Privacy policy
1. Who we are
Social Jen is a product of LMC TECH LTD (company number 16195753), registered in England and Wales. We are the data controller for the personal data described in this policy.
You can reach us about anything in this policy at info@lmctech.co.uk.
2. What this policy covers
This policy covers Social Jen specifically: the public page at socialjen.lmctech.co.uk and the workspace at app.socialjen.lmctech.co.uk. It explains what the software holds, what happens when you connect a social account to it, and what we do and do not do with any of it.
Our company-wide policy, covering our other services and your full rights under UK GDPR, is at lmctech.co.uk/privacy.html. Where the two overlap, this page is the more specific one for Social Jen.
3. What Social Jen holds
| Waitlist signups | The email address you give on the public page, the date, and which form you used. Used only to invite you and to tell you launch news. No account is created and nothing else is collected by that page. |
|---|---|
| Content you provide | Campaign topics, notes and links you import, product photos and briefs, and video files you upload for publishing. |
| Generated content | Draft posts, captions, titles, hashtags, marketplace listings, schedules, and the scores the tool gives its own drafts. |
| Connected accounts | Account identifiers and access tokens for the platforms you connect, encrypted at rest. Detail in sections 5 and 6. |
| Publishing history | A record of what was published where and when, so you can see what went out. |
The public page at socialjen.lmctech.co.uk sets no cookies and uses no analytics or tracking. The only personal data it collects is the email address you choose to give the waitlist form. Cookies and other storage on your device are covered in section 8.
4. AI assistance
Social Jen drafts content using large language models. What gets sent to the model is what you provide for drafting: your campaign topic, notes or imported text, product briefs, and product photos where you ask for a photo to be analysed for a listing. By default we use Groq (a US provider running open Llama models) alongside our own self-hosted models. A workspace can also be configured to use OpenAI or Anthropic (both US providers) as its drafting model instead; in that case the same drafting content goes to the provider chosen for that workspace. All three are used under paid API terms which provide that your content is not used to train the provider's models.
Your account details, connected-account tokens, and waitlist email addresses are never sent to any AI provider. If we change providers, we will update this policy.
5. Connecting a social account
Social Jen can connect accounts on YouTube, TikTok, Facebook and Instagram (via Meta), LinkedIn, X, Threads, Reddit, Bluesky, and Etsy (for shop listings and order-number checks on digital deliveries). Connecting is always something you start.
5.1 What connecting means
You are taken to that platform's own login screen. We never see, receive, or store your password for any platform. The platform asks you to approve a specific list of permissions, and you can decline or cancel at any point.
5.2 What we receive
The pattern is the same for every platform: an account identifier, basic profile information so you can see which account you are about to post to, and access tokens scoped to the permissions shown on that platform's consent screen. We request only the permissions needed to publish content you have approved.
Across all platforms: we do not read your posts, followers, messages, analytics, or any other account data beyond what is listed here, and we do not have permission to.
5.3 What we do with it
Solely to show you which account content will go to, to publish content you have created and approved, and to keep the connection active so you do not have to reconnect repeatedly. We do not use it for advertising, we do not sell it, we do not train models on it, and we do not share it with third parties.
5.4 Where it is stored, and for how long
Account identifiers and tokens are stored in Social Jen's database on servers we operate in the United Kingdom, with access and refresh tokens encrypted at rest. They are deleted when you disconnect the account.
5.5 Content you publish
Content you choose to publish is sent directly to the platform's own API. Once published it is governed by that platform's terms and privacy policy, not ours. Publishing only ever happens as a result of an explicit action by you.
6. YouTube and Google user data
Social Jen uses YouTube API Services to upload videos to a YouTube channel you have connected. This section sets out exactly what that involves.
By using the YouTube features of Social Jen you are agreeing to the YouTube Terms of Service. Google's own handling of your data is described in the Google Privacy Policy.
6.1 What we access
When you connect a YouTube channel, Social Jen requests a single OAuth scope: https://www.googleapis.com/auth/youtube.upload. That scope permits uploading videos to your channel and nothing else. We do not request, and cannot obtain, access to your YouTube analytics, comments, subscribers, watch history, playlists, existing videos, or any other Google service.
From Google we receive an access token, a refresh token, and the channel identifier for the account you connected.
6.2 What we do with it
We use the tokens for one purpose: to upload a video file, title, description and tags that you have created and approved in Social Jen, to the channel you connected, at the time you scheduled. The refresh token keeps a scheduled upload working without you having to sign in to Google again for each one.
6.3 What we store, and where
Tokens and the channel identifier are stored encrypted at rest in Social Jen's database on servers we operate in the United Kingdom. Videos you upload are stored on our servers only for as long as it takes to deliver them to YouTube, plus the media library retention described in section 7.
6.4 What we do not do
We do not sell Google user data. We do not transfer it to third parties, other than to Google itself in order to perform the upload you asked for. We do not use it for advertising, and we do not use it to train any AI model, ours or anyone else's. No human at LMC Tech reads your Google user data except where you have specifically asked us to help with a support problem, or where we are required to by law.
Social Jen's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
6.5 Revoking our access
You can disconnect YouTube inside Social Jen at any time, which deletes the stored tokens and channel identifier.
You can also revoke our access directly with Google, independently of us, from the Google security settings page. Revoking there immediately stops Social Jen being able to upload anything.
To request deletion of Google user data we hold, or to ask any question about it, email info@lmctech.co.uk and we will action it within 30 days.
7. Other platforms in detail
7.1 TikTok
TikTok provides a user identifier (open_id) specific to our application and not usable to identify you on TikTok by anyone else, basic profile information such as display name and profile picture, and access and refresh tokens. The permissions requested are user.info.basic, video.publish and video.upload. Your use of TikTok through Social Jen is also subject to the TikTok Terms of Service and TikTok Privacy Policy. You can revoke access in TikTok under Settings and privacy, then Security and permissions, then Manage app permissions.
7.2 Facebook and Instagram (Meta)
Meta provides your user and Page identifiers, the details of the Pages and Instagram professional accounts you choose to connect, and Page access tokens. Permissions are limited to managing and publishing content on those Pages and accounts. We do not request access to your personal profile posts, friends, messages, or ad accounts. You can revoke access under Settings, then Apps and websites.
7.3 Bluesky
Bluesky uses an app password that you create in your own Bluesky settings, rather than an OAuth consent screen. It is stored encrypted like any other token, and you can revoke it in Bluesky at any time.
7.4 Etsy
Etsy provides your shop identifier, shop name, and access and refresh tokens scoped to reading and writing your own listings and reading your shop and receipts. We use receipt access for one purpose: checking a buyer-entered order number against your shop's receipts before releasing a digital download you sold. We do not read buyer names or addresses for any other purpose, and buyers of your products never get an account here. You can revoke access at any time from your Etsy account settings under Security, then Apps with access.
7.5 Media retention
Video and image files you upload for publishing are kept in your workspace media library so you can reuse them, until you delete them or close your account. Deleting a file in Social Jen removes it from our servers.
7.6 Digital product files and backups
Digital product files you sell (for example 3D model files) are stored with Cloudflare R2, a US company storing the files in a European region, and delivered to your buyers through short-lived links. Encrypted nightly backups of the Social Jen database are also stored with Cloudflare R2; they are encrypted before leaving our servers and rotate automatically, with daily copies kept for seven days and monthly copies for twelve months. Data removed from the live system leaves the backup cycle as those copies rotate out.
8. Cookies and storage on your device
Social Jen stores, accesses and collects information on your device only as described here, and allows no third party to do so.
8.1 The public page
socialjen.lmctech.co.uk sets no cookies and uses no localStorage, analytics, or tracking of any kind.
8.2 The workspace
app.socialjen.lmctech.co.uk sets a single first-party cookie, sj_session, whose only job is to keep you signed in. It contains a random session token, nothing else, and expires after 14 days or when you sign out, whichever comes first. There are no advertising, analytics, tracking, or third-party cookies anywhere in Social Jen.
If you use the workspace's API access feature, your API key is kept in your browser's localStorage on your device so you do not have to re-enter it. It stays on your device until you remove it in the workspace or clear your browser's site data; it is not readable by any other site.
8.3 Fonts
Our pages load their typefaces from Google Fonts. Your browser fetches the font files directly from Google's servers, which means Google receives the technical details of that request, such as your IP address, as described in the Google Privacy Policy. Google Fonts does not set cookies.
9. Your rights
Under UK GDPR you have the right to access the personal data we hold about you, to have it corrected or erased, to restrict or object to how we use it, and to receive it in a portable form. You also have the right to complain to the Information Commissioner's Office at ico.org.uk.
To exercise any of these, email info@lmctech.co.uk. We respond within 30 days. Full detail of your rights is in the LMC Tech privacy policy.
10. Changes to this policy
If we change how Social Jen handles your data, we will update this page and change the date at the top. Where a change is significant, we will tell connected users directly.
11. Contact
LMC TECH LTD, company number 16195753, Lincolnshire, United Kingdom.
Email: info@lmctech.co.uk