This policy explains what personal data we collect through the Lente Studio website (lentestudio.io) and application, why we collect it, and the rights you have under the EU General Data Protection Regulation (GDPR).
1. Who we are
The data controller is CasaBasilico OÜ, Ahtri tn 12, Kesklinna linnaosa, 15551 Tallinn, Estonia (Estonian business registry code 16850261, VAT EE102685721). For anything in this policy, write to support@lentestudio.io.
2. Data we collect and why
Access requests
When you use the request-access form we collect your name, agency name, email address and anything you write in the message field. We use it to reply to you and to set up your account if you become a customer. Legal basis: the steps you ask us to take before entering a contract (Art. 6(1)(b) GDPR).
Customer accounts
If your agency uses Lente Studio, we store your name, email address, a hashed password, and your role in the agency. Legal basis: performance of the contract.
Content you upload
We store the calendars, posts, captions and media that your agency uploads so we can provide the service. If that content includes personal data about your clients, your agency is the controller and we act as processor on your instructions.
Review links
People who approve posts through a review link can leave a name and, optionally, an email address for notifications. We use these only to attribute approvals and comments and to send the notifications the reviewer asked for.
Transactional email
We send emails you'd expect: review digests, invitations, replies to your access request. We do not send marketing email and there is no newsletter.
Call booking
When a workspace enables native booking, its administrator connects a Google account and chooses which calendars should block availability. Lente receives only opaque busy time ranges from those calendars, not event titles, descriptions, attendees or content. A person booking a call supplies a name, email address, timezone and chosen time so Lente and Google can create the invitation and Meet link. An optional request-for-a-time message is shared with the workspace.
AI-assisted features
When your agency asks Lente to generate content ideas, caption drafts or report insights, Lente sends OpenAI the material needed for that task. This may include the brand profile, voice samples, onboarding answers, performance notes and recent topics. OpenAI processes this material on our instructions, and its API data controls exclude it from model training by default. Lente sends nothing until someone on your team starts an AI task.
Lente stores AI Studio conversations with the client workspace. The history includes your prompts, caption drafts, visual options and reference images, so authorized teammates can reopen the work. Your agency can delete one conversation at a time. Deleting the client workspace also deletes its AI Studio history and registered files.
Connected social analytics
When a workspace administrator connects Metricool and assigns a Metricool brand to a client, Lente imports read-only Instagram account and content analytics for that client. We store publication metadata, captions, aggregate performance and audience measurements, and sanitized provider evidence. We do not request individual follower identities, publish content, or expose the Metricool credential to the browser.
Logs and security
Our servers keep short-lived technical logs (including IP addresses) for security, error diagnosis and rate limiting. Legal basis: our legitimate interest in keeping the service secure.
3. Analytics
The public website uses Umami, an analytics tool that we host, to count visits and page reads. Umami sets no cookies or persistent identifiers. It records aggregate page views without profiling you or tracking you across sites. The website therefore does not need an analytics consent banner. The signed-in application runs no analytics.
4. Processors we use
- Resend: sends our transactional email. Your address passes through their systems when we email you.
- OpenAI: provides the AI model behind the optional text AI features. Brand and content material goes to OpenAI (US) when someone uses one of those features. EU Standard Contractual Clauses and our data processing agreement govern that processing.
- Cloudflare R2: stores uploaded media (images and video) for workspaces that use cloud storage.
- Canva (Canva Pty Ltd): when a team member connects their Canva account, we access their Canva designs on their behalf to import them as post media. We store the OAuth tokens in encrypted form and keep the imported images with the workspace.
- Google Calendar and Google Meet: when a workspace administrator connects Google Calendar, Lente checks the selected calendars' opaque busy ranges and asks Google to create, update or cancel the meeting and attendee invitation. OAuth tokens are stored encrypted and can be disconnected by the workspace.
- Metricool: provides connected social-account analytics when a workspace administrator enables the integration. Lente accesses only the explicitly assigned brand and uses an encrypted agency credential for read-only requests.
- Hosting: DigitalOcean hosts the application and database on an EU server.
We do not sell personal data, and we do not share it with anyone beyond these processors.
5. Retention
We keep access requests for up to 12 months, then delete them. We keep customer account data and content while the contract runs and delete them within 90 days after termination, unless the law requires a longer period. The application removes expired sign-in sessions, finished background tasks and old notifications on a rolling schedule.
Resolved booking-time requests and cancelled or failed booking records are removed after 12 months. Active, confirmed or reconciliation-required bookings remain with the client workspace until they are completed, cancelled, or the workspace is deleted.
Sanitized raw evidence imported from Metricool is removed after 24 months. Normalized social analytics remain with the client workspace while the contract runs so the agency can compare performance over time, and are deleted with that workspace or under the termination schedule above.
We keep database backups for at most 30 days, then destroy them. Data you delete disappears from the backups within that window.
6. Your rights
You can ask us for access to your data, correction, deletion, a portable copy, or to restrict or object to processing. Write to support@lentestudio.io and we will answer within one month. You can also complain to your local supervisory authority; in Italy that is the Garante per la protezione dei dati personali.
7. Changes
If we make a material change, we will update this page and email customers. The date at the top shows the current version.