Privacy
Last updated 2 August 2026.
Rheusk holds two kinds of thing: what you write, and the keys that let us post on your behalf. They are treated differently on purpose, and this page explains how.
What we store
- Your account. Email address, display name, time zone, and your plan.
- Your ideas. Themes, ideas, and every version of every stage — concepts, outlines, drafts, scripts. Version history is kept indefinitely, because being able to go back to an earlier draft is the point of it.
- Your videos. The files you upload, until 30 days after the last post using them has finished.
- Your connections. For each social account you connect: the platform's identifier for it, your handle, and the access tokens that let us post.
- Your posts. Captions, what went where, whether it succeeded, and the link to each published post.
How it is protected
Access tokens are encrypted at rest with a key held outside the database. They are never written to logs, never returned by any API response, and never shown in the app. They are the one thing we hold that could be used to act as you, so they get the strongest treatment we have.
Your idea text is stored as plain text. This is a deliberate choice, not an oversight: it is draft material for things you intend to post publicly, and storing it readable is what makes search work and what lets us tell you when a suggested idea duplicates one you already have. If that trade is not right for you, Rheusk is not the right tool.
Your video leaves our servers by design
Three of the five platforms fetch media from a URL rather than accepting an upload. So when you publish, we generate a signed link to your video that is valid for two hours and give it to those platforms. Anyone holding that exact link during that window can fetch the file. The link is unguessable and expires; there is no way to publish to those platforms without it.
What we send to other companies
- The platforms you connect receive your video, your caption, and the settings you chose. Nothing else.
- Our AI provider (DeepInfra) receives the text needed for the action you asked for — the stage being advanced, your recent scripts as writing samples, or the script a caption is written from. It does not receive your email, your connections, or your tokens.
- Stripe handles payment. We never see your card details.
- Google Firebase handles sign-in and push notifications.
- Sentry receives crash reports with no personal data and no request bodies attached.
We do not sell your data, and there is no advertising anywhere in Rheusk.
Deleting your account
Deleting your account from Settings does two things: it wipes every row we hold about you, and it revokes Rheusk's access on every platform you connected. That second part matters — deleting our copy alone would leave live publishing permissions on five services with no way for you to find them. Posts already published stay up; they belong to your accounts, not to us.
You can export everything first from Settings: one JSON file with every theme, idea, version and post.
Contact
[email protected]. If you are in the EU or UK you have the right to access, correct, export and erase your data; the export and delete buttons in Settings do the first and last immediately.