Effective date: 31 July 2026
Last updated: 18 September 2026
Ajinsy ("Ajinsy", "we", "us") is an operating system for social media agencies, available at ajinsy.com. This policy explains what personal data we collect, why, and what rights you have.
Ajinsy is an independent service run as a sole proprietorship. For anything privacy related, write to support@ajinsy.com and we will handle it directly.
Ajinsy is a tool agencies use to manage their own clients, so we handle data in two distinct roles:
Account data. Name, email address, and a password (stored only as a bcrypt hash; we cannot read it). Optionally a profile photo. If you join by invite, the inviting agency provided your email.
Workspace data. Agency name, branding (logo, colors), timezone, plan tier, team members and their roles, and settings.
Content your agency creates or uploads. Client profiles, intake form answers, strategies, content calendars, posts, review feedback, reports, and uploaded media (photos, videos, client logos, and strategy showcase images). For uploaded images we also generate and store a small thumbnail copy, so lists load quickly. Uploaded media is stored by us; where it lives and how it is served is described in section 6. This can include personal data about your agency's clients; for that data we act as processor (see section 1).
Stored client logins. If an agency's client shares social media credentials through intake, or a team member adds them manually, the password is encrypted at rest with AES-256-GCM. Revealing a stored password is restricted to workspace owners and managers, and every reveal is logged and visible to the workspace.
Billing data. Payments are handled by Dodo Payments as merchant of record. We never receive or store card numbers. We store your plan tier, billing interval, subscription status, and payment-provider references.
Product analytics. To understand how the product is used, we record page views and a small number of named in-page actions. Each record holds the route pattern (for example "/clients/[id]/strategy", never the record id itself), a randomly generated visitor id kept in your browser's local storage, a per-tab session id, and, on the first event of a session, the referring URL and any utm_source, utm_medium, and utm_campaign values on the landing URL. This data is first party, is not sold or shared, is never used for advertising, and is not linked to your account. We do not store IP addresses in this analytics data.
Usage and technical data. Server logs (including IP address, request time, and user agent) kept for security and debugging, and error reports (see Sentry below).
Support communications. Messages you send through the in-app support chat (including any screenshots you attach), the contact form, or by email. The support chat starts with an AI assistant and can be escalated to a human; when it is escalated, the conversation is relayed to us over Telegram so we can reply (see section 6). If you file a bug report, we also attach technical context collected in your browser at that moment: the page you were on, the pages you visited earlier in that browser session (route patterns only), your browser version, and your window size.
Where the EU or UK GDPR applies to you, these are the legal bases we rely on. Where other data protection laws apply, we rely on the equivalent lawful bases.
We do not sell personal data. We do not run advertising or share data with ad networks.
When you use an AI feature (drafting a strategy, generating a content plan, asking for ideas or trends, AI pre-review, caption rewrites, or the support assistant), the relevant content is sent to an AI provider to generate the response. Depending on the task and our configuration, that provider is one of:
We send only what the feature needs (for example, the client's brief, stored brand rules, the text being worked on, or a screenshot you attach in support chat). We do not send your account password, stored client logins, or billing data to AI providers. AI requests are made server side under our API agreements with these providers; we do not use consumer chat products for your data.
If your workspace prefers that its content is not processed by a particular provider, contact us; Enterprise plans can arrange restricted AI routing.
To make Ajinsy's AI better at agency work, we collect examples of AI interactions from workspaces: for example, a change request and the revision that satisfied it. Before storage, examples pass a quality filter, and this dataset is used only to improve Ajinsy's AI features. We do not sell it, license it, or share it with third parties.
Opt-out: workspace owners can turn this off at any time in Settings under Data collection. Opting out stops new collection immediately; on request we also delete previously collected examples from your workspace.
Where a provider is outside the EEA, transfers rely on the European Commission's Standard Contractual Clauses or an adequacy decision, per the provider's data processing agreement. Where we handle EU personal data outside the EEA ourselves, we rely on appropriate safeguards under the GDPR.
Support over Telegram. When a support conversation is escalated to a human, the conversation text, any screenshots you attached, and the workspace and sender it came from are relayed through Telegram so we can respond. Do not put passwords or other secrets into support chat.
Uploaded media. Post images and videos, client logos, and strategy showcase images are stored by us, on Hetzner object storage in Falkenstein, Germany (EU), in the same region as the application and database. Media files, and the thumbnails we derive from images, are served from a public URL so that browsers, client review links, and social platforms can load them. Each URL contains a random identifier generated for that one file, which is what makes it unguessable, alongside our internal workspace and client identifiers, what the file is for, and the month it was uploaded: those identifiers are opaque strings and carry no name, but they do mean that someone holding two of your media links can tell whether the files belong to the same client. We do not publish an index of these files and the storage bucket refuses directory listing, so there is no way to walk the files from a URL, but anyone holding a URL can open the file it points at, without signing in. Do not upload anything to a post that should not be viewable by someone given its link.
Google Drive. Connecting Google Drive is optional and adds a COPY of your media into your agency's own Drive; it is never where your media lives, and nothing in the product requires it. We store an encrypted refresh token to access your Drive on your behalf. Our use of Google user data complies with the Google API Services User Data Policy, including the Limited Use requirements: Drive access is used only to write and read your agency's own media copies, never for advertising, and never transferred to third parties except as needed to provide that feature. We never delete anything from your Drive: disconnecting Drive, deleting a post, deleting a client, or deleting your whole workspace leaves every copy already in your Drive exactly where it is, for you to remove yourself.
We use only what the product needs:
No advertising cookies, no cross-site trackers, no fingerprinting, and nothing shared with third-party ad networks. If you would rather not be counted in product analytics, clear your browser storage for ajinsy.com or tell us and we will exclude you.
No system is perfectly secure. If we learn of a breach affecting your personal data, we will notify you and the relevant authority as the law requires.
You can ask us to:
Write to support@ajinsy.com. We respond within one month.
You can also complain to your local data protection authority. In the EEA and the UK, that is the supervisory authority for the country you live in.
If your data was entered into Ajinsy by an agency (you are their client), direct requests to that agency; we will assist them as their processor.
Ajinsy is a business tool, not directed at children, and we do not knowingly collect data from anyone under 16.
We will post changes here and update the date at the top. For material changes we will email workspace owners before they take effect.
Ajinsy
Email: support@ajinsy.com