Privacy Policy
Last updated: June 2, 2026
1. Overview
FOGATO (“we”, “our”, “the service”) is an AI content creation platform operated by Charles DeSimone. This Privacy Policy explains what information we collect when you use FOGATO and how we use it.
2. What we collect
Account data
When you create an account we collect your email address and, optionally, your name. This is stored in our authentication provider (Supabase) and is used solely to identify your account.
Content you create
Content packs, brand voice settings, and scheduled posts that you generate are stored in our database. This data belongs to you and can be exported or deleted at any time from the Settings page.
Platform tokens
When you connect a social media platform (Twitter/X, LinkedIn, Facebook, Instagram, TikTok, or Pinterest), we store the OAuth access token in our database. All tokens are encrypted at rest using AES-256-GCM. We use these tokens only to publish content on your behalf when you explicitly request it.
Usage analytics
We collect anonymised usage data (page views, feature usage) to help improve the product. We do not sell this data and do not use third-party advertising trackers.
Payment information
Billing is handled entirely by Stripe. FOGATO never sees or stores your credit card number. Stripe’s privacy policy is available at stripe.com/privacy.
3. How we use your data
- To authenticate you and deliver the service
- To publish content to connected platforms when you request it
- To improve FOGATO features and fix bugs
- To send transactional emails (password reset, billing receipts)
We do not sell your personal data to third parties.
4. Data retention
Your data is retained as long as your account is active. You can delete your account and all associated data at any time via Settings → Account. We will process deletion requests within 30 days.
5. Cookies
We use a single session cookie to keep you logged in. No third-party advertising or tracking cookies are set.
6. Security
We encrypt data in transit (TLS 1.2+) and at rest. Platform OAuth tokens are encrypted with AES-256-GCM before storage. We follow industry-standard security practices and review them regularly.
7. Your rights
Depending on your location, you may have the right to access, correct, or delete your personal data. To exercise these rights, email privacy@fogato.ai.
8. Changes to this policy
We may update this policy from time to time. Material changes will be communicated via email and/or an in-app notice. Continued use of FOGATO after such notice constitutes acceptance of the updated policy.
9. Contact
Questions? Email us at privacy@fogato.ai.