Privacy Policy

Last updated: July 2026

This Privacy Policy is provided by Viaan Ventures (registered legal entity, also known as Digitize Studio) and applies to MarkOS, our AI marketing automation platform, accessible at our website digitize.studio and our platform at console.digitize.studio (together, "the Services").

Information we collect

We collect information you provide directly — your name, email address, business name, and WhatsApp number, typically via the /get-started form or your account settings. We automatically collect usage data through GA4 analytics, cookies, IP address, and browser type. When you connect Google, Meta, X, or Zoho in the console, we store the resulting OAuth tokens in the console.digitize.studio database — never on this marketing site.

How we use and share information

Your data is used to deliver MarkOS's core features: AI content generation, scheduling, and platform publishing (posts sent to your connected accounts on your behalf), CRM and WhatsApp drip automation, and billing via Zoho Billing. Transactional and marketing email is sent via Brevo. We share data with the named sub-processors below only as necessary to operate these features. Data obtained through Google, Meta, and X integrations is used solely to provide the application features you've requested — it is never sold, and is never shared with third parties for advertising, data-broker, or unrelated purposes.

Data security

We use HTTPS/TLS to encrypt data in transit between your browser, our website, and the console. Connections to our databases and caches are also encrypted in transit. OAuth tokens are encrypted at rest using AES-256-GCM before being stored, and all user data is held in access-controlled infrastructure. Access to user data is restricted to authorized personnel through role-based access controls (owner, admin, member, and viewer roles), and is limited to what's needed to provide support or operate the platform.

Sub-processors

We rely on the following sub-processors to deliver MarkOS:

#CompanyProcessing sitePurpose
1DigitalOcean (Managed PostgreSQL, Valkey, Spaces)Singapore / BangaloreDatabase, cache, media storage
2AnthropicUSAAI content generation (Claude)
3OpenAIUSAImage generation (DALL-E), embeddings
4Meta PlatformsUSAFacebook, Instagram, WhatsApp publishing API
5Google LLCUSAGoogle Business Profile publishing, Search Console, Analytics
6X CorpUSAX/Twitter publishing API
7Zoho CorporationIndia / USABilling, subscriptions
8Brevo (Sendinblue)France / EUTransactional and marketing email
9Apify TechnologiesCzech Republic / EUCompetitor social data scraping
10Perplexity AIUSATrend research agent
11CloudflareUSACDN, DNS, DDoS protection

Platform-specific data disclosures

Each platform integration accesses a limited, specific set of data needed to deliver the feature you enabled. Full Google scope detail is published separately at digitize.studio/google-api-disclosure.

Google (Search Console, Google Business Profile, Analytics)

Data accessed:
Search Console keyword/query data, Business Profile posts and reviews, GA4 traffic reports — see the full scope table in our Google API Disclosure
Purpose:
Publishing to Google Business Profile; reading GSC keyword data for SEO articles; showing GA4 metrics in dashboards
Stored:
OAuth tokens in console.digitize.studio PostgreSQL (Bangalore, encrypted at rest)
Retention:
Until you disconnect the integration or delete your account
Revocation:
Settings → Connected Accounts in the console, or myaccount.google.com/permissions

Meta (Facebook, Instagram, WhatsApp)

Data accessed:
Page access tokens, post publishing permissions, Instagram DM leads, WhatsApp message routing
Purpose:
Publishing AI-generated posts; capturing leads into the CRM; WhatsApp drip sequences
Stored:
OAuth tokens in console.digitize.studio PostgreSQL
Retention:
Until disconnected or account deleted
Revocation:
Settings → Connected Accounts in the console, facebook.com/settings?tab=business_tools, or digitize.studio/data-deletion

X (Twitter)

Data accessed:
OAuth 2.0 posting permissions
Purpose:
Publishing AI-generated posts to X
Stored:
OAuth tokens in console.digitize.studio PostgreSQL
Retention:
MarkOS does not cache tweet content beyond what's needed to publish; tokens are retained until disconnected
Revocation:
Settings → Connected Accounts in the console, or twitter.com/settings/connected_apps

Zoho (Billing)

Data accessed:
Billing records and subscription state
Purpose:
Payment processing and subscription management
Note:
Zoho Billing is not a social platform integration — no social content is shared with Zoho

Google Limited Use affirmation

MarkOS's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. See our full Google API Disclosure for details.

Retention, access, and deletion

Active account data is retained for as long as your account is active. Billing records are retained for 7 years to meet accounting and tax obligations under the Companies Act, 2013. Our policy is to delete OAuth tokens and personal data within 30 days of account deletion, remove AI-generated content archives, and delete your Brevo contact record; some records (for example, billing or backup data) may be retained for up to 90 days for legal and operational purposes, as described in our Terms & Conditions.

Your rights

Under India's Digital Personal Data Protection (DPDP) Act, 2023, you have the right to access, correct, and request erasure of your personal data, and to withdraw consent at any time. EU users additionally have GDPR rights, including the right to object to processing and to lodge a complaint with a supervisory authority. To exercise any of these rights, email connect@digitize.studio, or for Meta-connected data, submit a request at digitize.studio/data-deletion.

Contact

Questions about this policy can be sent to connect@digitize.studio. Viaan Ventures, 401, Anarghyas Anvaya, Thondamuthur Road, Vadavalli, Coimbatore – 641041.