Synfluencer Engage · Legal
Last updated April 29, 2026
This policy is specific to Synfluencer Engage, the user-controlled AI engagement assistant for X. It supplements the main Synfluencer Privacy Policy and stands on its own where Engage-specific behavior is concerned.
Synfluencer Engage is a user-controlled AI engagement assistant for X. It helps creators, founders, brands, and social media teams discover relevant public conversations, review post context, generate draft replies, and manage approved engagement actions from one dashboard. This Privacy Policy explains what information Engage collects, how it is used, and the controls available to you. Engage is not an autonomous bot — every write action requires explicit user review and approval before it is sent through the official X API.
To operate Engage, we collect the following categories of information:
Engage connects to your X account exclusively through the official X OAuth flow. You authorize Engage from X's authorization screen and can review the granted scopes there. Engage never sees your X password. The OAuth tokens we receive are used only to perform the actions you have configured and approved inside the Engage dashboard. You can revoke Engage's access at any time from your X account settings or by disconnecting from inside the Engage dashboard.
Synfluencer Engage uses X data only to support the authenticated user's engagement workflow. Specifically, X data may be used to:
We do not use X data for advertising, do not sell X data to third parties, and do not use X data to train AI models.
Engage uses AI for analysis, summarization, scoring, and draft generation only. AI-generated content — including draft replies, quote posts, and summaries — is presented to you for review, editing, and approval before publishing. AI providers may temporarily process the inputs needed to generate a draft, but your data is not stored by those providers beyond what is needed to process each request, and is not used to train their models.
The app does not publish engagement actions unless the user approves them. Every reply, like, repost, quote post, and new post requires explicit review and approval inside the Engage dashboard. There is no autonomous-publishing mode. Once you approve an action, Engage uses the official X API to publish it on your behalf and records the result in your audit log.
Account data, configuration data, drafts, and audit logs are stored on our infrastructure with industry-standard protections, including encryption in transit and at rest. Access to production systems is restricted to authorized personnel and is monitored. We periodically review our security posture and incident-response procedures.
OAuth tokens are stored securely. Tokens are encrypted at rest, scoped to the minimum permissions required to operate Engage, and used solely to perform actions you have explicitly approved. Tokens are deleted when you disconnect your X account from Engage or when you delete your Synfluencer account. We do not share OAuth tokens with third parties.
Approved action logs may be stored for transparency, troubleshooting, analytics, and abuse prevention. Each entry records what was approved, who approved it, when it was published, and the result returned by the X API. Logs help you and us verify that Engage only published what you approved, and they support investigations of suspected misuse.
We do not sell your personal data and we do not share X data with third parties except where strictly required to operate Engage — for example, transmitting an approved reply to the official X API, or processing a draft through an AI inference provider. Each provider operates under its own privacy policy, and we limit shared data to what is operationally necessary. We may also disclose information when required by law or to protect the rights, safety, or property of users or the public.
You can disconnect your X account from Engage at any time, either from the Engage dashboard or from your X account settings. Disconnecting immediately invalidates the OAuth tokens we hold for that connection and stops any further actions on your behalf. You may also export your configuration, request access to your data, or request deletion of your Synfluencer account by contacting us.
We retain account, configuration, draft, and audit-log data for as long as your account is active, or as needed to provide the service, comply with legal obligations, resolve disputes, and enforce our agreements. Upon account deletion, personal data is removed within 30 days, except where retention is required by law. Audit logs of approved actions may be retained longer for abuse-prevention and compliance purposes.
Questions about this policy or how Engage handles your data? Contact us and we will respond within two business days.
See also: Engage overview · Engage Terms of Service · Synfluencer Privacy Policy