Privacy policy

Last updated 9 September 2026

Hetu is operated by MLJ Tech Labs (“we”). This policy explains what we collect when you use Hetu, why, and how to remove it.

What we collect

  • Account: your email, name, and sign-in provider (Google or email link).
  • Instagram data you authorise through Instagram's login: your professional account profile, posts, and their insights. If you enable the inbox, comments and messages.
  • Content you create in Hetu: ideas, drafts, captions, media you upload, and scheduling choices.
  • Billing: subscription status from our payment provider. We never see or store card details.
  • Usage: which features you use and basic device information, to keep the service working and improve it.

How we use it

  • To analyse your account and generate recommendations, plans, and drafts. Only the data needed for a task is sent to our AI providers; message contents are never used for content generation.
  • To publish posts you approve, through Instagram's official API.
  • To send product emails such as your weekly review. You can turn these off in Settings.

Who we share it with

These are the companies that process data on our behalf, under contract. We do not sell your data, and we do not share it with anyone else.

  • Supabase — database, file storage and authentication.
  • Vercel — hosting for the app and this website.
  • Anthropic — the AI models that write your plans, scripts and captions.
  • Google — sign-in, if you choose "Continue with Google". Google sees only that you signed in to Hetu.
  • Razorpay — payments in India. Mailjet — our email.
  • PayPal — payments outside India.
  • A separate AI host may run short classification tasks, such as labelling the format of a post. It is used only if configured for your deployment, never for your captions or messages, and we will name it here before that changes.

Instagram data

Access tokens are encrypted at rest and used only to perform the actions you asked for. You can disconnect Instagram at any time in Settings, which revokes our access; removing Hetu inside Instagram does the same. Disconnecting stops all access immediately and cancels anything waiting to publish, but it does not by itself delete what we already read — ask for deletion if that is what you want. A deletion request sent through Instagram removes everything we obtained from that account and the analysis built on it, and deleting your workspace removes all of it within 7 days.

Retention and deletion

Message contents are kept for 90 days; other data for as long as your workspace exists. Request deletion in Settings → Delete workspace, or see our data deletion page. Deletion completes within 30 days, and normally within 7. A copy can survive in our hosting provider’s database backups for up to 14 days after that, before it rolls off.

Contact

hello@mljtechlabs.com