Privacy

Privacy Policy

Last updated: June 2, 2026 · Effective: June 2, 2026

This Privacy Policy describes how Briefa, operated by François-Xavier Renaux (an individual) ("Briefa", "we", "us"), collects, uses, stores and protects the personal data of users of the briefa.io website and the Briefa platform.

1. Who we are

Briefa is operated by François-Xavier Renaux as an individual. We operate at a small scale and do not maintain a separate company entity or data protection officer. We do, however, keep a privacy contact available at all times: contact@briefa.io.

2. What data we collect

2.1. Data you provide

2.2. Data from your connected accounts (Instagram)

When you connect your account via Meta OAuth, we access — only with your explicit, revocable authorization — public and insights metrics and content from the Instagram Business/Creator accounts you choose to connect: reach, engagement, saves, shares statistics and post metadata. We never ask for or store your Instagram or Meta password.

2.3. Data collected automatically

3. How we use your data

PurposeBasis
Manage the waitlist and announce the launchConsent / legitimate interest
Provide the service: generate reports, analyses and insightsPerformance of a contract
Create and manage your accountPerformance of a contract
Process paymentsPerformance of a contract / legal obligation
Send support and operational communicationsPerformance of a contract
Improve the product and securityLegitimate interest
Marketing communications (optional)Consent

4. What we do NOT do

5. Sharing with third parties

We share data only with processors that make the service possible, under contract and confidentiality obligations: hosting provider (Vercel Inc.), payment provider (when the service is paid), email and analytics providers, and the AI model providers used to generate the reports — always limiting the data to the minimum necessary.

6. International processing

Some processors may handle data in different countries. In those cases, we rely on those providers' appropriate safeguards to maintain an equivalent level of protection.

7. Retention and deletion

We keep data for as long as needed for the purposes above or as required by law. You can request deletion of your connected-account data and your account at any time — see section 9. After closure, data is deleted within 30 days, unless retention is legally required.

8. Cookies

We use essential cookies (functionality and security) and, with your consent, analytics cookies. You can manage your preferences in the cookie banner and your browser settings.

9. Your rights and data deletion

You can, at any time: ask whether we process your data; access, correct or delete it; and ask about how it is shared. To exercise these rights — or to request deletion of your data, including any data obtained through Meta OAuth — email contact@briefa.io. We will process deletion requests promptly, within 30 days. You can also revoke Briefa's access at any time from your Meta account settings.

10. Security

We use technical and organizational measures to protect data (encryption in transit, access control, revocable OAuth tokens). No method is 100% secure, but we work continuously to mitigate risks.

11. Changes

We may update this Policy. Material changes will be communicated by email or a notice on the platform.

← Back to home
Talk to us