Legal

Privacy Policy

Last updated: 1 June 2026

Who we are

Sanctcast ("we", "us", "our") is a free social media scheduling and management platform built for churches. We are operated as a community-supported project. If you have questions about this policy, contact us at privacy@sanctcast.app.

What data we collect

Account data

When you sign up, we collect your name and email address. If you create a password account, your password is stored as a salted bcrypt hash - we never store or log the plain-text password. If you sign in with Google, we receive your name and email address from Google and store no password at all. If you enable two-factor authentication, your authenticator secret is stored encrypted with AES-256-GCM.

Church and team data

Church name, address, website, and team member details you enter in the Settings section. Team member email addresses are used only for internal team management and are not shared with third parties.

Social media tokens

When you connect a social media account (Facebook, Instagram, YouTube, TikTok, X/Twitter), we receive and store an OAuth access token. All tokens are encrypted at rest using AES-256-GCM encryption before being written to our database. Tokens are never accessible to other users, never logged, and never transmitted in any response to your browser.

Post content

Posts you create, schedule, and publish through Sanctcast - including text, images, and videos - are stored in our database to enable scheduling and team review workflows. Approved posts are transmitted to the relevant social media platform at publish time.

Usage data

We maintain an audit log of significant actions (post approvals, rejections, platform connections) for security and accountability purposes. Logs include the actor's user ID, role, action type, and IP address. Logs are retained for 12 months.

How we use your data

  • To authenticate you and manage your session
  • To enable scheduling and publishing posts to connected social media accounts
  • To support the team approval workflow (draft → review → publish)
  • To provide reach and engagement analytics
  • To send notifications about post approvals and rejections (if enabled)
  • To maintain security audit logs

We do not use your data for advertising. We do not sell your data to any third party. We do not train AI models on your church's content.

Third-party services

Sanctcast uses the following sub-processors:

ServicePurposeData shared
Neon (Postgres)DatabaseAll app data (tokens encrypted at rest)
Cloudflare R2Media file storageImages and videos you upload for posts
VercelHosting & CDNRequest logs, IP addresses
ResendTransactional emailEmail address, notification content
GoogleOptional "Sign in with Google"Email, name (only if you use it)
AnthropicAI post generation (optional)Post text you choose to generate
Meta (Facebook/Instagram)Publishing postsPost content, access token used server-side
Google (YouTube)Publishing videosVideo content, access token used server-side
TikTokPublishing short videosVideo content, access token used server-side
X Corp (Twitter)Publishing tweetsPost text, access token used server-side

Data retention

  • Account data: retained until you delete your account
  • Post content: retained until you delete individual posts or your account
  • Social media tokens: deleted immediately when you disconnect a platform or delete your account
  • Audit logs: retained for 12 months, then automatically deleted

Your rights (GDPR / UK GDPR)

If you are based in the UK or European Union, you have the following rights:

  • Access: request a copy of all data we hold about you
  • Correction: update inaccurate data
  • Deletion: request deletion of your account and all associated data
  • Portability: receive your data in a machine-readable format
  • Objection: object to processing for legitimate interests
  • Restriction: request that we restrict processing while a complaint is resolved

To exercise any of these rights, email privacy@sanctcast.app. We will respond within 30 days.

Cookies

We use the following cookies:

  • Authentication cookies (set by our sign-in system, NextAuth) - essential for maintaining your login session
  • OAuth / setup cookies - short-lived (10 minutes), used only during the social media connect flow and two-factor setup to prevent CSRF attacks

We do not use tracking, advertising, or analytics cookies.

Security

We take security seriously. Key measures include:

  • All social media access tokens and 2FA secrets encrypted with AES-256-GCM before database storage
  • Passwords stored only as salted bcrypt hashes
  • HTTPS enforced on all connections (via Vercel)
  • Database reachable only from our servers - never from the browser
  • OAuth tokens never returned to the browser - only used server-side at publish time
  • Optional multi-factor authentication (authenticator app)

Changes to this policy

We may update this policy as the product evolves. We will notify you of material changes by email and by posting a notice in the app at least 14 days before they take effect. The date at the top of this page always shows the most recent version.

Contact

Questions or complaints: privacy@sanctcast.app

If you are unhappy with our response, you may contact the Information Commissioner's Office (ICO) in the UK.