Last updated: 6 September 2026
This Policy explains what Cadiance collects, why, and what rights you have.
The data controller responsible for your personal information is SHIZ Media (Pty) Ltd, registration number 2017/080539/07, a private company incorporated in South Africa and domiciled in Cape Town, trading as Cadiance. Contact us at [email protected].
Account information. Your name, email address, sign-in method (Google Sign-In or Magic Link), and your role in your workspace.
Content. Writing samples you upload for voice training, reference source documents you upload, post drafts, approved posts and published records, and the voice model derived from your samples.
Activity data. Actions taken in the platform — features used, posts created, edited, approved, scheduled and published, and how AI-generated drafts are edited before publication. Edit behaviour is used to improve the drafts we generate for you; it is never used to train shared models and is never shared with other customers.
Security data. The IP address associated with significant account actions such as sign-in, connecting or disconnecting LinkedIn, and team membership changes, recorded in our audit log.
Billing. Your name and email for billing records. We never see or store payment card details — those are handled entirely by Lemon Squeezy.
If you connect your LinkedIn account, we collect and process information made available through LinkedIn's APIs for the account you authorise. This is limited to your LinkedIn member URN, display name, profile picture, an OAuth access token, and the posts you publish through Cadiance.
We use this data only to provide publishing and scheduling features inside Cadiance for the user who authorised access. We do not sell LinkedIn data, export it for third-party use, or use it for advertising targeting, recruiting, lead generation, profiling or data enrichment, and we do not make it available to third parties other than the service providers who help us operate Cadiance. We never send LinkedIn tokens or LinkedIn identifiers to our AI provider.
We request only the permissions needed: openid, profile, email and w_member_social (publishing only). We do not request access to your connections, messages or feed. Cadiance does not collect LinkedIn engagement analytics such as impressions, reactions or comments.
Your OAuth token is encrypted with AES-256-GCM before it is stored, and is never exposed in logs or client-side code.
You can disconnect at any time from your account settings, or revoke access directly in LinkedIn. On disconnection, account deletion, or a deletion request, your stored token is erased immediately and your LinkedIn profile picture is removed immediately. Remaining LinkedIn data is deleted within 30 days, unless we are required to retain limited information for legal or security purposes.
To provide, operate and maintain the Service; enable LinkedIn publishing at your instruction; build and refine your voice model; improve the drafts generated for your workspace; process payments and manage your account; send transactional messages such as approval requests, publish failures and connection warnings; detect fraud and abuse; and comply with legal obligations.
We may use aggregated, anonymised data for internal research. It cannot identify you.
We will never use your content, voice model or LinkedIn data to train general AI models, and we will never share insights about your content with other customers.
We do not sell your personal data. We share it only with service providers who help us operate Cadiance, in the following categories: cloud hosting and database infrastructure; authentication providers, where you choose to sign in with a third-party account; transactional email delivery; payment and subscription processing; and AI model providers.
Content you create in Cadiance — post drafts, writing samples and reference material — is processed by Anthropic to generate and refine your drafts. Under Anthropic's API terms this content is not retained or used to train their models. LinkedIn tokens and LinkedIn identifiers are never sent to any AI provider.
Where you publish a post, its content is transmitted to LinkedIn via their API at your instruction.
A current list of our service providers is available on request at [email protected].
We may also disclose data to public authorities where required by law, and to an acquirer in connection with a merger or sale of assets. All providers are bound by confidentiality obligations and may use your data only to provide their services to us.
We retain your data while your subscription is active. On cancellation your workspace is retained for up to 90 days so you may reactivate: fully restorable for 30 days, content-only restorable from 31 to 90 days, deleted after 90 days. LinkedIn tokens are erased immediately on disconnection. Audit logs are retained for up to 24 months. Billing records are retained for up to 7 years to meet financial record-keeping obligations.
You may request earlier deletion at any time — see cadiance.ai/data-deletion.
You may request access to, correction of, or deletion of your personal data; request restriction of or object to processing; request a copy of your data in a portable format; and withdraw consent where processing relies on it.
South African residents have these rights under the Protection of Personal Information Act 4 of 2013 and may complain to the Information Regulator of South Africa at inforegulator.org.za. EU and UK residents have equivalent rights under the GDPR and UK GDPR and may complain to their local data protection authority. California residents may request disclosure and deletion; we do not sell personal information. We extend reasonable access and deletion rights to all users regardless of jurisdiction.
Contact [email protected]. We may ask you to verify your identity, and will respond within 30 days.
We encrypt data in transit using TLS, encrypt LinkedIn OAuth tokens at the application level with AES-256-GCM, enforce database-level access controls that strictly separate workspaces, and require authentication for all account access. No system is completely secure, and you are responsible for keeping your credentials confidential. In the event of a breach affecting your personal data we will notify you and, where required, the Information Regulator, without undue delay.
We are based in South Africa. Our service providers may process your data in the United States and other countries. This means personal information, including content you create in Cadiance, is transferred outside South Africa. We rely on the contractual protections in our agreements with those providers, which bind them to data protection standards substantially similar to those required under South African law.
Cadiance uses only functional cookies necessary to operate the Service — session management, authentication, and short-lived tokens used during sign-up and email change. We use no advertising cookies, tracking pixels or third-party analytics. If that changes we will update this Policy and, where required, seek your consent.
The Service is for users aged 18 and over. We do not knowingly collect data from anyone under 18; contact us if you believe we have and we will delete it.
We may update this Policy. Where changes are material we will give at least 14 days' notice by email or in-product notice. The last updated date is always shown above.
SHIZ Media (Pty) Ltd, trading as Cadiance
Registration number 2017/080539/07
Cape Town, South Africa
[email protected] · cadiance.ai