Privacy Policy
Handle My Socials ("we", "us") is a social media publishing service operated by How Minds Work. This policy explains what information we collect when you visit https://handlemysocials.howmindswork.org or connect a Facebook Page or Instagram account to Handle My Socials, how we use it, and the choices you have. You can reach us at hello@howmindswork.org.
1. Information we collect
Information you give us
Your name, business name, email address and anything you write to us when you request a trial or contact us, plus the content (text, photos, videos) you or we prepare for publishing.
Information from Facebook when you log in
If you choose "Continue with Facebook", Facebook sends the connect tool, with your permission: your name, the list of Pages you manage (with their names and pictures), and an access token for the Page you choose. If you also grant Instagram permissions, we receive the identifier, username and basic profile details of the Instagram professional account linked to that Page.
Information from your Page and Instagram account
Basic details of the Page and Instagram account you connect (name, identifier, picture, follower counts), the posts, comments and messages we read or send there on your instruction, and the performance information Facebook and Instagram provide (for example reactions, comment counts, reach and follower numbers).
Technical information
The connect page loads Facebook's JavaScript SDK from Meta. When you open that page, Meta receives standard request data (such as your IP address and browser type) and may set or read its own cookies, under Meta's own privacy policy. The rest of the site does not load anything from Meta. Our hosting provider (Cloudflare) processes standard request data such as IP address and browser type to deliver and protect the website. We do not run advertising trackers on this site.
2. How we use it
- To publish posts and photos to the Page and Instagram account you connected, at the times agreed with you.
- To read and reply to comments and Messenger or Instagram Direct messages on your behalf, when you ask us to.
- To show you what was published, its reactions and comments, and your follower and reach numbers.
- To respond to your messages and run your free trial or subscription.
- To keep the service secure and to meet legal obligations.
We do not sell your information. We do not use it for advertising, and we do not use data from one client's Page to serve another client.
3. Data from Facebook and Instagram
We request only the permissions needed for the features described on our website and demonstrated on our connect page:
pages_show_list: Shows the Pages you manage so you can choose one.pages_read_engagement: Reads your Page's posts and their reaction and comment counts.pages_read_user_content: Reads the comments on your Page's posts so you can reply to them.pages_manage_posts: Publishes the posts you approve to your Facebook Page.pages_manage_engagement: Publishes replies to comments on your Page's posts.pages_manage_metadata: Turns on the message and comment alerts your Page sends this app.pages_messaging: Reads and replies to Messenger conversations with your Page.read_insights: Reads engagement and follower numbers for your Page and Instagram account.instagram_basic: Identifies the Instagram professional account linked to your Page.instagram_content_publish: Publishes approved photos to that Instagram account.instagram_manage_comments: Reads and replies to comments on your Instagram posts.instagram_manage_messages: Reads and replies to Instagram Direct messages.instagram_manage_insights: Reads reach and follower numbers for your Instagram account.
We use data received through these permissions only to provide the publishing, messaging and reporting service to the person who granted access. We handle Platform Data in line with the Meta Platform Terms and Developer Policies.
The connect tool on our site works in your browser: the access token for your chosen Page is held in that browser tab while you use the tool and is not written to our servers. If you enroll in managed publishing (where we post on your behalf on a schedule), we additionally store the connection details described in section 5 so that scheduled posts can go out while you are not logged in.
4. Sharing
We share information only with: (a) Meta, when you open the connect page, when we publish, message or read performance data through Meta's official APIs; (b) service providers that host or operate our service on our instructions, such as Cloudflare for hosting; and (c) authorities if required by law. We do not sell or rent personal information.
5. Storage and retention
For clients in managed publishing we store: the Page and Instagram account identifiers, the access token that lets us publish and message, the content we published, and its performance figures. Tokens are stored encrypted and are deleted when you disconnect Handle My Socials or ask us to delete your data. We delete the rest of your account data within 30 days of a deletion request, except records we must keep by law.
Enquiry emails are kept for as long as needed to respond and to keep a record of the relationship.
6. Your choices and deletion
- Remove our access: on Facebook go to Settings, then Business Integrations, find Handle My Socials and remove it. Or press Disconnect on our connect page.
- Delete your data: follow the steps on our data deletion page, or email hello@howmindswork.org.
- Access or correct your data: email us and we will respond within 30 days.
Depending on where you live you may have further rights, such as objecting to or restricting processing, or complaining to your local data protection authority.
7. Children
Handle My Socials is a business service and is not directed to anyone under 18. We do not knowingly collect information from children.
8. Changes and contact
If we change this policy we will update the date above and, for material changes, tell connected clients by email. Questions: hello@howmindswork.org.