Privacy Policy
Last updated: May 16, 2026
1. Introduction
This Privacy Policy explains how Pinapex ("Pinapex," "we," "us") collects, uses, stores, and shares information when you use our website at pinapex.com and the Pinapex application (together, the "Service"). The Service helps creators and brands plan, schedule, and analyze content on Pinterest through Pinterest's official API.
By using the Service you agree to the practices described here. If you do not agree, please do not use the Service.
2. Information we collect
2.1 Information you provide
When you create a Pinapex account we collect your email address, the password hash we generate, and any profile details you choose to add. When you connect a Pinterest account we receive an OAuth access token and refresh token that let us call the Pinterest API on your behalf within the scopes you approved.
2.2 Information from Pinterest
With your authorization we read the following from your Pinterest accounts via the Pinterest API: account profile (user id, username, display name), boards, pins you publish through Pinapex, and aggregate analytics such as impressions, saves, and outbound clicks. We do not access private messages, contacts, or unrelated account data.
2.3 Content you upload
Images, videos, captions, and other content you upload to Pinapex are stored so that we can publish them to Pinterest on the schedule you set.
2.4 Technical data
We collect standard server logs (IP address, user agent, request paths, timestamps), error traces, and basic product analytics so we can keep the Service running and improve it.
3. How we use your information
- To operate the Service — authenticating you, publishing pins, and showing analytics.
- To communicate with you about account, billing, security, and product updates.
- To detect, prevent, and respond to abuse, security incidents, and violations of our Terms.
- To comply with legal obligations and enforce our agreements.
We do not use Pinterest data to build profiles for advertising, and we do not sell your data.
4. How Pinterest data is handled
Pinapex uses the Pinterest API in accordance with Pinterest's Developer Guidelines and Platform Policies. We only request the OAuth scopes necessary for the features you use. You may revoke Pinapex's access at any time from your Pinterest account settings or from within Pinapex; we will stop calling the Pinterest API for that account immediately.
5. Sharing of information
We share information only with service providers that help us run the Service (for example, cloud hosting, database, object storage, and error monitoring providers). These providers process data on our behalf under written contracts and may not use it for other purposes.
We may disclose information if required by law, regulation, legal process, or enforceable governmental request, and to defend the rights, safety, and property of Pinapex and our users.
6. Data retention and deletion
We retain your data for as long as your account is active. When you delete a connected Pinterest account inside Pinapex, we revoke the stored tokens and delete the cached profile, boards, and analytics associated with that account within 30 days. When you delete your Pinapex account, we delete or anonymize your personal data within 30 days, except where retention is required by law.
7. Security
We encrypt data in transit (HTTPS/TLS) and at rest. OAuth tokens are stored encrypted in our database. Access to production systems is limited to authorized personnel and protected by multi-factor authentication. No system is perfectly secure, but we work to apply industry-standard safeguards.
8. Your rights
Depending on where you live, you may have rights to access, correct, export, or delete personal data we hold about you, and to object to or restrict certain processing. To exercise these rights, email hello@pinapex.com. We respond within 30 days.
9. International users
Pinapex is operated from servers that may be located outside your country. By using the Service you consent to the transfer of your information to jurisdictions that may have different data protection laws than your own.
10. Children
The Service is not intended for, and we do not knowingly collect data from, children under 13. If you believe a child has provided us data, please contact us and we will delete it.
11. Changes to this policy
We may update this policy from time to time. Material changes will be announced on this page and, where appropriate, by email. The "Last updated" date above reflects the latest revision.
12. Contact
Questions or concerns? Email hello@pinapex.com.