built with care
Trust & Security
Your data, your content, your control. Here's how we protect what matters to you.
What Data We Collect
- Website pages: We crawl publicly accessible pages from websites you connect to extract content, images, and product information.
- Images: We access and process images from your website to use in social media posts.
- Brand settings: Your brand voice preferences, posting schedules, and content guidelines are stored securely.
- Social media connections: OAuth tokens for platforms you connect (Instagram, Facebook, LinkedIn, etc.) are encrypted and stored securely.
What We Don't Do
- No training on customer content: We do not use your website content, posts, or data to train our AI models. Your content remains yours.
- No reselling data: We never sell, rent, or share your data with third parties for marketing or advertising purposes.
- No unauthorized access: Only you can access your account and content.
- No scraping of private data: We only access publicly available content from websites you explicitly connect.
Retention Controls
- Drafts: Draft posts are stored until you publish, delete, or your account is closed. You can delete drafts at any time.
- Source content: Website content is cached to improve performance and refreshed periodically. You can trigger a refresh at any time.
- Published posts: Records of published posts are retained for analytics and your posting history. You can request deletion of your account data at any time.
- Account deletion: When you delete your account, all associated data is permanently removed immediately (and within 30 days at most), except where required by law.
Publishing Safeguards
- Approval mode: By default, all posts require your approval before publishing. You can enable autopilot mode if you prefer.
- Full editing control: Every post can be edited before publishing: captions, hashtags, images, scheduling, and more.
- Content filters: You can define words and phrases for Moosen to avoid, so posts stay on-brand.
- Schedule control: You control when posts go live. Review and adjust scheduling at any time.
Security
At Moosen, we take the security of your data seriously. We implement comprehensive security measures to protect your information and ensure the integrity of Moosen, our platform.
1
Data Protection
- End-to-end encryption for data in transit using TLS 1.3
- Encryption at rest for all stored data using industry-standard AES-256 encryption
- Regular security audits and penetration testing
- Secure access controls and authentication mechanisms
2
Infrastructure Security
- Secure cloud hosting with enterprise-grade data centers
- Regular automated backups with encrypted storage
- Distributed denial-of-service (DDoS) protection
- Network segregation and firewall protection
- 24/7 monitoring and intrusion detection systems
3
Access Control
- Role-based access control (RBAC) for internal systems
- Principle of least privilege for all user and system access
- Regular access reviews and audit trails
- Secure authentication protocols
4
Application Security
- Secure coding practices and code reviews
- Regular dependency updates and vulnerability scanning
- Input validation and output encoding
- Protection against common vulnerabilities (OWASP Top 10)
- Regular security testing and bug bounty program
5
Third-Party Security
- OAuth 2.0 for secure authentication with social media platforms
- Minimal permission requests (only what's necessary)
- Secure token storage and handling
- Regular review of third-party integrations
6
Incident Response
- Dedicated incident response team
- Rapid detection and containment procedures
- Transparent communication with affected users
- Post-incident analysis and security improvements
- Compliance with breach notification requirements
Reporting Security Issues
If you discover a security vulnerability, please report it to us:
- Email: hello@moosen.app
- We ask that you do not publicly disclose the issue until we've addressed it
- We're committed to acknowledging reports within 48 hours
- We may offer recognition for responsible disclosure
7
Compliance
- GDPR (General Data Protection Regulation)
- CCPA (California Consumer Privacy Act)
- SOC 2 Type II compliance (in progress)
- Industry best practices and frameworks
8
Employee Security
- Regular security awareness training
- Background checks for employees with data access
- Confidentiality agreements
- Secure device and credential management
Questions About Security?
We're here to help. Reach out with any security or privacy concerns.
hello@moosen.app