Privacy Policy
At Liola we care about protecting your personal data. This policy explains what we collect, why and how we process it, and your rights under KVKK and GDPR.
This document is a template and will be reviewed by legal counsel before the platform opens publicly.
1. Data controller
Your data is processed by Liola. For privacy requests, reach us at contact@liola.io.
2. Data we collect
Account details (email, name, organization), session data, the content and plans you create, metadata for the social accounts you connect, and security/audit logs.
3. Purposes of processing
We process your data to provide the service, verify your identity, manage access approval, ensure security, and improve the product.
4. Legal basis
Processing relies on performance of a contract, your explicit consent, and legitimate interest (KVKK art.5, GDPR art.6).
5. Sharing and processors
We use Vercel for hosting, Neon for the database, OpenAI for AI features, and Sentry for error monitoring. Social account data is accessed only through the Meta/TikTok APIs you connect. We never sell your data.
6. Retention
We retain your data while your account is active. When you delete your account, all personal data is permanently removed.
7. Exercising your rights
From the Account screen you can download your data (portability) or permanently delete your account (right to erasure). Contact us for access and rectification.
8. Security
Passwords are hashed with PBKDF2, data in transit is encrypted with TLS, records are isolated per user identity, and platform keys are never sent to the client.
9. Contact
Send questions to contact@liola.io.