Privacy Policy
What Sociable collects, why, who sees it, and how long we keep it. This covers the website, your member account, and the social accounts you connect to us.
This Privacy Policy explains what Sociably Safe, Inc., doing business as Sociable, collects, why, and what we do with it. It covers our website, your member account, and the social accounts you connect to us.
1. The short version
- We never ask for, receive, or store your social media passwords.
- We reach your accounts only through each platform’s official authorization process, and only for the data we need to spot a takeover.
- We do not sell your data. We do not use it for advertising. We do not use it to train models.
- Disconnect an account and we stop collecting, then delete the platform data we hold for it.
2. What we collect
2.1 What you give us
- Account information. Your name, email address, and the credentials you set for your Sociable account.
- Payment information. Handled by Stripe. We get a confirmation and the last four digits of your card. We never see or store the full number.
- Incident information. Your confirmation that you have lost access, and anything else you tell us while we work a recovery case.
- Anything you write to us for support.
2.2 What we get from the platforms you connect
When you connect an account, the platform issues us an access token. We use it to collect only the following:
- Account identity. Handle, display name, account identifier, profile links, verification status.
- Security state the platform exposes. Whether multi-factor authentication is on, recent changes to the account’s contact points, whether sessions and tokens are still valid.
- Change signals. Changes to the account’s email or phone, changes to payout destinations, loss of verification, mass deletion of content, changes to handle or display name.
- The status of the connection itself.
2.3 What we collect automatically
- Device and browser information, IP address, and the pages you view
- Log data from your member console
We use cookies for signing you in and for basic analytics. We do not use them for advertising.
3. Why we use it
| Purpose | What we use |
|---|---|
| Spotting a takeover | Platform security and change signals, connection status |
| Getting your account back | Account identity, incident information, recovery case logs |
| Working out Remedy eligibility | Your enrollment record, eligibility status, timestamped signals |
| Running your membership | Account and payment information |
| Supporting you | What you write to us, and your account information |
| Improving Sociable | Aggregated and de-identified usage data only |
We do not use platform data for advertising, profiling, resale, or to train machine learning models.
4. Who we share it with
Only what is necessary, and only with:
- Cysurance, which owes and pays your Remedy. When you enroll, it receives your name, email address, enrollment date and membership details so it can issue your warranty and identity protection in your name. It also receives the incident record when a Remedy becomes payable: your account identity, the timestamped signals, your confirmation, and the recovery case log.
- Cysurance, which provides the identity protection benefit, and TransUnion and CyberScout, which run the helpline, servicing and remediation, when you use those benefits.
- Your agency, if you joined Sociable through a talent agency: which of your accounts are protected, and the status and updates on any recovery case, so its team can stay informed. Nothing else, and never the content of your accounts.
- Stripe, which processes payment.
- Service providers that host our infrastructure, send our email, and support our operations, under contracts that limit them to those purposes.
- Law enforcement or regulators where the law requires it, and a successor entity in a merger or acquisition.
We do not sell personal information and we do not share it for cross-context behavioural advertising.
5. How long we keep it
- Platform data for a connected account: deleted within 30 days of you disconnecting it.
- Incident and recovery records: seven years, because they are the record behind a financial obligation.
- Account and billing records: as long as you are a member, then seven years.
- Support correspondence: three years.
6. Security
Access tokens are encrypted in transit and at rest. Access to production systems is restricted and logged. We use multi-factor authentication internally and require it on your Sociable account.
No system is perfectly secure. If a breach affects your information we will tell you, and any regulator, as the law requires.
7. Your choices and rights
- Disconnect any account at any time from your member console. Monitoring stops immediately.
- Access, correct, or delete your information by emailing james@get-sociable.com.
- Close your account whenever you like. Doing so deletes your platform data, subject to the retention periods above.
If you live in California, you have rights under the CCPA and CPRA, including to know, delete, correct, and limit the use of sensitive information, and not to be treated differently for exercising them.
If you are in the European Economic Area or the United Kingdom, you have rights under the GDPR, including access, rectification, erasure, restriction, portability, and objection.
8. Children
Sociable is for people aged 18 and over. We do not knowingly collect information from anyone under 18. If we find that we have, we delete it.
9. Changes
We will post any new version with a new effective date, and email members about material changes.
10. Contact
Sociably Safe, Inc., 999 Peachtree Street NE, Suite 400, Atlanta, GA 30309. james@get-sociable.com