Privacy Policy
dbb1.dev LLC · Effective 17 September 2026
dbb1.dev LLC ("we") builds and operates software tools for the businesses we work with. This policy covers every application we operate that connects to a third-party account on your behalf. Today that is:
- DocSites Publisher — an internal publishing tool that lets marketing agencies we work with publish approved posts to the Google Business Profiles and Facebook Pages they manage for their clients.
Information we access
When you connect a Google or Facebook account to one of our tools, we ask for the following and nothing more:
- Google (the openid, email, profile and business.manage scopes): the name and email address on the account, used to label the connection; the list of Business Profile accounts and locations that account manages, with each location's name and storefront address; and the access and refresh tokens needed to publish to those locations.
- Facebook (the pages_show_list, pages_read_engagement and pages_manage_posts permissions): the name and email address on the account, used to label the connection; the list of Pages that account administers, with each Page's name and category; and the Page access tokens needed to publish to them.
We do not access your contacts, messages, files, reviews, post insights, or any data beyond these.
How we use it
Solely to publish content you have reviewed and approved to listings and Pages you manage, and to match those listings to your client records. We also keep a record of each post we publish on your behalf — its text, image and link, and the identifier and address of the published post — as your publishing history. We do not sell your data, share it with third parties, use it for advertising, or use it to develop or train AI models.
Storage and security
Access tokens are encrypted at rest. Data is hosted on Fly.io in the United States and is accessible only to our staff and to the signed-in users of the application it belongs to.
Retention and revocation
We keep the tokens only while the account stays connected. You may disconnect an account at any time inside the tool, or revoke our access at https://myaccount.google.com/permissions for Google or under Facebook Settings → Business Integrations for Facebook. When you disconnect, we delete the stored tokens and cached listing data for that account.
Deletion requests
To have all your data deleted, including your publishing history, email doug@dbb1.dev. We respond within 30 days.
Google API Services
Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. The policy is at https://developers.google.com/terms/api-services-user-data-policy.
Changes
Updates will be posted at this address with a new effective date.