Privacy Policy
Who we are
WinsPipe (https://winspipe.com) is a hosted social publishing product operated by John Santry. It helps customers draft, schedule, and publish posts (including video) to their own X and LinkedIn accounts.
What the product does
With the account owner's explicit OAuth consent, WinsPipe can:
- Read basic X and LinkedIn profile identity needed to post
- Create posts (including native video) on those connected accounts
- Store OAuth tokens so scheduled posts can run on our servers
- Store post copy, media files the customer uploads, and operational event logs
Data we process
- Account identity from Clerk (email, name, authentication identifiers)
- X and LinkedIn OAuth access and refresh tokens
- Platform member ids and display names used for posting
- Post captions, media files, schedule times, notes, and agent API keys the customer creates
- Operational logs needed to confirm a post succeeded or failed
Platform tokens are encrypted at rest. They are not sold, rented, or used for advertising.
What we do not do
- We do not collect data from other network members beyond what is required to publish the owner's own posts
- We do not sell personal data
- We do not use platform data for ads or profiling of third parties
- We do not share tokens with unrelated third parties
Retention
OAuth tokens are kept only while a social profile remains connected. Customers can disconnect in Settings or revoke access in X / LinkedIn. Soft-deleted media and posts follow the workspace trash retention window. Post content that has already been published remains on the platforms under those platforms' policies.
Your choices
Customers can disconnect social profiles, revoke agent API keys, delete drafts, and request account erasure by contacting us.
Contact
Questions about this policy: johnsantry82@gmail.com
Changes
If this policy changes in a material way, the "Last updated" date above will be revised.