Privacy Policy
Effective August 5, 2026 · Last updated August 5, 2026
Who we are
WolfSocial is a social publishing and engagement service operated by WolfGrid in Ontario, Canada. This policy explains how WolfSocial (“WolfSocial,” “WolfGrid,” “we,” “us”) handles personal information when you use social.wolfgrid.app, the embedded WolfGrid Sales experience, or the WolfGrid Sales iOS application. Questions can be sent to support@wolfgrid.app.
Information we collect
Account data: name, email address, authentication identifiers, workspace membership and settings.
Connected-platform data: provider, account or Page identifier, display name, avatar, permissions, encrypted access and refresh tokens, and token expiry information for Facebook Pages, Instagram professional accounts, TikTok, YouTube, and LinkedIn.
Content and media: captions, titles, images, videos, drafts, schedules, publishing settings and provider responses that you submit through WolfSocial.
Engagement data: supported comments, replies, Page or professional-account messages, contact identifiers and post analytics made available by a connected provider.
Technical data: IP address, device/browser information, timestamps, request and security logs, error details and product usage events.
How information is collected
We receive information directly from you, from your organization or WolfSocial workspace, automatically when you use the service, and from a social provider after you deliberately authorize WolfSocial through that provider’s OAuth consent screen.
How we use information
- Authenticate users and maintain WolfSocial workspaces.
- Connect accounts and display the accounts you selected.
- Upload, schedule or publish content only after your explicit action.
- Retrieve publishing status, supported comments, messages and analytics.
- Send replies only after you review and approve them.
- Provide assistive Wolfey caption and reply suggestions; Wolfey does not publish autonomously.
- Provide support, diagnose failures, prevent fraud and secure the service.
- Comply with legal obligations and enforce our Terms.
TikTok Content Posting API
WolfSocial uses TikTok data only to provide user-requested account connection, creator information, video/photo upload, Direct Post when approved, draft delivery, publishing status and available metrics.
Before any TikTok post, you select the account, privacy level and interaction settings and provide explicit approval. WolfSocial never chooses a default privacy level and never publishes or replies automatically.
For a TikTok draft upload, the media is delivered to your TikTok inbox. You must open the TikTok notification, review or edit the content, and complete publication inside TikTok.
Legal bases and consent
We process information to provide the service you request, with your consent when connecting a provider, for our legitimate interests in operating and securing WolfSocial, and when required by law. You may withdraw provider access at any time by disconnecting the account or revoking WolfSocial in the provider’s settings.
How we disclose information
We disclose information only as needed to operate WolfSocial: to the connected provider when you request an action; to infrastructure, database, storage, authentication, email, analytics and AI subprocessors acting for us; to your workspace members according to their permissions; or when required by law or a valid legal process.
We do not sell personal information, provider data or connected-account data. We do not share it for cross-context behavioural advertising.
Storage, security and international processing
Provider tokens are encrypted at rest and transmitted using HTTPS. Access is limited by workspace membership and row-level security. We use access controls, logging, backups and reasonable administrative and technical safeguards. No online service can guarantee absolute security. Our providers may process information in Canada, the United States and other countries where they operate, subject to contractual and legal safeguards.
Retention
Connected-account tokens are retained until you disconnect the account, revoke access, delete the workspace or the token expires and is no longer needed. Drafts, media, posts, interactions and analytics remain while your workspace is active or until you delete them.
One-time OAuth state records expire after approximately ten minutes. Operational and security records may be retained only as reasonably necessary for security, dispute resolution, legal compliance and backup recovery. When deletion is requested, active data is removed after verification and residual backup copies age out through normal backup rotation.
Your choices and privacy rights
- Access, correct or export eligible personal information.
- Disconnect any social account and revoke provider permissions.
- Delete content, media, connections or your WolfSocial workspace.
- Object to or restrict certain processing where applicable.
- Withdraw consent without affecting earlier lawful processing.
- Complain to an applicable privacy regulator.
Data deletion
Use the in-product connection and deletion controls or follow our Data Deletion Instructions. You may also email support@wolfgrid.app from your account email with the subject “WolfSocial data deletion.” We verify ownership before deleting account data.
Children
WolfSocial is a professional service and is not directed to children under 13. Users must also meet the minimum age and eligibility requirements of every connected provider. We do not knowingly collect personal information from children.
Changes to this policy
We may update this policy as WolfSocial or legal requirements change. We will update the date above and provide additional notice when a material change requires it. Continued use after an effective update means the revised policy applies.
Contact
Privacy inquiries: support@wolfgrid.app. Operator: WolfGrid, Ontario, Canada.