PostPilot

Sub-processors & Data Processing

Last updated: June 2026

1. Overview

PostPilot.Help is operated by Smith Medical, P.C. ("we", "us", or "PostPilot"). To run our social media content management and scheduling platform, we rely on a small number of trusted third-party companies known as "sub-processors." A sub-processor is an external service that processes personal data on our behalf so that we can deliver core features such as storing your content, hosting our website, authenticating your account, processing payments, and generating AI-assisted post copy.

This page explains who those sub-processors are, what they do, and how we protect your information when we share it with them. It supplements our Privacy Policy, which describes the full scope of how we collect and use personal data.

2. Our Sub-processors

We engage the following sub-processors to operate PostPilot.Help. Each one is bound by contractual obligations to protect your data and to process it only as needed to provide their service to us:

  • Convex — backend database and serverless functions. Stores your account data, connected-account metadata, drafts, scheduled posts, and app content.
  • Vercel — web hosting and content delivery network (CDN). Serves the PostPilot web application and static assets globally.
  • Clerk — authentication and account management. Handles secure sign-in (including Google and Apple login), sessions, and identity verification.
  • Stripe — payment processing. Securely handles monthly subscriptions and one-time packs. We never store full card numbers ourselves; Stripe does.
  • Anthropic — AI content generation via the Claude model. Processes the prompts and content you submit to generate or refine post copy and ideas.
  • Sentry — application error monitoring, performance tracing, and session replay. Helps us detect, diagnose, and fix bugs and crashes. Replay is privacy-hardened: all text and form inputs are masked and all media is blocked, so your draft post content is never recorded, and we do not record ordinary sessions — a small sample of sessions is captured only when an error occurs.
  • Stock-image providers (Openverse, Wikimedia Commons, Pexels, Pixabay) — optional free stock-image search. Used only when you choose to search for stock imagery; your search terms are sent to the provider you pick to return results.

We only share the minimum personal data each sub-processor needs to perform its function, and we do not sell your personal data to anyone.

3. Connected Social Platforms

PostPilot lets you connect your own social media accounts and publish or schedule content to them. When you choose to publish a post, the content (and any media you attach) is sent to the platform you selected so it can be posted under your account. These platforms act as independent recipients of the content you direct us to share:

Mainstream platforms (connected via official OAuth):

  • Meta — Facebook, Instagram, and Threads
  • X (formerly Twitter)
  • Google — YouTube
  • LinkedIn
  • TikTok
  • Reddit
  • Pinterest
  • Tumblr

Open, federated, and self-hosted platforms (connected directly with your credentials or an access token you provide):

  • Bluesky
  • Mastodon (and Mastodon-compatible servers such as Misskey)
  • Nostr
  • Lemmy
  • Discord
  • Telegram
  • Slack
  • Matrix
  • LINE
  • Dev.to
  • Micro.blog
  • WordPress
  • Ghost
  • WriteFreely

We only transmit content to a platform when you connect that account and instruct us to publish or schedule a post. For self-hosted platforms, the content is sent to the server address you specify. Each platform's own terms and privacy policy govern how it handles the content once it is published.

4. International Data Transfers

Some of our sub-processors operate data centers and personnel in the United States and other countries. As a result, your personal data may be transferred to, stored in, or processed in jurisdictions outside your own. Where such transfers involve personal data protected under laws like the EU/UK GDPR, we rely on appropriate safeguards — such as Standard Contractual Clauses or equivalent transfer mechanisms — to ensure your data continues to receive an adequate level of protection.

5. How We Vet Sub-processors

Before engaging any sub-processor, we review its security practices, privacy commitments, and data-protection terms. We require each sub-processor to commit to safeguards consistent with our own obligations to you, including confidentiality, data security, and using your data only for the purposes we authorize.

We periodically reassess our sub-processors and remove any that no longer meet our standards. We choose well-established providers with strong security track records.

6. Your Data Subject Rights

Depending on where you live, you may have rights to access, correct, export, or delete your personal data, and to object to or restrict certain processing. We honor these rights regardless of which sub-processor holds the relevant data. For full details on your rights and how to exercise them, please see our Privacy Policy.

7. Changes to This List

Our sub-processors may change over time as we add features, switch providers, or scale our service. We will keep this page up to date, and we will communicate material changes through reasonable means, such as updating the "Last updated" date above or notifying you within the app. We encourage you to review this page periodically.

8. Questions & Contact

If you have questions about our sub-processors or how we process your data, please contact us at smithappsupport@gmail.com. This is also the designated contact for copyright and other legal inquiries. Any disputes are governed by the jurisdiction set out in our Terms of Service.