PostPlanify is GDPR compliant
We respect the rights of EU and UK data subjects and operate in line with the EU General Data Protection Regulation. Here's what that means in practice.
Our GDPR commitments
Concrete, actionable steps we take to protect personal data of EU/UK residents.
Lawful basis & transparency
We process personal data under the lawful bases defined in Article 6 GDPR. Our Privacy Policy discloses what we collect and why in plain language.
Data subject rights
Right to access, rectify, erase, restrict processing, port, and object — all exercisable from your account or by emailing hasan@postplanify.com. We respond within 30 days.
International transfers
EU/UK personal data is primarily stored in EU/UK regions. Cross-border transfers to the US are covered by Standard Contractual Clauses (2021/914).
Data Processing Agreement
We sign DPAs with all customers on request, including EU SCCs where transfers occur. Available at no cost — contact us.
Data processing in detail
Data controller vs processor
You (the customer) are the data controller for content you publish through PostPlanify. We are the data processor, processing personal data on your behalf to deliver the Service.
Sub-processors
We use a small set of vetted sub-processors including AWS (hosting), Stripe (billing), Resend (email), and Sentry (error monitoring). A full list is available on request.
Breach notification
We notify affected customers without undue delay, and in any case within 72 hours of becoming aware of a personal data breach, in line with Article 33 GDPR.
Data Protection Officer
For GDPR inquiries, contact our DPO at hasan@postplanify.com with subject line “GDPR inquiry.” We respond within 5 business days.
Questions about GDPR?
Reach out to our team — we're happy to walk through our compliance posture.
Email Privacy Team