Skip to main content

Privacy Policy

Last updated: October 5, 2026

1. Introduction

SlideDrift is a product operated by Wu Wei Ltd, a company registered in Cyprus ("Wu Wei Ltd", "we", "us", "our"). Wu Wei Ltd is the controller of personal information processed through SlideDrift. This Privacy Policy explains how we collect, use, and protect information when you use slidedrift.com and the SlideDrift content creation and scheduling service ("the Service").

2. Information We Collect

We collect the following types of information:

  • Account information: Email address, name (optional), and authentication data when you sign up.
  • Content you provide: URLs, text, images, captions, first comments, alt text, and other material you submit for content creation, storage, export, or scheduling.
  • LinkedIn connection information: When you connect LinkedIn, we receive the identifiers and display names of the member profile and any organization Pages you choose to connect, your role on those Pages, the permissions you grant, token expiry information, and encrypted OAuth access or refresh tokens. We keep a small copy of the profile photo or Page logo to show you in the post composer, and delete it when you disconnect that account. We also store the LinkedIn post or comment identifiers, publishing status, and error information needed to operate and support the scheduling service. When you open results for a post you published through SlideDrift, we fetch that post's totals from LinkedIn at that moment and show them only to you, inside SlideDrift. Results for posts on your own profile use LinkedIn's post analytics permission (r_member_postAnalytics), which you grant when you connect or reconnect a LinkedIn account. About 48 hours after a post you published to a Company Page goes out, we read that post's totals (impressions, members reached, likes, comments, reposts and clicks) and keep them for up to one year to show you how it did. Results for posts on your own profile are fetched only when you open them and are never stored. We never include results in emails.
  • Client approval links: When you share a post for approval, anyone with the link can see the post as it would be published and its conversation so far: the answers, comments and replies given through the link, with any images, and your messages with your profile name, without signing in. The link stops working when the post goes out or is cancelled, after 14 days, or when you turn it off. We keep each answer, comment and reply, with any name the reviewer gives, and each of your messages with the post, and delete them when the post or your account is deleted. Images either of you add are kept with your account's files and count towards your storage. When a reviewer answers, we tell you in SlideDrift and by email; the email includes the reviewer's name and comment. Their comments and replies show in SlideDrift. To limit abuse, we count answers, comments, image uploads and image requests against a shortened hash of the reviewer's IP address, not the address itself.
  • Webhooks: If you add a webhook endpoint, we store its HTTPS address, the events you choose and an encrypted signing secret. When one of those events happens, we send its details, which can include a post's caption, its LinkedIn post identifier and a connected Company Page's name, only to that address; the service there handles it under its own terms. We never send the name of a connected LinkedIn profile. We keep each event and its delivery status for 30 days, then delete it, sooner if you delete the endpoint or your account.
  • Blog feeds: If you follow a feed on For you, we store its address and title, and the title, link and date of each post we read from it, so we can show you new posts and, if you choose, turn them into drafts. We delete them when you remove the feed or close your account.
  • Post suggestions: When you press More like this or Not for me on For you, we keep which suggestion it was, the site its news came from and whether it was a carousel or a text post, so we can order your suggestions and leave out the ones you hid. We keep your newest 500, and delete them when you press Undo or close your account.
  • Tagged companies: If you tag a company in a LinkedIn caption by pasting its LinkedIn link, we look it up with one of your connected Company Pages and store its name, LinkedIn page ID and link name, so the tag links to its Page when your posts go out. We delete them when you forget the company or close your account.
  • Usage data: Pages visited, features used, credit consumption, and generation history.
  • Payment information: Processed securely by Stripe. We do not store your credit card details.
  • Device information: Browser type, operating system, and IP address for security and analytics purposes.

3. How We Use Your Information

  • To provide and operate the Service, including generating carousels and preparing text and image posts from your content.
  • To connect the LinkedIn profiles and organization Pages you authorize, display those publishing destinations, and publish or schedule content and first comments according to your instructions.
  • To process payments and manage your subscription.
  • To send transactional emails (account verification, password resets, export notifications).
  • If you turn it on, to email you post ideas for the niche you chose every Monday. Every email has a link to stop them.
  • To improve the Service through aggregated, anonymized usage analytics.
  • To enforce our Terms of Service and prevent abuse.

4. AI Processing

Content you provide (URLs, text) is sent to third-party AI providers (such as Anthropic and OpenAI) for carousel generation. This content is processed according to those providers' data handling policies and is not used to train AI models. Other disclosures are limited to the service providers and integrations described below.

If you connect an AI assistant such as ChatGPT or Claude to SlideDrift, we record which assistant it is, when you connected it, and which SlideDrift tools it uses and whether they succeed. SlideDrift receives only what the assistant sends to those tools, such as the text or link you want turned into a carousel, not the rest of your conversation. Your assistant sees your connected Company Pages by name, and each LinkedIn profile only as “LinkedIn profile”. You can disconnect an assistant at any time under AI connections.

5. LinkedIn Integration

Connecting LinkedIn is optional and uses LinkedIn's OAuth authorization process. SlideDrift asks for the same permissions whether you connect your profile or a Company Page, because LinkedIn cancels your earlier SlideDrift connections when a new sign-in asks for different ones. They cover only what our LinkedIn features need: identifying your connected profile, finding organization Pages you administer, publishing posts, adding a first comment, and showing results for posts you published. We use the profile permissions only for a profile you connect, and the Page permissions only for Pages you choose to connect.

We use LinkedIn information only to provide, secure, maintain, and support the connected-account and publishing features. It is shown to you in SlideDrift and is never shown to other SlideDrift customers. We do not collect other LinkedIn members' profile information or the content of their posts, comments, or reactions. We do not sell LinkedIn information, use it for advertising, sales, recruiting, or lead generation, or use LinkedIn access tokens or profile data to train generative AI models. Content is sent to LinkedIn only when you publish it or approve a schedule for it.

You may disconnect a LinkedIn account in SlideDrift at any time. Disconnecting deletes the stored access token, along with the account's name, your Page role, and the permissions you granted, and SlideDrift stops using that connection. We keep the LinkedIn identifiers of the connection and of posts you already published with your publishing history. You can also revoke access through LinkedIn, or contact us to have the LinkedIn data linked to your account deleted, which we do within 10 days. Disconnecting also deletes the post results we stored for that account.

We may email you that a post's results are ready, with a link to SlideDrift. The email contains no LinkedIn figures, and you can turn it off on the Schedule page.

6. Data Storage and Security

Your account data and content are stored in a PostgreSQL database on our own server, hosted by Netcup, and files are stored in Cloudflare R2. Connections to the Service are encrypted in transit (TLS). LinkedIn OAuth tokens are encrypted before they are stored, and files in Cloudflare R2 and our database backups are encrypted at rest. Access to scheduling records is restricted to the account owner and authorized service processes. We implement industry-standard security measures to protect your information, but no system is 100% secure.

7. Third-Party Services

We use the following third-party services:

  • Netcup: Server hosting for the application, accounts, and database.
  • Stripe: Payment processing.
  • Cloudflare: File storage (R2) and content delivery.
  • Loops: Transactional email delivery, the optional Monday post ideas email, and the optional post results email.
  • LinkedIn: Account authorization, delivery of posts and first comments that you choose to publish or schedule, and results for posts you published.

Each provider has their own privacy policy governing how they handle data.

8. Cookies and Analytics

We use essential cookies for authentication, security, and session management. We may also use analytics technologies to understand how the Service is used and improve reliability. You can control non-essential cookies through your browser settings where applicable.

9. Data Retention

Your carousels, account data, LinkedIn connection records, and scheduling history are generally retained while your SlideDrift account is active or until you request deletion. Disconnecting a LinkedIn account deletes its OAuth tokens straight away; we keep only the LinkedIn identifiers that link your publishing history to that connection. Guest-generated carousels may be deleted after 30 days. LinkedIn API data is deleted within 10 days when you request deletion of that data, and together with your account when you close your SlideDrift account, unless retention is required by law. Company Page post results are kept for up to one year, and deleted sooner when you disconnect that account or close your SlideDrift account. Webhook events are kept for 30 days, client approval answers, comments and replies stay with their post until it or your account is deleted, followed feeds stay until you remove them, tagged companies stay until you forget them, and More like this and Not for me presses stay until you undo them (your newest 500 are kept). Visits through the “Make yours for free” link on shared and embedded carousels are kept for 90 days to see how people find SlideDrift: the page the visitor came from, whether they used a phone, a computer or an automated service, and a hashed form of their IP address rather than the address itself. Other associated personal information is removed within 30 days of account deletion, except where retention is required by law or necessary to resolve a security, fraud, billing, or legal issue.

To prevent repeated trial claims, we retain keyed identifiers derived from your verified email address and Stripe card fingerprint while your account exists and for 180 days after account deletion. These identifiers are pseudonymous, not anonymous, and are used for trial eligibility and abuse prevention. They do not contain your full card number. We delete these retained identifiers after the retention period.

To prevent abuse, we keep short-lived counts of recent requests. Where a count is tied to a network address, we keep a hashed form of the address rather than the address itself, and each count is deleted after 30 days.

10. Your Rights

You have the right to:

  • Access the personal data we hold about you.
  • Correct inaccurate information in your account.
  • Delete your account and associated data.
  • Export your carousel data.
  • Object to processing for marketing purposes.

To exercise these rights, contact us at the email below.

11. Children's Privacy

The Service is not intended for children under 13. We do not knowingly collect information from children under 13. If you believe a child has provided us with personal information, please contact us.

12. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated via email or in-app notification. The "Last updated" date at the top reflects the most recent revision.

13. Contact

Wu Wei Ltd, registered in Cyprus, operates SlideDrift and is the data controller for the Service. For privacy-related questions or requests, contact us at .