Privacy Policy
Last updated: December 2024
At WorkIt ("we", "us", "our"), we are committed to protecting your privacy and personal data. This Privacy Policy describes how we collect, use, store, and protect your information when you use our social media management platform.
1. Information We Collect
1.1 Account Information
When you register for WorkIt, we collect:
- Name and email address
- Password (encrypted)
- Profile information you choose to provide
- Billing information (if applicable)
1.2 Social Media Tokens & Data
To provide our services, we collect:
- OAuth tokens for connected social platforms (Facebook, Instagram, LinkedIn, TikTok, Pinterest, Threads)
- Social media profile information (name, profile picture, page/account IDs)
- Content you create and schedule through our platform
- Analytics data from your connected accounts
1.3 Usage & Analytics Data
- How you interact with our platform
- Features you use and actions you take
- Device information and IP address
- Performance metrics and engagement data
2. Legal Basis for Processing (GDPR)
We process your personal data based on the following legal grounds:
2.1 Contract Performance
Processing necessary to provide our services to you, including:
- Account creation and management
- Content scheduling and publishing
- Analytics and reporting features
2.2 Legitimate Interest
Processing necessary for our legitimate business interests:
- Improving and developing our services
- Preventing fraud and ensuring security
- Understanding how users interact with our platform
2.3 Consent
Where required, we obtain your explicit consent for:
- Marketing communications
- Connecting third-party social media accounts
- Processing special categories of data
3. How We Use Your Information
- Provide, maintain, and improve our services
- Schedule and publish content to your connected social accounts
- Generate analytics and performance reports
- Send service-related communications
- Provide customer support
- Ensure platform security and prevent abuse
4. Data Sharing
4.1 Social Platforms
We share content and data with social platforms (Facebook, Instagram, LinkedIn, TikTok, Pinterest, Threads) as necessary to publish your scheduled content and retrieve analytics.
4.2 Service Providers
We work with trusted service providers who assist us in:
- Cloud hosting and data storage
- Payment processing
- Email delivery
- Analytics and monitoring
All service providers are bound by data processing agreements and are required to protect your data.
4.3 Legal Requirements
We may disclose data when required by law or to protect our rights, safety, or the rights of others.
5. Your Rights (GDPR)
As a data subject, you have the following rights:
Your Data Rights
- Right of Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure: Request deletion of your data ("right to be forgotten")
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing based on legitimate interests
- Right to Restrict Processing: Limit how we use your data
- Right to Withdraw Consent: Withdraw consent at any time where processing is based on consent
To exercise any of these rights, contact us at hector.gonzalez@work-it.fr
6. Data Retention
We retain your personal data for as long as your account is active. When you delete your account:
- Your data will be completely deleted within 30 days
- Backup copies are purged within 90 days
- We may retain anonymized, aggregated data for analytics purposes
- Some data may be retained longer if required by law
7. International Transfers
Your data may be transferred to and processed in countries outside the European Economic Area (EEA). When this occurs, we ensure appropriate safeguards are in place:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Adequacy decisions for countries with equivalent data protection
- Binding Corporate Rules where applicable
8. Cookies and Tracking
We use cookies and similar technologies to:
- Keep you signed in to your account
- Remember your preferences
- Understand how you use our platform
- Improve our services
You can manage cookie preferences through your browser settings.
9. Children's Privacy
WorkIt is not intended for users under 16 years of age. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us immediately.
10. Data Security
We implement appropriate technical and organizational measures to protect your data:
- Encryption of data in transit and at rest
- Regular security assessments
- Access controls and authentication
- Employee training on data protection
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via email or through our platform. Your continued use of WorkIt after changes constitutes acceptance of the updated policy.
12. Contact Us
Questions about your privacy?
If you have questions about this Privacy Policy or want to exercise your data rights, contact us:
Email: hector.gonzalez@work-it.fr
Data Controller: WorkIt
13. Supervisory Authority
If you believe your data protection rights have been violated, you have the right to lodge a complaint with a supervisory authority, particularly in the EU Member State of your residence, place of work, or place of the alleged infringement.
In France, the supervisory authority is the CNIL (Commission Nationale de l'Informatique et des Libertés): www.cnil.fr