Privacy Policy

Last updated: September 3, 2026

Important Privacy Notice

Important: While we make reasonable efforts to protect your data, we cannot guarantee perfect security or immediate responses to data requests. By using this Service, you acknowledge these limitations and accept all associated risks. If you require enterprise-grade data protection with guaranteed SLAs, please do not use this Service.

Introduction

Propelr ("we," "our," or "us"), operated by 3D Reality Labs LLC, is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our LinkedIn and X (Twitter) content management platform at https://getpropelr.app and any related services (collectively, the "Service").

By using our Service, you agree to the collection and use of information in accordance with this policy. We will not use or share your information with anyone except as described in this Privacy Policy. Unless otherwise defined, terms used in this Privacy Policy have the same meanings as in our Terms of Service.

Definitions

SERVICE

Means the Propelr website and platform operated by 3D Reality Labs LLC.

PERSONAL DATA

Data about a living individual who can be identified from that data (or from that and other information in our possession).

USAGE DATA

Data collected automatically, either generated by use of the Service or from the Service infrastructure itself.

COOKIES

Small files stored on your device (computer or mobile device).

DATA CONTROLLER

The natural or legal person who determines the purposes and means of processing Personal Data. For this Privacy Policy, we are the Data Controller.

DATA PROCESSORS (SERVICE PROVIDERS)

Any person or entity who processes data on behalf of the Data Controller. We may use various Service Providers to process your data more effectively.

DATA SUBJECT (USER)

Any living individual who is using our Service and is the subject of Personal Data.

Information We Collect

Personal Information

  • Name, email address, and contact information
  • Company name and professional role
  • LinkedIn profile information (with your consent)
  • Profile preferences and content style settings
  • Account credentials and authentication data

Content and Usage Data

  • Posts, drafts, and content you create or schedule
  • Analytics data from your LinkedIn posts
  • Usage patterns and feature interactions
  • AI-generated content suggestions and preferences
  • Calendar events and scheduling information

Technical Information

  • IP address and device information
  • Browser type and version
  • Operating system and device identifiers
  • Log files and error reports
  • Cookies and similar tracking technologies

How We Use Your Information

Service Provision

  • Provide and maintain our platform
  • Process and schedule your content
  • Generate AI-powered content suggestions
  • Sync with LinkedIn, X (Twitter), and other platforms

Analytics & Improvement

  • Analyze usage patterns and performance
  • Improve our AI algorithms
  • Develop new features and functionality
  • Provide personalized recommendations

Communication

  • Send service-related notifications
  • Respond to your inquiries and support requests
  • Send marketing communications (with consent)
  • Notify you of important changes

Legal & Security

  • Comply with legal obligations
  • Protect against fraud and abuse
  • Enforce our terms of service
  • Maintain platform security

Third-Party Services

We use the following third-party services to provide our platform. Each service has its own privacy policy and data handling practices:

Supabase (Database & Authentication)

We use Supabase for user authentication, database storage, and real-time features.

Privacy Policy: https://supabase.com/privacy

LinkedIn API

We connect to LinkedIn to post content and retrieve analytics data on your behalf.

Privacy Policy: https://www.linkedin.com/legal/privacy-policy

OpenAI API

We use OpenAI to generate AI-powered content suggestions and insights.

Privacy Policy: https://openai.com/privacy

Mixpanel (Analytics)

We use Mixpanel to understand how you use our platform and improve our services.

Privacy Policy: https://mixpanel.com/privacy

Data Security

We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction.

Technical Safeguards

  • End-to-end encryption for sensitive data
  • Secure HTTPS connections
  • Regular security audits and updates
  • Access controls and authentication

Operational Safeguards

  • Employee training on data protection
  • Limited access to personal data
  • Regular backup and recovery procedures
  • Incident response protocols

Your Rights

Depending on your location, you may have certain rights regarding your personal information:

Right to Access

Request a copy of the personal information we hold about you.

Right to Rectification

Correct any inaccurate or incomplete personal information.

Right to Erasure

Request deletion of your personal information in certain circumstances.

Right to Portability

Receive your data in a structured, machine-readable format.

Right to Object

Object to processing of your personal information for certain purposes.

To exercise your rights: Contact us at 3drealitylabs@gmail.com or use the data management tools in your account settings.

LinkedIn Data Processing and Retention

When you connect your LinkedIn account, Propelr accesses data through LinkedIn's official OAuth 2.0 API only. We never scrape, use browser extensions, or access data without your explicit consent. Our use of LinkedIn data complies with LinkedIn's API Terms and Marketing API Platform Terms, including their Data Storage Requirements.

Data we store about you (the authenticated user):

  • Basic profile: name, profile picture URL, and LinkedIn member id
  • Your own published posts (URN, text, and the media you attached) and their aggregate engagement (impressions, reactions, comment counts, shares)
  • Your follower count
  • OAuth access and refresh tokens, encrypted at rest with AES-256-GCM

This data is retained for the lifetime of your Propelr account and deleted when you delete your Propelr account or disconnect LinkedIn.

Data we store about other LinkedIn members:

Only when another member comments on one of your posts, we temporarily store their display name, the text of their comment, and the time it was posted. We do not store their profile photo, headline, industry, connections, or any other profile fields.

  • Retention cap: 48 hours maximum — per LinkedIn's Data Storage Requirements for member social activity
  • Cached entries are automatically purged by a scheduled cleanup job; any entry past 48 hours is deleted on the next run
  • All cached third-party member data is purged immediately when you disconnect LinkedIn

We do not:

  • Combine LinkedIn member data with data from other sources or third parties
  • Export LinkedIn member data to CRMs, spreadsheets, or any third-party system
  • Read the LinkedIn feed, your messages, or other members' posts outside of comments on your own posts
  • Use LinkedIn data for advertising, sales prospecting, recruiting, audience building, or ad targeting
  • Automate engagement (likes, comments, follows) on other members' content
  • Automate posting without your explicit per-post review and approval

On disconnect:

When you click “Disconnect LinkedIn” in Propelr we call LinkedIn's/oauth/v2/revoke endpoint, delete your OAuth tokens from our storage, and immediately purge all cached third-party member data (commenter names, comment text, timestamps) associated with your account. You can confirm the app is no longer authorised from LinkedIn Settings → Data Privacy → Permitted Services.

Data Retention

We retain your personal information only as long as necessary to provide our services and fulfill the purposes outlined in this Privacy Policy.

Account InformationUntil account deletion
Content & PostsUntil account deletion
Analytics Data2 years from collection
Usage Logs1 year from collection
LinkedIn member profile data (other users)24 hours maximum
LinkedIn social activity (comments on your posts)48 hours maximum
Marketing DataUntil consent withdrawal

International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers, including:

  • Standard Contractual Clauses (SCCs) for EU data transfers
  • Adequacy decisions by relevant data protection authorities
  • Certification schemes and codes of conduct
  • Binding corporate rules and other appropriate safeguards

Cookies and Tracking Technologies

We use cookies and similar tracking technologies to track activity on our Service and store certain information. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.

Types of Cookies We Use:

  • Session Cookies: We use these to operate our Service and maintain your session.
  • Preference Cookies: We use these to remember your preferences and various settings.
  • Security Cookies: We use these for security purposes and to authenticate users.
  • Analytics Cookies: We use these to help us analyze how our Service is used and monitor performance.

For more information about cookies and how to manage them, please see our Cookie Policy page.

Location Data

We may use and store information about your location if you give us permission to do so. We use this data to provide features of our Service, to improve and customize our Service. You can enable or disable location services when you use our Service at any time through your device settings.

Payment Processing

We use third-party payment processors to handle subscription payments. We do not store or collect your payment card details. That information is provided directly to our third-party payment processor, Stripe, whose use of your personal information is governed by their Privacy Policy.

These payment processors adhere to the standards set by PCI-DSS as managed by the PCI Security Standards Council, which is a joint effort of brands like Visa, Mastercard, American Express, and Discover. PCI-DSS requirements help ensure the secure handling of payment information.

Stripe Privacy Policy: https://stripe.com/privacy

Links to Other Websites

Our Service may contain links to other websites that are not operated by us. If you click a third-party link, you will be directed to that third party's site. We strongly advise you to review the Privacy Policy of every site you visit.

We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.

California Privacy Rights (CCPA)

If you are a California resident, you are entitled to specific rights regarding your personal information under the California Consumer Privacy Act (CCPA).

Your Rights Include:

  • Right to Know: You can request information about what personal data we have collected, used, disclosed, and sold about you.
  • Right to Delete: You can request deletion of your personal information, subject to certain exceptions.
  • Right to Opt-Out: We do not sell your personal information for monetary consideration. However, certain data sharing may be considered a "sale" under California law.
  • Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA rights.

Note: You are entitled to make up to two requests in a rolling twelve-month period. To exercise your rights, please contact us at 3drealitylabs@gmail.com.

California Online Privacy Protection Act (CalOPPA)

CalOPPA requires commercial websites and online services to post a privacy policy. According to CalOPPA, we agree to the following:

  • Users can visit our site anonymously
  • Our Privacy Policy link includes the word "Privacy" and can be easily found on our website
  • Users will be notified of any Privacy Policy changes on this page
  • Users can change their personal information by emailing us at 3drealitylabs@gmail.com

Do Not Track Signals:

We honor Do Not Track (DNT) signals and do not track, plant cookies, or use advertising when a DNT browser mechanism is in place. You can enable or disable Do Not Track by visiting the Preferences or Settings page of your web browser.

Children's Privacy

Our Service is not intended for use by children under the age of 13 ("Children"). We do not knowingly collect personally identifiable information from Children under 13. If you are a parent or guardian and you become aware that your child has provided us with Personal Data, please contact us immediately.

If we become aware that we have collected Personal Data from Children without verification of parental consent, we take steps to remove that information from our servers.

Note: While our Terms of Service require users to be at least 16 years old, we comply with COPPA requirements for children under 13.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by:

  • Posting the new Privacy Policy on this page
  • Updating the "Last updated" date at the top of this Privacy Policy
  • Sending you an email notification (for material changes)
  • Displaying a prominent notice on our Service prior to the change becoming effective

You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page. Your continued use of the Service after we post any modifications to the Privacy Policy will constitute your acknowledgment of the modifications and your consent to abide and be bound by the modified Privacy Policy.

Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us:

Email: 3drealitylabs@gmail.com

General Inquiries: 3drealitylabs@gmail.com

Data Protection Officer: 3drealitylabs@gmail.com