Privacy Policy

日本語

Last updated: August 5, 2026

1. Operator

This service, "Posti" (hereinafter "the Service"), is provided by REALMS Inc. (hereinafter "we", "us", or "our").

2. Information We Collect

In providing the Service, we collect the following information.

  • Account information (email address, hashed password)
  • Authentication tokens and account identifiers of connected SNS accounts (tokens are stored in encrypted form)
  • Content you enter or generate, such as prompts, generated videos and images, and captions
  • Service usage logs (posting history, operation history, access logs)

3. Purposes of Use

  • Generating videos and images, and executing posts to connected SNS platforms
  • Providing, maintaining, and improving the Service, and preventing unauthorized use
  • Responding to inquiries from customers

4. Third-Party Provision and External Services

To the extent necessary to provide its features, the Service transmits information to the following external services.

  • External AI generation services for content generation (prompts, etc.)
  • The SNS platforms where content is posted (TikTok / YouTube / Instagram / Threads / X / Pinterest, etc.)
  • Cloud storage for retaining generated content

Except where required by law, we do not provide personal information to third parties other than those listed above.

5. Cookies, Similar Technologies, and Information on Your Device

The Service may store, access, or recognize cookies and other similar technologies (such as local storage) on your device (browser) in order to maintain your login session and to understand and improve usage. Specifically, we use session cookies to keep you logged in, as well as Google Analytics cookies for access analytics. Through these, we or third parties may directly or indirectly store, access, or collect information on your device or browser. You can disable cookies in your browser settings, but doing so may prevent some features of the Service from working.

6. Handling of SNS Connection Data

SNS connections are made based on your explicit authorization (OAuth), and we never obtain your SNS passwords. You can revoke a connection at any time from the Service's settings screen or from the settings of each SNS. Revoked tokens are deleted promptly.

7. Retention Period

Generated content is retained for a certain period after posting (30 days or longer, depending on your plan) and is then automatically deleted. Account information is deleted within a reasonable period after you close your account.

8. Security Measures

Sensitive information such as authentication tokens is stored in encrypted form, and communications are protected by TLS.

9. Use of YouTube API Services

The Service uses "YouTube API Services" to provide features such as uploading your videos to YouTube. When you use the YouTube connection, you are deemed to have agreed to the YouTube Terms of Service. For how Google handles information obtained through the YouTube API Services, please review the Google Privacy Policy.

  • Google / YouTube user data we obtain: The identifier and basic information of the YouTube channel that you have explicitly authorized via OAuth, and the permission to upload videos. The Service uses the API only to the minimum extent necessary to execute posts.
  • Purpose of use: Used solely to upload videos to YouTube based on your instructions (including scheduled posts) and to display their progress and results.
  • Storage and sharing: Authentication tokens are stored in encrypted form and are not used for any purpose other than executing posts. We do not sell or transfer Google user data to third parties, nor do we use it for advertising purposes. Human review of the data is not performed except with your explicit consent, for security or legal compliance purposes, or where the data has been aggregated or anonymized.
  • Revoking access: You can revoke the connection at any time from the Service's settings screen, and you can also revoke the Service's access from your Google Account security settings (apps with access to your account).
  • Data deletion: When you disconnect or close your account, the relevant Google user data we hold (such as authentication tokens) is deleted promptly.

10. Use of TikTok API Services

The Service uses TikTok's APIs (Login Kit / Content Posting API) to provide features for posting and uploading your videos to TikTok. When you use the TikTok connection, you are deemed to have agreed to the TikTok Terms of Service. For how TikTok handles information, please review the TikTok Privacy Policy.

  • TikTok user data we obtain: The basic profile information of the TikTok account you have explicitly authorized via OAuth (such as open_id, display name, and avatar image), and the permission to upload and post videos. The Service uses the API only to the minimum extent necessary to execute posts.
  • Purpose of use: Used solely to upload and post videos to TikTok based on your instructions (including scheduled posts), to display their progress and results, and to display the account being posted to for confirmation.
  • Storage and sharing: Authentication tokens are stored in encrypted form and are not used for any purpose other than executing posts. We do not sell or transfer TikTok user data to third parties, nor do we use it for advertising purposes.
  • Revoking access: You can revoke the connection at any time from the Service's settings screen, and you can also revoke the Service's access from the TikTok app settings (management of connected apps).
  • Data deletion: When you disconnect or close your account, the relevant TikTok user data we hold (such as authentication tokens) is deleted promptly.

12. Use of Pinterest API Services

The Service uses Pinterest's API (v5) to provide features such as posting your content to Pinterest (creating Pins) and managing your boards. When you use the Pinterest connection, you are deemed to have agreed to the Pinterest Terms of Service. For how Pinterest handles information, please review the Pinterest Privacy Policy.

  • Pinterest user data we obtain: The basic information such as the username of your own Pinterest account that you have explicitly authorized via OAuth, and the permission to view, create, and manage your own boards and Pins. The Service uses the API only to the minimum extent necessary to execute posting and board management.
  • Purpose of use: Used solely to create and post Pins to Pinterest based on your instructions (including scheduled posts), to manage your own boards, to view analytics (statistics) for your own account, and to display their progress and results. We create Pins, manage boards, and view self-analytics only for the Pinterest account you have connected, and only with your explicit consent.
  • Storage and sharing: Authentication tokens are stored in encrypted form and are not used for any purpose other than executing posting and board management. We do not sell or transfer Pinterest user data to third parties, nor do we use it for advertising purposes. The Service handles only your own data that you have authorized, and never obtains, uses, or sells the private data of other users. You may disconnect at any time.
  • Revoking access: You can revoke the connection at any time from the Service's settings screen, and you can also revoke the Service's access from your Pinterest settings (management of connected apps).
  • Data deletion: When you disconnect or close your account, the relevant Pinterest user data we hold (such as authentication tokens) is deleted promptly.

11. Contact

For inquiries regarding the handling of personal information, please contact us at info@realms.co.jp.