Reachly Privacy Policy
Last updated: 21 July 2026
We collect only what you give us and what we need to run Reachly. Your platform tokens live in an encrypted vault, we never sell your data, and nothing is posted without your approval.
1. Who we are
Reachly is a product of Devitify SAS, a company based in France. This policy explains how we handle personal data when you use the Reachly website and app, create an account, or connect your social platforms.
2. Data we collect
- Account details: your name, email address, and password (stored hashed) — or the identity returned by your sign-in provider.
- Content you create: prompts, recordings, uploads, generated videos, captions, and scheduled posts.
- Platform connections: OAuth access tokens for the social accounts you choose to connect, stored encrypted in a secure vault.
- Billing data: handled by our payment processor (Stripe). We never see or store your full card number.
- Basic technical logs needed to operate the service and prevent abuse.
3. How we use your data
- To generate content, schedule posts, and publish to the platforms you connect — only what you approve.
- To provide Radar matching, analytics, and the features included in your plan.
- To operate billing, support, security, and abuse prevention.
4. Legal basis (GDPR)
We process your data to perform our contract with you (providing Reachly), on the basis of your consent (for connecting platforms and publishing on your behalf), and on our legitimate interest in keeping the service secure.
5. Your platform tokens
When you connect a social account, we store its OAuth token in an encrypted vault and use it only to perform actions you approve — such as publishing a scheduled post or reading the metrics shown in your analytics. You can disconnect any platform at any time, which revokes our access.
6. Data retention
We keep your account and content for as long as your account is active. If you delete your account, we delete or anonymise your personal data, except where we must retain records to meet legal, tax, or security obligations.
7. Sharing and sub-processors
We share data only with the service providers needed to run Reachly — for example hosting, our payment processor, and the social platforms you explicitly connect. They process data under agreements consistent with the GDPR and only on our instructions. We never share your data with third parties for their own marketing.
8. Your rights
Under the GDPR you can access, correct, export, or delete your personal data, and object to or restrict certain processing. You can exercise most of these directly in your account settings, or by contacting us.
9. Cookies
We use only essential cookies required to sign you in and keep the app working (such as your session and theme preference). We do not use advertising or third-party tracking cookies.
10. Contact
For any privacy question or to exercise your rights, contact us at info@devitify.fr.
Reachly is a Devitify product. See also our Terms of Service.