Privacy Policy
Effective August 24, 2026
Skrivox ("Skrivox," "we," "us") builds an AI marketing agent that drafts content grounded in your workspace, checks its own work, and publishes only what you approve. This policy explains what information we collect to run that product, how we use it, who we share it with, and the choices you have. If something here is unclear, email us at hello@skrivox.com and we'll answer directly.
Information we collect
Account information
Your email address and a hashed password (we never store your password in plain text). If you're invited to a workspace, we store your role (owner or member) and who invited you.
Workspace content
The business-context files, brand guidelines, chat conversations, drafts, and generated images you create or upload in your workspace. This is the content the agent grounds its work in, and it's the core of what the product stores on your behalf.
Publishing and activity records
A record of drafts you approve or reject, what was published, when, and to which platform, kept as an audit trail so you can see exactly what went out and why. We also log failed login attempts against your account, solely to detect and slow down credential-stuffing attempts.
Connected platform data
If you connect a social or ad platform (for example Facebook, Instagram, LinkedIn, TikTok, YouTube, Meta Ads, Google Ads, or TikTok Ads), we store the access credentials needed to publish on your behalf and basic account metadata (such as your display name and follower count) that the agent uses to decide what to publish and where. We only use these credentials to take the actions you've approved. We don't browse or scrape your connected accounts for anything else.
Website and app analytics
We use Google Analytics on skrivox.com and inside the logged-in Skrivox app to understand how the product is used. Google Analytics sets cookies on your browser. We do not send draft content, chat messages, or other workspace text to Google Analytics — only standard page and event measurements (for example, which in-app screen you opened). Conversation IDs in URLs are fine; we strip query parameters such as signup prefill values from the page location we send.
You can opt out by adjusting your browser's cookie settings or by installing Google's Analytics Opt-out Browser Add-on (https://tools.google.com/dlpage/gaoptout).
How we use this information
- To generate drafts grounded in your real workspace content and run the self-critique pass before anything reaches you.
- To run the approval workflow you control: nothing publishes without it passing through that gate.
- To run scheduled jobs (daily drafts, weekly strategy) you've enabled, and to publish content you've approved to the platforms you've connected.
- To secure your account, including detecting suspicious login activity.
- To provide support when you contact us.
We do not sell your personal information or your workspace content, to anyone, ever.
Who we share it with
We use a small set of infrastructure and processing providers to run Skrivox. Each only receives what it needs to do its job:
- Krater: processes the content of your prompts and workspace files to generate drafts, critiques, and images.
- Zernio: handles publishing to the social and ad platforms you connect, and stores the connection credentials needed to do so.
- Google Cloud Platform: hosts the application and stores generated images.
- Our database and infrastructure providers, who store workspace data on our behalf under their own security commitments.
Lead Enrichment (optional, off by default)
If the workspace owner turns on Lead Enrichment in Governance, People Data Labs becomes a sub-processor for that feature only. When it's on and you mention a person in chat, we send People Data Labs the name, company, or domain you provided so it can look up that person's public professional information: job title, employer, work history, education, and LinkedIn profile. People Data Labs returns only publicly available professional data; for contact fields we receive just a yes/no flag for whether a work email or phone number is on file, never the address or number itself. Results appear in your chat like any other response, so they're kept for as long as your workspace content is (see "How long we keep it" below) — including inside any lead list file you save them to. We separately cache the raw lookup for up to 30 days so a repeat query on the same person isn't re-charged. Turn Lead Enrichment off at any time from Governance to stop all future lookups immediately.
We don't share your data with anyone else, except where required by law or to protect the rights, safety, and security of Skrivox or our users.
How long we keep it
We retain workspace content, drafts, and publish records while your subscription is active, so the agent has the history it needs to stay grounded. When your subscription ends (it's canceled, expires, or stays unpaid), we delete your workspace's files, chats, drafts, generated images, videos, PDFs and presentations, brand assets, and connected-account credentials 30 days later. We email the account owner at least 7 days before anything is deleted, and reactivating your plan before then keeps everything. Trial chats started without an account are deleted 30 days after they begin unless you sign up. After deletion we keep only billing and credit records, publish audit logs and the publish records they refer to, and your login account, as required for accounting, legal, and security reasons. Images uploaded temporarily to a connected platform for publishing expire after 7 days if they're never referenced by a published post. If you close your account, contact us and we'll delete your workspace data within a reasonable period, with the same exceptions.
Your choices
- Disconnect any connected platform at any time from your integrations settings. This immediately stops the agent from publishing there.
- Pause all publishing at any time from Governance, without disconnecting anything.
- Request a copy or deletion of your data by emailing hello@skrivox.com.
- Delete individual drafts or files directly from your workspace at any time.
Security
Passwords are hashed, never stored or logged in plain text. Sessions use signed, expiring tokens. We track failed login attempts to slow down brute-force attempts against your account. No system is perfectly secure, but we treat your workspace content and connected-platform credentials as sensitive by default.
Children's privacy
Skrivox is a business tool and isn't directed at children. We don't knowingly collect information from anyone under 16.
International users
Skrivox's infrastructure runs in the United States. If you use Skrivox from outside the United States, your information will be transferred to and processed there.
Changes to this policy
If we make a material change to how we handle your data, we'll update the effective date above and, where appropriate, notify you directly.
Contact
Questions about this policy or your data: email hello@skrivox.com.