Back to Flaren

Privacy Policy

Effective Date: July 2, 2026 · Last Updated: July 2, 2026

Flaren (“we,” “us,” “our,” or “the Service”) is an autonomous AI marketing platform operated by Flaren. This Privacy Policy explains how we collect, use, disclose, and protect your information when you use flaren.online and related services (collectively, the “Service”).

By using Flaren, you agree to the collection and use of information as described in this policy. If you do not agree, please do not use the Service.

1. Information We Collect

1.1 Information You Provide Directly

  • Account information: name, email address, password (or OAuth login credentials), business/brand name.
  • Profile and business data: marketing goals, brand voice preferences, campaign inputs, and any content you upload or generate through the Service.
  • Communications: messages you send us for support or feedback.

1.2 Information from Connected Third-Party Accounts

Flaren allows you to connect external accounts to enable marketing automation, including but not limited to Instagram, X (Twitter), Threads, Facebook, YouTube, and future email providers and advertising platforms.

When you connect these accounts via OAuth, we may access and store:

  • Account identifiers, profile information, and access/refresh tokens
  • Content metrics (posts, engagement, follower counts) needed to perform marketing actions
  • Permissions you explicitly grant during the OAuth authorization flow

We only request the minimum scopes necessary to provide the Service, and you can revoke access at any time through your account settings or directly through the third-party platform.

1.3 Automatically Collected Information

  • Usage data: features used, commands run, session duration, click patterns.
  • Device/technical data: IP address, browser type, operating system, device identifiers.
  • Cookies and similar technologies: used for authentication, session management, and analytics (see Section 7).

1.4 Payment Information

Payments are processed by third-party payment processors (e.g., Whop, Stripe). Flaren does not directly collect or store your full payment card details. We may retain limited billing metadata (e.g., subscription tier, transaction status) necessary for account management.

1.5 AI Processing Data

Flaren uses third-party AI model providers, including DeepSeek and Google Gemini, to power its AI marketing engine. Prompts, campaign inputs, and generated outputs may be transmitted to these providers for processing. As we expand into video generation, we plan to integrate Higgsfield for AI video content. This section will be updated once that feature is live. See Section 4 for details on sub-processors.

2. How We Use Your Information

We use collected information to:

  • Provide, operate, and maintain the Service
  • Execute marketing automation actions on your connected accounts (e.g., posting, scheduling, analytics review)
  • Authenticate and secure your account
  • Improve and develop new features
  • Communicate with you about updates, support, and (with consent) marketing
  • Comply with legal obligations
  • Detect, prevent, and address fraud, abuse, or security issues

We do not sell your personal information.

3. Legal Basis for Processing (GDPR)

If you are located in the European Economic Area (EEA), UK, or Switzerland, our legal bases for processing your data include the following.

  • Contractual necessity: to provide the Service you signed up for
  • Consent: for connecting third-party accounts and optional marketing communications
  • Legitimate interests: to improve the Service and ensure security
  • Legal obligation: where required by law

4. Third-Party Sub-Processors

We rely on trusted third parties to operate Flaren, including the following.

  • AI model providers (DeepSeek, Google Gemini): generating marketing content and content decisions
  • Higgsfield (planned): AI video generation, once video features launch
  • Cloud hosting/infrastructure: application hosting and data storage
  • Payment processor (Whop/Stripe): subscription billing
  • Social/ad platform APIs (Instagram, X, Threads, Facebook, YouTube): executing connected marketing actions
  • Analytics providers: understanding product usage

Each sub-processor is contractually obligated to protect your data and use it only for the purposes we specify.

5. Data Retention

We retain your information for as long as your account is active or as needed to provide the Service. Upon account deletion, we will delete or anonymize your personal data within 90 days, except where retention is required for legal, tax, or security purposes.

Connected account tokens are deleted immediately upon disconnection or account deletion.

6. Your Rights

6.1 GDPR Rights (EEA/UK/Switzerland users)

You have the right to the following.

  • Access the personal data we hold about you
  • Correct inaccurate data
  • Request deletion (“right to be forgotten”)
  • Restrict or object to processing
  • Data portability
  • Withdraw consent at any time
  • Lodge a complaint with your local data protection authority

6.2 CCPA Rights (California residents)

You have the right to the following.

  • Know what personal information is collected, used, disclosed, or sold
  • Request deletion of personal information
  • Opt out of the sale or sharing of personal information (we do not sell data)
  • Non-discrimination for exercising these rights

To exercise any of these rights, contact us at flaren.official@gmail.com.

7. Cookies

Flaren uses cookies and similar technologies for the following purposes.

  • Authentication and session persistence
  • Remembering preferences
  • Analytics (e.g., understanding feature usage)

You can control cookies through your browser settings. Disabling cookies may limit some functionality.

8. Data Security

We implement industry-standard technical and organizational measures (encryption in transit, access controls, secure authentication via Supabase Auth/OAuth) to protect your data. However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.

9. International Data Transfers

Your data may be processed in countries outside your own, including the United States and Pakistan. Where required, we rely on appropriate safeguards, such as Standard Contractual Clauses, for cross-border transfers.

10. Children’s Privacy

Flaren is not intended for individuals under 16 years of age. We do not knowingly collect personal information from children. If we become aware that a child has provided us with personal data, we will delete it promptly.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or in-app notice. Continued use of the Service after changes constitutes acceptance.

12. Contact Us

If you have questions about this Privacy Policy or wish to exercise your rights, contact us at the following.

  • Email: flaren.official@gmail.com
  • Automated/transactional emails from: noreply.flaren@gmail.com (please do not reply to this address)
  • Entity: Flaren