Privacy Policy
Sidekick Social · Last updated September 21, 2026
Who we are
Sidekick Social is a private, internal social-media analytics dashboard operated by Abhinav Gadudasu (sole proprietor) on behalf of the brands it serves. It is not a consumer product. Access is restricted to authorized operators, the authorizing brand, and platform reviewers using a separate review environment.
What data we collect
We retrieve publicly available social-media contentthat mentions or tags a brand we manage — including images, videos, available captions, creator profile information, and available like and comment counts — via Instagram's official APIs, and only after the brand authorizes our application against its own business account.
For Instagram story mentions specifically: when someone mentions a brand we manage in their Instagram story, Instagram delivers that mention to us through the Instagram messaging API; we process these story-mention eventssolely to include them in the brand's mention reporting.
For Instagram messages:we retrieve and temporarily store recent messages sent to the managed Instagram account, together with the sender's available username or name, in a limited operator inbox used to verify the messaging integration. An authorized operator may send a manual reply. Sidekick does not initiate conversations, auto-respond, or run chatbot automation. We do not collect Instagram login credentials or data from business accounts that have not authorized us.
How we use it
The data is used solely to produce earned-media and brand-mention reporting and provide limited message review for the authorizing brand's own internal use. We use Railway infrastructure to host and store the dashboard data. The review environment has separate account credentials and storage. Our shared webhook service receives Meta events and forwards only events belonging to the connected review account to that environment. We do not sell or rent this data, or use it for advertising or profiling of individual users. Earned media value and impressions are estimates; Story mention engagement counts are unavailable.
Storage, retention & deletion
Retrieved tagged content and saved media are retained for reporting; refreshing does not automatically delete historical records whose source is no longer available. Instagram message and conversation records are pruned from the active message store when it is accessed after they become 30 days old. Captured Story-mention records are retained for reporting until the authorizing brand requests deletion. Queued webhook data used to retry failed capture is removed after successful processing or when the worker finds it older than 24 hours. This also applies to queued review-account events held by the shared webhook service while forwarding is retried. A brand may revoke our application's access at any time through their platform account settings, and may request earlier deletion of its data by contacting us.
Data deletion requests
To request deletion of the data associated with a brand we manage, email abhi@novibooks.app with the subject "Data deletion request" and the brand or account in question. We will delete the associated cached content, creator records, messages, saved media, connection tokens, queued webhooks, and Story-mention records within 30 days and confirm by email. You may also revoke our application's access at any time through your platform account settings. Revocation does not itself erase the data already stored in Sidekick; contact us to request its deletion.
Platform compliance
We access platform data only through official, authorized APIs and handle it in accordance with each platform's developer terms and policies.
Contact
Questions or data requests: abhi@novibooks.app.