Comms Command Privacy Policy

Last updated: September 26, 2026

Scope and operator

Nelia Studio operates Comms Command, a private content-planning and task-management workspace for authorized users. This policy describes data used by that workspace and its integrations. It does not cover separate gallery payment processing or photography client services. Contact nelia@nelia.studio with privacy questions.

Information processed

How information is used

Information is used to authenticate authorized users, save and synchronize work, display previews and analytics, import posts, perform requested publishing, troubleshoot problems, and protect the service. Connecting an account allows only the functionality supported by the permissions granted and the integration currently available.

Providers and disclosures

Comms Command uses GitHub Pages for website hosting and Supabase for authentication, database storage, uploaded media, and server functions. The site also loads software from jsDelivr. These providers process information needed to deliver their services. When you authorize supported social integrations, relevant account requests and selected publishing content are sent to Meta for Facebook and Instagram. Publicly published content is governed by the destination platform’s visibility settings and policies.

Information may also be disclosed when required by law or as necessary to investigate abuse and protect the service. Provider processing and storage locations may differ from your location.

TikTok: planned functionality

TikTok publishing is not currently connected. Merely adding a TikTok profile link does not authorize access to that account. If an approved draft-upload integration is enabled, it would process authorized account identifiers, profile information, access and refresh tokens, selected media, supported accompanying text, and upload status to deliver drafts to TikTok. The account owner would complete publication in TikTok. This policy will be updated to reflect the integration actually deployed.

Browser storage and analytics

The workspace uses browser storage for sign-in sessions, cached entries, legacy device copies, and pending changes so work can synchronize after a connection interruption. Signing out does not necessarily erase all cached workspace data. Downloaded backups remain wherever you save them.

Other Nelia Studio website pages collect page paths, page-view and link-click events, referral sources, and campaign tags for aggregate reporting in Comms Command. The current site analytics script does not send names or email addresses as event fields. Infrastructure providers may separately process technical request information.

Retention and deletion

Workspace records and media are retained for workspace operations until removed or reviewed following a deletion request. Deleting a calendar item hides it from the active workspace; synchronization records can retain its stored data and deletion marker. Local caches, backups, delivery records, and provider backups may remain after a visible entry is removed. No automatic retention deadline is currently configured for all record types.

To request access, correction, removal of stored data, or disconnection of a social account, email nelia@nelia.studio. We may need to verify that you are authorized to make the request. You can also revoke platform permissions through the relevant social platform. Revocation stops future authorized access but does not itself erase previously stored data or posts already published on that platform.

Security and updates

Comms Command uses authenticated access and database access controls. Social authorization tokens are stored server-side rather than in public website code. No system can guarantee absolute security. This policy will be updated when data practices materially change, with the update date shown on this page.