Social Media Publishing — Privacy Policy
Who we are and what this covers
This policy explains how S&M Renovations LLC ("SMR", "we"), together with its technology operator QubitX Enterprise ("QBT"), handles data in connection with CRONOS — the application we use to publish and schedule content on SMR's own social media pages, including SMR's LinkedIn Page, Facebook Page, and Instagram account. SMR is the data controller for the page being managed; QBT operates the CRONOS software. This policy is separate from, and in addition to, the privacy policy for our online estimate tool.
What data we access through the LinkedIn API
Through LinkedIn's Community Management API, the application accesses only:
- the LinkedIn Page we are authorized to manage (SMR's organization page);
- the content (text and images) that we publish to that page;
- the OAuth access token that authorizes posting; and
- the identifiers of the posts we publish (post IDs).
The application is write-only. It publishes content to our own page. It does not read, collect, or store LinkedIn members' profiles, comments, reactions, follower lists, messages, or any other member personal data.
How and why we use it
We use the access above solely to publish and schedule content on SMR's own social media pages. We do not use any LinkedIn data for advertising, sales, recruiting, lead generation, CRM enrichment, audience building, ad targeting, account-based marketing, or mass messaging. We do not sell, rent, export, or transfer LinkedIn member data to any third party, and we do not combine LinkedIn data with other data to build or enrich profiles or leads.
Automated and AI processing
Some images we publish are generated with AI image tools, and approved content is published on an automated schedule. These functions operate only to publish our own content and only within LinkedIn's approved use case. Content is reviewed and approved by a person before it is published.
Service providers
We rely on a small number of providers to run the application: server hosting (Hetzner), media storage (Cloudflare R2), AI image-generation services, and the social platforms themselves (LinkedIn and Meta). They process data only to provide these services to us.
How long we keep it
We retain only the outbound post identifiers and the authorization token needed to operate the application. We honor LinkedIn's data-storage limits, including that members' social-activity data is not retained beyond 48 hours and other members' profile data is cached no longer than 24 hours. In practice the application stores none of this member data, because it does not read it.
Deletion and your rights
We delete LinkedIn-derived data on request, when a connected account is closed, and when LinkedIn requires it. Because the application is write-only, deletion consists of revoking and deleting the OAuth access token and removing the stored post identifiers. To request access to, or deletion of, information associated with our use of the LinkedIn API, contact us:
- Email: estimates@smrenovations.us
- Phone: (513) 404-8461
Depending on where you live, you may have rights under the GDPR or the California Consumer Privacy Act (CCPA), including the right to access, correct, delete, or object to the processing of your personal information. Contact us using the details above to exercise these rights.
Security
Access tokens and application data are stored on access-controlled servers, and access is limited to authorized personnel.
Changes to this policy
We may update this policy from time to time. The effective date at the top of this page reflects the latest version.