Legal

Privacy Policy

Last updated: July 21, 2026

1. Introduction

Briefico ("Briefico", "we", "us") is a Facebook group marketing automation platform for agencies and marketers. Briefico is currently operated as an independent project, not yet as an incorporated company — this policy applies regardless, and describes exactly how we handle your data.

This policy covers the Briefico website (briefico.com), the web app at app.briefico.com, and both Chrome extensions — the publisher tool ("Briefico Poster") and the scout tool ("Briefico Scout").

2. Data We Collect

  • Account data — email address, password (handled by our authentication provider, Supabase — we never see or store your raw password), organization membership, and role (admin, creator, publisher, or scout).
  • Campaign & content data — post text, images, group lists, and schedules you create in the web app.
  • Facebook group metadata— public "About page" information for groups you scan with the Scout extension. This is public information visible to any group member.
  • Group comments and posts— the Poster extension scans comments and posts in groups you've joined for keywords indicating buying intent, to help you find leads. We only read what's already visible to group members — nothing private, nothing hidden.

3. Data We Don't Collect

  • We never store your Facebook password. The Poster extension works inside your own already-logged-in Facebook session in your browser — we never see or handle your Facebook credentials.
  • Briefico never joins Facebook groups automatically. You join groups yourself; only then do they become available to manage in Briefico.
  • We don't collect private messages, private profile data, or anything not already visible to group members.

4. How We Use Data

We use the data above to:

  • Operate the service — authenticate you, run your campaigns, assign and track posting tasks.
  • Detect and surface warm leads from group comments.
  • Power AI-assisted features (e.g. content variation, categorization).
  • Communicate with you about your account or in response to your inquiries.

5. Third-Party Processors

We rely on a small number of infrastructure providers to run Briefico. We don't sell your data to anyone.

Supabase
Database, authentication, and file storage.
Hetzner
Server hosting for our backend and web app.
Anthropic (Claude API)
Powers AI-assisted features — relevant content is sent for processing, not stored by Anthropic beyond what's needed to return a response.

6. Cookies & Tracking

briefico.com does not set any analytics or tracking cookies today. app.briefico.com uses only essential session cookies from our authentication provider, needed to keep you signed in — nothing used for advertising or cross-site tracking.

7. Chrome Extension Permissions

Here is exactly why each extension asks for the permissions it does:

storage
Save your extension settings and session locally.
activeTab / tabs
Know which tab to post into or scan.
scripting
Type post content and read group content on the active Facebook tab.
alarms
Schedule posting and scanning checks at set intervals.
notifications
Notify you when a post succeeds, fails, or a lead is found.
downloads
Save images used in your posts.
Host access to *.facebook.com
Required to post and read content inside your own logged-in Facebook session.
Host access to app.briefico.com
Talk to your Briefico account to fetch tasks and report results.

8. Data Retention

  • Account and campaign data is kept for as long as your account is active, and for up to 90 days after deletion to allow recovery from accidental deletion.
  • Group comments scanned for leads are kept only as long as needed to surface and act on a lead, then discarded.

9. Your Rights

Under GDPR and Israel's Privacy Protection Law, you can ask us to access, correct, delete, or export your data, or object to how we use it. Contact [email protected] and we'll respond as quickly as we can.

10. Children's Privacy

Briefico is a business tool, not directed at children. We don't knowingly collect data from anyone under 16.

11. International Data Transfers

Our infrastructure providers may process data outside your home country. Where that happens, we rely on our providers' own compliance safeguards (such as Standard Contractual Clauses) for cross-border transfers.

12. Security

  • All traffic is encrypted in transit via HTTPS (Let's Encrypt certificates).
  • Our database enforces row-level security so one organization's data is never visible to another.
  • We never store Facebook credentials, as described above.

13. Changes to This Policy

We may update this policy as Briefico changes. We'll update the "last updated" date above when we do — check back occasionally.

14. Contact

Questions about this policy or your data? Reach us at [email protected]. Briefico currently operates out of Israel.