PostSteward

PRIVACY

Data exists to route work, prove effects and let the owner control the workspace.

PostSteward stores the minimum product state needed to authenticate the owner, delegate agent authority, route reviewed social publishing and preserve evidence of what happened.

Information PostSteward handles

Credentials and browser storage

Provider credential material is encrypted server-side. PostSteward does not intentionally put provider access tokens, refresh tokens or agent bearer tokens into browser local storage. Owner sessions use secure HTTP-only cookies and CSRF protection for browser mutations.

Never send secrets as publishing content.

Do not place provider tokens, agent tokens, payment credentials or private source credentials in a campaign, prompt, repository document or support issue.

Export, retention and erasure

The owner Data surface supports workspace export before deletion, bounded retention archive/pruning and explicit workspace erasure. Exports exclude provider credentials and payment tokens. Some safety records, such as tombstones or duplicate/external-effect fences, may be deliberately retained where removing them could reactivate stale state or permit a duplicate external effect.

Provider-side authorisations can outlive PostSteward's local credential material until the owner or provider revokes them. Workspace deletion removes locally usable authority but cannot promise deletion of records independently retained by social, payment or source providers under their own policies.

Third-party services

PostSteward can interact with identity providers, social platforms, Stripe, GitHub and Cloudflare infrastructure. Those services process data under their own terms and policies. Provider API charges, access rules and retention are separate from PostSteward.

Questions or deletion requests

Use the in-product Data controls for export and workspace erasure. For product questions, use the support guidance. Include a bounded PostSteward reference ID when available, but never include secrets.