Legal
Privacy Policy
Last updated: October 3, 2026
This policy explains what information NicePublish collects, why we collect it, how we use and protect it, and the choices you have. We have tried to write it in plain English.
The short version
- We use your data only to provide the service you asked for: connecting your Facebook Pages, publishing and scheduling posts, showing analytics, billing and support.
- We never sell your data, use it for advertising, or share Facebook data with data brokers.
- Page access tokens are encrypted, and are deleted as soon as you disconnect a Page or remove access in Facebook.
- You can disconnect Pages or delete your account at any time. See our data deletion instructions.
1. Who we are
NicePublish ("NicePublish", "we", "us") is a web service for scheduling and publishing posts to Facebook Pages, available at nicepublish.com. NicePublish is operated by TrendClick Limited, which is the data controller for the personal data described in this policy.
You can contact us about privacy at [email protected] and about anything else at [email protected].
NicePublish is an independent product. It is not affiliated with, endorsed by, or sponsored by Meta Platforms, Inc.
2. Information we collect
2.1 Account information
When you create an account we collect your name, email address, password (stored only as a one-way hash — we cannot read it) and your timezone (used to schedule posts at the times you choose).
2.2 Information from Facebook (only with your permission)
When you choose to connect Facebook Pages, you sign in through the official Facebook Login and Facebook shows you exactly which permissions NicePublish is requesting. You decide which Pages to connect. With your permission we receive and store:
- Your Facebook user ID and name, so we know which Facebook account authorized the connection.
- Information about the Pages you select: their IDs, names, usernames, categories, profile pictures and follower counts.
- Page access tokens issued by Facebook, which let NicePublish act on the Pages you connected, and the user access token from your Facebook Login, which is used to list your Pages and keep their connection working. All tokens are encrypted at rest.
- The permissions you granted, so we can show what each Page can do and ask you to reconnect if something is missing.
- Content you create in NicePublish (post text, links, media, first comments, schedules) and the resulting Facebook post IDs and links.
- Engagement counts and insights for your Pages and for posts published through NicePublish — for example reactions, comments, shares, views, reach, clicks and follower trends.
Comments on posts you published through NicePublish are fetched from Facebook live, at the moment you view them, so you can read and reply to them as your Page. We do not store those comments. Replies you write are sent to Facebook and not kept by us beyond normal operation logs.
We request these Facebook permissions, each for a specific feature:
pages_show_list— to list the Pages you manage so you can choose which to connect.pages_read_engagement— to read basic Page information and engagement on your posts.pages_manage_posts— to publish, edit and delete the posts you create in NicePublish.pages_manage_engagement— to post your first comment and your replies as your Page.pages_read_user_content— to show the comments on posts you published so you can reply.read_insights— to show views, reach and follower trends.business_management— to find Pages owned by your business portfolio.
We do not access your personal Facebook profile's posts, friends, messages or any Pages you did not choose to connect, and we never post to personal profiles.
2.3 Media you upload
Photos and videos you upload are stored so they can be published to Facebook. They are deleted automatically 30 days after they are no longer needed for a scheduled post, or immediately when you delete your account.
2.4 Billing information
Payments are processed by our payment providers, Stripe or Airwallex. Your card details are entered directly with them; we never see or store your card number. We store the customer and subscription identifiers they give us, your plan, and the amounts and dates of your payments.
2.5 Technical information
We keep IP addresses in security and audit logs (for example sign-ins and important account changes) to protect your account and investigate abuse. We use only cookies that are strictly necessary to keep you signed in and protect forms (a session cookie and a security token). We do not use advertising, analytics-tracking or third-party marketing cookies.
2.6 Clients connected through a connect link
If you connect your Page through a NicePublish connect link sent to you by someone else (for example an agency or a software platform), we collect the same Facebook information described in section 2.2 for the Pages you choose, on behalf of that NicePublish account holder.
3. How we use information
We use your information only to provide the service you request and to run it responsibly:
- to connect your Pages and keep their connection working;
- to publish and schedule posts, first comments and replies when you (or your API integration) ask us to;
- to show engagement, insights and comments for your Pages and posts;
- to process payments and manage your subscription;
- to provide support and send essential service emails (such as account verification, password resets, failed-post alerts and billing receipts);
- to keep the service secure, enforce our Terms and Acceptable Use Policy, and prevent spam and abuse;
- to comply with legal obligations.
We do not sell or rent your data; use it for advertising or to target ads; build profiles about you or your audiences; or share data obtained from Facebook with data brokers or advertising networks. We use data obtained through the Facebook Platform in compliance with the Meta Platform Terms and Developer Policies, and only for the features described above.
Where the GDPR or UK GDPR applies, our legal bases are: performance of our contract with you (providing the service), our legitimate interests (security, fraud and abuse prevention, improving reliability), compliance with legal obligations (for example tax records), and your consent where we ask for it (for example when you grant Facebook permissions — you can withdraw it at any time by disconnecting).
4. Clients, agencies and integrators
NicePublish lets account holders manage Pages for others. When a Page is connected through a client connect link, the NicePublish account holder who sent the link (for example an agency or a software platform) can publish to that Page and view its analytics and comments through NicePublish. That account holder is responsible for how they use that access and for having a lawful basis and any consents needed from their own customers. If you connected a Page this way and want to stop it, you can remove NicePublish in your Facebook settings at any time (see data deletion), or contact the account holder or us.
5. Who we share information with
We share information only with service providers ("sub-processors") that help us run NicePublish, under contracts that require them to protect it and use it only on our instructions:
- Hosting provider — a dedicated server where the application and database run.
- Cloudflare — DNS and network security (protection against attacks).
- Stripe and Airwallex — payment processing.
- Meta — the Facebook platform itself: content you publish and requests you make are sent to Facebook to carry them out.
- Email delivery provider — to send account and service emails.
We may also disclose information if required by law, to respond to valid legal requests, to protect the rights and safety of our users or others, or as part of a merger or acquisition (in which case this policy will continue to apply to your data). We do not otherwise share your personal data with third parties.
6. How long we keep information
- Page access tokens are deleted immediately when you disconnect a Page, when you remove NicePublish in your Facebook settings, or when Facebook tells us your access was removed.
- Data obtained through your Facebook authorization is deleted when you ask Facebook to delete it (Facebook notifies us automatically) or when you delete your account.
- Account data, including your Pages, posts, clients, media and API keys, is deleted when you delete your account. Encrypted backups are purged on a rolling basis within 30 days.
- Uploaded media is deleted 30 days after it is no longer needed for a scheduled post.
- Billing records (invoices and payment records) are kept for as long as tax and accounting laws require.
- Security logs are kept for a limited period and then deleted.
7. Your rights and choices
Depending on where you live, you may have the right to: access the personal data we hold about you; correct inaccurate data; delete your data; receive your data in a portable format; object to or restrict certain processing; and withdraw consent. Residents of the European Economic Area and the United Kingdom have these rights under the GDPR and UK GDPR, and California residents have rights under the CCPA, including the right to know, delete and correct personal information and not to be discriminated against for exercising these rights. We do not sell or "share" personal information as those terms are defined in the CCPA.
You can do much of this yourself: update your details in Settings, disconnect Pages, or delete your account. For anything else, email [email protected]. We will respond within 30 days and may need to verify your identity first. You also have the right to complain to your local data protection authority.
8. How to delete your data
You can disconnect a Page, delete your NicePublish account, remove NicePublish from your Facebook settings, or email us. Step-by-step instructions are on our data deletion page.
9. Security
We protect your information with measures including: encryption in transit (HTTPS) for all traffic; encryption at rest for Page access tokens and other secrets; hashed passwords; API keys stored only as hashes; access to production systems restricted to authorized personnel; audit logging of sensitive actions; regular updates and backups. No system is perfectly secure, but we work to protect your data and will notify you and the relevant authorities of a data breach where the law requires.
10. International transfers
Our service providers may process data in countries other than your own, including the United States. Where the law requires, we rely on appropriate safeguards for these transfers, such as the European Commission's Standard Contractual Clauses or equivalent mechanisms.
11. Children
NicePublish is a business tool and is not intended for anyone under 18. We do not knowingly collect personal data from children. If you believe a child has given us personal data, contact us and we will delete it.
12. Changes to this policy
We may update this policy from time to time. We will post the new version on this page and update the date at the top. If changes are significant, we will let you know by email or in the app before they take effect.
13. Contact
Questions or requests about privacy: [email protected]. General support: [email protected].
Operator: TrendClick Limited.