What happens
to your data.
1. Controller and contact
Postal addressAndreas Siemann
Anna-Salome-Str. 10
53945 Blankenheim, Germany
[email protected]
These notices distinguish the project website, direct contact enquiries and the locally running Windows app.
2. This website
The prepared pages contain no analytics tools, advertising trackers, embedded platform content, externally loaded fonts, forms or cookie scripts. An email link opens your email application; your message is transmitted only when you send it.
Cloudflare Pages with Cloudflare DNS and delivery services is planned for allinonesocial.app and allinonesocial.pages.dev. Provider: Cloudflare, Inc., 101 Townsend St., San Francisco, CA 94107, USA. Requests may involve processing IP addresses, requested URLs, timestamps, browser and technical connection information. The purpose is to deliver and secure the website. The intended legal basis is Article 6(1)(f) GDPR (legitimate interest in an accessible, secure project website); the specific arrangements must be reviewed before public operation.
Cloudflare uses globally distributed infrastructure. Processing exclusively within the EEA is not guaranteed. Cloudflare provides a Data Processing Addendum covering processing on behalf of customers and international transfers. The Cloudflare account states that the DPA is incorporated into the Self-Serve Subscription Agreement. The linked public version is 6.4 of 3 April 2026. It governs processing on behalf of customers; it does not guarantee this website's legal compliance. Information: Cloudflare privacy policy, processing and transfers and sub-processors.
The website files contain no tracking or cookie scripts of their own. Depending on enabled security features, Cloudflare may use additional technical cookies; see Cloudflare cookies. After setup, the delivered website must be checked for cookies and additional analytics. A specific retention period for technical Cloudflare logs has not been verified for this account. Technical data may be processed even without our own tracking.
3. Email enquiries
When you send a message, the operator processes your sender address, message and any voluntarily included information to handle your enquiry. Contractual or pre-contractual enquiries may rely on Article 6(1)(b) GDPR; other relevant correspondence may rely on the legitimate interest in responding under Article 6(1)(f) GDPR. This classification must be confirmed for subsequent operation.
The recipient uses a GMX mailbox; participating email services also handle delivery. Messages should be retained only as long as handling the enquiry and applicable retention obligations require. A specific deletion policy and provider details must be established before publication.
4. Local Windows app
Brands, account associations, file paths, filenames, hashes, technical media properties, tags, favourites and settings are stored in a SQLite database on your device. Preview files and downloads are stored in the app data directory. Credentials are managed through Windows Credential Manager, not as plain text in SQLite.
Local originals are referenced by default when imported. Removing a library entry does not delete the original file. This does not mean the app operates entirely offline when network features are enabled. In the reviewed version, no central service operated by the project operator is configured to automatically receive the local library.
5. Network features you initiate
- Account connection: Explicitly starting sign-in or a connection check communicates with the selected provider. Account IDs, display names and connection status may be stored locally. Credentials remain in secure storage. Untested integrations are identified on the features page.
- Telegram publishing: After confirmation, the video, filename, caption and target channel are sent to Telegram. Telegram processes published content under its own terms. Local history records the job and result.
- Downloads: Once started, the selected public link is retrieved using the download tools. Platforms and their delivery services receive technical connection data. The source and result are stored locally.
- AI: After configuration and job confirmation, the texts and instructions shown in the preview are sent to the selected provider. Local models are an alternative configuration. Choosing an external provider may have additional privacy and cost implications.
Data protection responsibilities depend on use. Anyone processing or publishing other people's content needs an appropriate basis. Confirmation in the app does not replace that assessment. Providers, storage locations and transfer grounds must be documented for the integrations actually released before a public offering.
6. Retention and removal
The local library persists across restarts. Entries can be removed within implemented functionality; referenced records may be protected by existing relationships. Disconnecting an account locally does not automatically revoke provider authorisation or remove published posts. A complete deletion and export interface for all data is not yet implemented. Contact the operator for help without sharing access keys.
7. Your rights
Subject to the GDPR, you may request access, rectification, erasure, restriction and, where applicable, data portability. You may have a right to object to processing based on legitimate interests; data protection consent may be withdrawn for the future. You may complain to a competent data protection authority, including in Cyprus.
For enquiries processed by the operator, use the address above. The operator cannot simply delete data held only on your device or by a platform provider. Automated decision-making with legal or similarly significant effects is not intended in the described project offering.
8. Sources for final review
General Data Protection Regulation, especially Articles 6, 12–22 and 44 onwards