted at rest. No system is perfectly secure, but we limit what we store and encrypt the sensitive parts.
Keeping and deleting data
We keep your data while your account is active. You can remove your stored API keys from the extension settings at any time, and you can delete saved posts from your history. To close your account and delete all of your data, email us and we will action it.
Your rights
Depending on where you live, you may have the right to access, correct, or delete your data, or to object to how we use it. Email us and we will help.
Changes to this policy
If we change what we collect or who we share it with, we will update this page and change the effective date above.
Questions: hello@replytosocial.com.