Influence OS

Influence OS · os.influencepr.in · India

Privacy notice

This notice describes how Influence, a proprietorship, handles personal data for Influence OS at os.influencepr.in. Influence is the Data Fiduciary for account and billing data under the Digital Personal Data Protection Act, 2023. For Brand Memory and media-list contacts that a customer uploads about other people, the customer is the Data Fiduciary and Influence is a Data Processor. The Data Processing Addendum applies to that processing.

Grievance Write to the billing email shown on your invoice, with the subject "DPDP grievance". Influence will acknowledge within 7 days and aim to resolve within 30 days.

What we collect Account name, email, password hash, billing email, optional GSTIN, team invites, and product usage logs (scans, drafts, approvals, publishes). Brand Memory may include personal data you choose to store, including journalist names on a media list. If you connect LinkedIn, we store an encrypted access token, the member identifier LinkedIn returns, and the display name.

Why To provide the software, bill for it, keep the workspace secure, send password resets and invites, and post approved LinkedIn text when you ask us to. Customer Brand Memory and drafts are confidential customer content. They are not used to train public models.

Children The product is not directed at children, and we do not knowingly create accounts for them.

Processors Hosting and the database (the provider you or we configure, typically Vercel and a Postgres host), Cashfree for payments, Resend for transactional email when configured, OpenAI for draft and opportunity text when an API key is configured, and LinkedIn when you connect an account. We do not sell personal data.

Cross-border If the host, email provider, or model provider stores data outside India, that transfer is made to perform the contract with you. Ask us for the current sub-processor list before you sign if your own clients require it.

Retention Account data is kept while the subscription is active and for 30 days after it ends, unless a longer period is required for tax invoices. Invoices and payment references are kept for the period Indian tax law requires. Connected-account tokens are deleted when you disconnect or when the workspace is deleted.

Security Production traffic is encrypted in transit. Session cookies are httpOnly. LinkedIn tokens are encrypted with AES-256-GCM using a key that is not stored in the database. Report a suspected breach to the grievance contact.

Your rights You may request access, correction, erasure, and nomination under the DPDP Act by writing to the grievance contact. If you are a customer uploading other people's data, you handle their requests and we will assist as your processor.

Cookies The product uses an httpOnly session cookie and a brand-switcher cookie. It does not load a third-party analytics script.