Giraldo Agency
Privacy PolicyTerms of ServiceData DeletionBack to home
/ Last updated: September 23, 2026

Privacy Policy

Giraldo Agency ("we", "us") provides marketing services, including the Client Portal (portal.giraldoagency.com), where our clients upload content for review, approval, and publishing to their social accounts, including Instagram. This policy explains what data we collect, how we use it, and how you can request its deletion.

1. Information We Collect

We collect the following information depending on how you use our services:

  • Account data: name, email address, and role within the Client Portal.
  • Client content: images, videos, captions, and metadata you upload for review and publishing.
  • Instagram/Meta data: when you connect your professional Instagram account, we receive your Instagram user ID, username, public profile photo, and an access token Meta issues so we can publish on your behalf.
  • Technical logs: IP address, browser type, and timestamps, used only for security and debugging.

2. How We Use Your Information

We use the data above solely to operate the service you signed up for:

  • Displaying your content in the Client Portal's review and approval workflow.
  • Publishing approved content to your Instagram account through Meta's official Graph API, only when you've authorized it by connecting your account.
  • Sending you email notifications about your content's status (sent for review, approved, published).
  • Keeping the platform secure and preventing unauthorized access.

3. Meta Platform Data

Your Instagram access token is stored encrypted and is only used by our automated systems to publish content you explicitly approved. We never sell, rent, or share this data with third parties outside Meta. We do not use your Instagram data for advertising, and we never use it beyond the purpose of publishing your approved content.

You can revoke our app's access to your Instagram account at any time from your Meta/Instagram account settings ("Apps and Websites"). Revoking access immediately invalidates the token.

4. Where Data Is Stored

Data is stored in Supabase (a hosted cloud database with encryption at rest and in transit), with role-restricted access limited to the Giraldo Agency staff who manage your account.

5. Data Retention

We keep your content and account data while you have an active relationship with Giraldo Agency. If you request deletion of your data (see section 7), we delete it within 30 days, unless the law requires us to keep it longer.

6. Your Rights

You can request access to, correction of, or deletion of your personal data at any time by writing to support@giraldoagency.com.

7. How to Delete Your Data

You have two ways to delete your data, and you can use either or both:

  • Revoke Instagram access: from Instagram or Facebook, go to Settings → Apps and Websites, and remove "Giraldo Agency" access. This invalidates the token immediately.
  • Request full account and content deletion: email us at support@giraldoagency.com. See the full process on our Data Deletion Instructions page.

8. Children

Our services are directed at businesses, and we do not knowingly collect data from anyone under 18.

9. Changes to This Policy

We may update this policy from time to time. We will post the last-updated date at the top of this page.

10. Contact

For any privacy questions, write to us at support@giraldoagency.com.

Giraldo Agency
© 2026 Giraldo AgencyPrivacy Policy · Terms of Service · Data Deletion