Legal

Privacy Policy

Effective 26 August 2026. This policy explains what MarketAgent AI does with your data — what we collect, why we collect it, who else touches it, and how you get it back or delete it.

1. Overview

MarketAgent AI (“MarketAgent”, “we”, “us”) is a marketing automation platform. You describe your brand, we surface daily trends, generate content with AI, and publish it to your connected Instagram account.

This policy covers the MarketAgent web application, our API, and the marketing site. It applies to everyone who signs up, and to the people whose public Instagram interactions reach us through an account you connect. By using MarketAgent you agree to this policy.

2. Information we collect

Account information

Your email address, password credentials, name, and profile image, handled through our authentication provider. We never see or store your password in plain text.

Brand DNA and workspace content

Everything you enter about a brand: name, tagline, product description, tone of voice, brand colours, target audience, and any files you upload such as logos, fonts, and reference images. We also store a numeric embedding of your brand text, used to match trends to your brand.

Generated content

The captions, images, campaigns, and post schedules MarketAgent produces for you, along with your edits, approvals, and rejections.

Connected Instagram accounts

Your Instagram user ID, username, and an access token issued by Meta. Tokens are encrypted before they are written to our database. We also store engagement data returned by Meta for posts we published: likes, comments, reach, and impressions.

Comments from other people

When MarketAgent publishes to your Instagram account, we read public comments on those posts so we can show them to you and flag likely sales leads. That includes the commenter's public username, comment text, and timestamp. We do not use this data to build profiles of commenters or to contact them.

Billing information

Your plan, subscription status, and the customer and subscription identifiers held by our payment processor. Card numbers go directly to the payment processor — they never reach our servers.

Technical and usage data

Server logs (IP address, user agent, request paths, timestamps, error traces) and product usage such as which features you use and how often. We use these to keep the service running and to debug problems.

3. How we use information

  • Operate the product — authenticate you, store your brands, generate content, and publish posts.
  • Match daily trends to your brand using your Brand DNA and its embedding.
  • Show you engagement analytics and flag comments that look like sales leads.
  • Process payments, manage subscriptions, and enforce plan limits.
  • Provide support, respond to your requests, and send service notices about your account.
  • Keep the service secure — detect abuse, fraud, and technical failures.
  • Improve the product in aggregate, and meet legal and accounting obligations.

We do not sell your personal information, and we do not share it with advertisers or data brokers.

4. AI processing

Generating content means sending data to AI models. When you generate a post, we send your Brand DNA, the selected trend, and any prompt you wrote to Google's Gemini and Imagen models, which return the caption and the image. We also send brand text to Google to compute the embeddings used for trend matching.

We do not train our own models on your workspace content, and our AI providers are not permitted to train their general-purpose models on the data we send through their APIs. AI output can be wrong or off-brand — which is why every post goes through your review before it is published.

5. Instagram and Meta data

Connecting an Instagram account is optional, and you control it. When you connect one, you grant MarketAgent permission through Meta's login flow to publish content, read insights for posts we published, and read comments on those posts. We request no more than that.

You can disconnect an account at any time from MarketAgent settings, or revoke access from Instagram's own app settings. Revoking access stops all publishing and data collection for that account. If you request deletion through Meta's privacy tools, we hard-delete the connected account record and confirm it at our data deletion page.

Our use of Instagram data follows Meta's Platform Terms and Developer Policies.

6. How we share information

We share data with service providers who process it on our behalf, and only for the purposes above:

  • Supabase — authentication, database, and file storage.
  • Google (Gemini and Imagen) — text generation, image generation, and embeddings.
  • Meta (Instagram) — publishing posts and reading insights and comments for accounts you connect.
  • Stripe — payments and subscription billing.
  • Our hosting and infrastructure providers — running the application and storing logs.

We may also disclose information when the law requires it, to protect our rights or someone's safety, or to a buyer as part of a merger or acquisition — in which case this policy keeps applying until you are told otherwise. Anything beyond that needs your consent.

7. Storage, security, and retention

Data is encrypted in transit over TLS and at rest by our infrastructure providers. Instagram access tokens are additionally encrypted at the application layer before storage. Access to production data is limited to the people who need it, and each account's data is isolated at the database layer.

We keep your data for as long as your account is active. When you delete your account, we delete your brands, generated content, uploads, and connected account records. Backups and logs may retain copies for a short period, and we keep the billing records that tax and accounting rules require. No system is perfectly secure, but if a breach affects your data we will notify you and the relevant authorities as the law requires.

8. Your rights and choices

Depending on where you live — including under the GDPR and the CCPA — you can ask us to do the following, and we will not treat you differently for asking:

  • Access a copy of the personal data we hold about you.
  • Correct data that is wrong or out of date — most of it you can edit yourself in the app.
  • Delete your account and its data.
  • Export your brands and generated content.
  • Object to or restrict specific processing, and withdraw a consent you gave us.
  • Complain to your local data protection authority.

Email support@marketagent.in and we will respond within 30 days. We may need to verify that you control the account.

9. Deleting your data

  • A connected Instagram account — disconnect it in MarketAgent settings, or revoke MarketAgent from Instagram's app settings.
  • A brand and its content — delete the brand in the app; its campaigns, posts, and uploads go with it.
  • Your whole account — email support@marketagent.in and we will delete it.

10. Cookies and local storage

We use cookies and browser storage that the product needs to work: a session cookie that keeps you logged in, and local storage for interface preferences. We do not use advertising or cross-site tracking cookies. Blocking essential cookies will log you out and break parts of the app.

11. Children

MarketAgent is a business tool and is not for anyone under 16. We do not knowingly collect data from children. If you believe a child has given us data, email support@marketagent.in and we will delete it.

12. International transfers

Our providers operate globally, so your data may be processed in countries other than your own, including the United States. Where the law requires it, those transfers rely on approved safeguards such as the European Commission's Standard Contractual Clauses.

13. Changes to this policy

We may update this policy as the product changes. The effective date at the top always reflects the current version. For material changes we will notify you by email or in the app before they take effect. Continuing to use MarketAgent after that means you accept the updated policy.

14. Contact us

Questions, requests, or concerns about privacy — email support@marketagent.in. For data protection requests, put “Privacy request” in the subject line so we route it quickly.