Privacy Policy
Last updated: March 13, 2026 | Effective date: March 1, 2026
AIGrow.social ("we", "our", "us") operates the AIGrow.social platform, an AI-powered Instagram content automation service. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our Service.
1. Information We Collect
1.1 Account Information
When you register, we collect:
- Business name and contact email address
- Password (stored securely using bcrypt hashing)
- Business type and description
- Preferred language and country
1.2 Instagram Data
When you connect your Instagram account via OAuth, we receive:
- Instagram Business/Creator account ID and username
- Access token (used to publish content on your behalf)
- Profile information (name, profile picture, follower count, media count)
- Recent media data (for analytics display only)
We access this data through the official Instagram Graph API with your explicit authorization. We request only the following permissions:
- instagram_business_basic — to read your profile information
- instagram_business_content_publish — to publish posts and stories you have approved
- instagram_business_manage_messages — to enable messaging features
1.3 Product Images
You may upload product images via Telegram or our dashboard. These images are stored on our servers and used exclusively for generating your Instagram content.
1.4 Telegram Data
If you connect Telegram, we store your Telegram chat ID to send content previews and receive your approval/rejection decisions.
1.5 Generated Content
We store the AI-generated captions, images, and metadata for content items created for your account.
2. How We Use Your Information
We use your information exclusively to:
- Generate AI-powered Instagram content (posts, stories, reels) tailored to your business
- Publish approved content to your Instagram account
- Send content previews for your review via Telegram
- Display analytics and performance data in your dashboard
- Manage your subscription and account settings
- Communicate with you about service updates
We do NOT:
- Sell, rent, or share your personal data with third parties
- Use your Instagram data for any purpose other than the services you authorized
- Access your Instagram direct messages or personal conversations
- Store your Instagram password (we use OAuth tokens only)
- Use your data for advertising or profiling purposes
3. Data Storage and Security
Your data is stored on secure servers located in Europe. We implement the following security measures:
- All data transmitted over HTTPS/TLS encryption
- Passwords hashed using bcrypt algorithm
- Instagram access tokens stored encrypted in our database
- Server access restricted to authorized personnel only
- Regular security updates and monitoring
4. Data Retention
- Account data: Retained while your account is active. Deleted within 30 days of account deletion request.
- Instagram tokens: Stored while connected. Immediately deleted when you disconnect Instagram.
- Generated content: Stored for 90 days after creation, then automatically purged.
- Product images: Retained while your account is active. Deleted upon account deletion.
- Telegram chat ID: Deleted immediately when you disconnect Telegram.
5. Your Rights
You have the right to:
- Access — Request a copy of all data we hold about you
- Rectification — Correct inaccurate personal data
- Deletion — Request complete deletion of your account and all associated data
- Disconnect — Revoke Instagram access at any time from your dashboard or Instagram settings
- Portability — Request your data in a machine-readable format
- Withdraw consent — Stop our access to your Instagram account at any time
6. Data Deletion
You can request deletion of your data in the following ways:
Upon receiving a deletion request, we will:
- Delete all your personal data within 30 days
- Revoke and delete all Instagram access tokens immediately
- Remove all generated content and uploaded images
- Send you a confirmation email when deletion is complete
7. Third-Party Services
We integrate with the following third-party services:
- Instagram/Meta Graph API — For publishing content (governed by Meta's Privacy Policy)
- Google Gemini AI — For generating content text and images (no personal data shared; only business descriptions and content prompts)
- Telegram Bot API — For sending content previews (governed by Telegram's Privacy Policy)
8. Cookies
We use only essential cookies required for authentication (JWT session tokens). We do not use tracking cookies, analytics cookies, or advertising cookies.
9. Children's Privacy
Our Service is intended for business use only and is not directed at individuals under the age of 18. We do not knowingly collect data from minors.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes via email or dashboard notification. Continued use of the Service after changes constitutes acceptance of the updated policy.
11. Contact Us
For any privacy-related questions or requests:
Politika e Privatesise
Perditesuar: 13 Mars 2026 | E vlefshme nga: 1 Mars 2026
AIGrow.social ("ne", "jone") operon platformen AIGrow.social, nje sherbim automatizimi te permbajtjes se Instagram me inteligjence artificiale. Kjo Politike Privatesie shpjegon si mbledhim, perdorim, ruajme dhe mbrojme te dhenat tuaja personale kur perdorni Sherbimin tone.
1. Te Dhenat qe Mbledhim
1.1 Informacioni i Llogarise
Kur regjistroheni, mbledhim:
- Emri i biznesit dhe adresa e email-it
- Fjalekalimi (i ruajtur i enkriptuar me bcrypt)
- Tipi dhe pershkrimi i biznesit
- Gjuha dhe vendi i preferuar
1.2 Te Dhenat e Instagram
Kur lidhni llogarinen tuaj Instagram permes OAuth, marrim:
- ID dhe username e llogarise Instagram Business/Creator
- Token aksesi (perdoret per te publikuar permbajtje ne emrin tuaj)
- Informacion profili (emer, foto, ndjekesit, postimet)
- Te dhenat e mediave te fundit (vetem per analitike)
I aksesojme keto te dhena permes Instagram Graph API zyrtare me autorizimin tuaj. Kerkojme vetem keto leje:
- instagram_business_basic — per te lexuar informacionin e profilit
- instagram_business_content_publish — per te publikuar postime dhe story qe ju keni aprovuar
- instagram_business_manage_messages — per te mundesuar mesazhet
1.3 Imazhet e Produkteve
Mund te ngarkoni imazhe produktesh permes Telegram ose dashboard-it. Keto ruhen ne serverat tane dhe perdoren vetem per gjenerimin e permbajtjes suaj.
1.4 Te Dhenat e Telegram
Nese lidhni Telegram, ruajme chat ID-ne tuaj per te derguar preview-et e permbajtjes dhe per te marre vendimet tuaja aprovim/refuzim.
2. Si i Perdorim Te Dhenat
I perdorim te dhenat tuaja vetem per:
- Gjeneruar permbajtje Instagram me AI per biznesin tuaj
- Publikuar permbajtjen e aprovuar ne Instagram
- Derguar preview permes Telegram per aprovim
- Shfaqur analitike ne dashboard
- Menaxhuar abonimin dhe cilesimet
Ne NUK:
- Shesim, japim me qira, ose ndajme te dhenat tuaja me pale te treta
- Perdorim te dhenat e Instagram per asnje qellim tjeter
- Aksesojme mesazhet tuaja private ne Instagram
- Ruajme fjalekalimin tuaj te Instagram
- Perdorim te dhenat tuaja per reklama ose profilizim
3. Ruajtja dhe Siguria e te Dhenave
Te dhenat ruhen ne servera te sigurte ne Europe. Masat e sigurise perfshijne:
- Enkriptim HTTPS/TLS per te gjitha transmetimet
- Fjalekalimet hash me bcrypt
- Tokenat e Instagram te enkriptuar ne databazen tone
- Aksesi ne server i kufizuar vetem per stafin e autorizuar
4. Mbajtja e te Dhenave
- Te dhenat e llogarise: Mbahen derisa llogaria eshte aktive. Fshihen brenda 30 diteve pas kerkeses.
- Tokenat e Instagram: Fshihen menjehere kur shkputni Instagram.
- Permbajtja e gjeneruar: Ruhet per 90 dite, pastaj fshihet automatikisht.
- Imazhet e produkteve: Fshihen kur fshihet llogaria.
5. Te Drejtat Tuaja
- Akses — Kerkoni kopje te te gjithe te dhenave qe kemi per ju
- Korrigjim — Korrigjoni te dhena te pasakta
- Fshirje — Kerkoni fshirjen e plote te llogarise dhe te dhenave
- Shkputje — Hiqni aksesin e Instagram ne cdo kohe
- Terheqje pelqimi — Ndaloni aksesin tone ne llogarinen tuaj ne cdo kohe
6. Fshirja e te Dhenave
Mund te kerkoni fshirjen e te dhenave:
7. Sherbimet e Paleve te Treta
- Instagram/Meta Graph API — Per publikimin e permbajtjes
- Google Gemini AI — Per gjenerimin e tekstit dhe imazheve
- Telegram Bot API — Per dergimin e preview-eve
8. Cookies
Perdorim vetem cookies esenciale per autentikim. Nuk perdorim cookies gjurmimi ose reklamimi.
9. Kontakt
Per cdo pyetje rreth privatesise: