Privacy Policy

POSTA processes email metadata and message content only to deliver and troubleshoot transactional email for ESAART-managed applications.

Processed data can include sender and recipient addresses, subject lines, message bodies, delivery status, bounce details, complaint events, IP logs and webhook delivery logs.

Infrastructure Providers

POSTA uses specialist subprocessors to operate the service. Microsoft Azure provides outbound email transport and private attachment storage; Convex provides application data and realtime infrastructure; Clerk provides account authentication; and RevenueCat provides subscription management. These providers process data only as needed to deliver their part of POSTA.

How Data Is Used

  • Deliver transactional email requested by an application workflow.
  • Debug delivery failures, bounces and recipient complaints.
  • Prevent abuse, enforce suppression lists and protect sender reputation.
  • Provide operational visibility to ESAART Studio and managed client projects.

Retention

Delivery logs are retained only as long as needed for operational support, abuse prevention and legal compliance. Suppression records may be retained longer to prevent future unwanted email.

Account Deletion

You can permanently delete your account inside the Posta app from More → Settings → Delete account. This removes account-owned projects, domains, API keys, email records, inbox conversations and private attachments. Security and suppression records may be retained only where required to prevent abuse or comply with law.

App Store subscriptions are managed by Apple and must be cancelled separately in your Apple ID subscription settings.

Contact

Privacy questions can be sent to privacy@esaart.studio. Abuse reports should be sent to abuse@esaart.studio.