We're in beta. Found a bug or have feedback? Email us: [email protected]

← Back

Privacy Policy

Last updated: September 23, 2026

Introduction

Brika ("Brika", "we", "us", or "our") provides a creator growth tracking platform for Instagram and TikTok, including follower snapshots, viral post emails, weekly digests, AI-generated content plans, and competitor benchmarking. This Privacy Policy explains what information we collect when you use brika.ai and our related services (the "Service"), how we use and share it, and the choices you have. By creating an account or otherwise using the Service, you agree to the practices described here.

Information We Collect

We collect the following categories of information:

  • Account information: your name, email address, and password. If you sign in with Google instead, this is the name, email address, and profile picture Google shares with us (see "Sign in with Google" below).
  • Profile and settings: your subscription plan, notification preferences, an identifier for any messaging integration you connect, and any content or posting profile you build in the app.
  • Creator and content data: publicly available Instagram/TikTok profile and post data for the creators you add to your watchlist, retrieved through third-party data providers. This is public information about creator accounts, not your personal data.
  • Content you upload: screenshots, reel links, or other materials you submit for AI analysis (e.g. the AI Reel Analyzer).
  • Payment information: processed directly by a third-party payment processor. We receive your subscription status and billing history, but we never receive or store your full card number.
  • Usage and device data: pages visited, features used, browser/device type, IP address, and approximate location, collected automatically through cookies and analytics tools (see "Cookies, Analytics & Session Recording" below).
  • Communications: messages you send us for support, and delivery data for emails and any connected messaging notifications we send you.

Sign in with Google

If you choose "Sign in with Google," Google shares your name, email address, and profile picture with us so we can create and authenticate your Brika account. We do not request access to your Gmail, Google Drive, contacts, or any other Google data, and we do not read or store anything from your Google account beyond this basic profile information. Our use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Cookies, Analytics & Session Recording

We use cookies and similar technologies to keep you signed in and remember your preferences (e.g. light/dark theme). We also use third-party analytics tools to understand how the Service is used and to improve it. Some of these tools may record anonymized interaction sessions (clicks, scrolling, page views) to help us diagnose bugs and improve usability; fields marked for masking, and payment or credential inputs, are never captured. You can disable cookie-based analytics using your browser's tracking-protection or cookie settings; core account and billing functionality does not depend on analytics cookies.

How We Use Information

  • To create and secure your account, and authenticate you (including via Google Sign-In)
  • To operate core features, including creator tracking, viral post emails, and competitor sets
  • To generate AI-powered content plans, Radar breakdowns, and Reel analysis using your data and the public creator data in your watchlist
  • To process payments and manage your subscription
  • To send service emails, alerts, and, if enabled, notifications through a connected messaging service
  • To measure product usage and improve performance and reliability
  • To detect, prevent, and investigate fraud, abuse, and security incidents
  • To communicate product updates, and, where you have not opted out, occasional marketing emails through a third-party marketing platform

AI Processing

Features like weekly digests, AI content plans, Content Radar scoring, and the Reel Analyzer send relevant account and creator data (e.g. follower trends, post metrics, uploaded screenshots) to a third-party AI service provider to generate the analysis or written content you see in the app. That provider processes this data solely to return the requested output and does not use it to train its models. If you choose to connect Brika to an external AI assistant, see "AI Assistants and MCP Connections" below for what it can access and how to revoke it.

AI Assistants and MCP Connections

Brika runs a Model Context Protocol (MCP) server at https://www.brika.ai/api/mcp. MCP is an open standard that lets AI assistants such as Claude, ChatGPT, Cursor and other MCP clients call tools on your behalf. Nothing is connected unless you set it up: an assistant can only use Brika after you approve it through Brika's OAuth sign-in and consent screen, or after you create a personal API key in Settings and add it to the assistant yourself.

Once connected, the assistant can:

  • Read your watchlist and the stats and follower history of the creators you track
  • Read your Content Radar posts and Brika's breakdowns of those posts
  • Read your content plans and posting-time recommendations
  • Search your tracked creators and their post captions
  • Add a creator to your watchlist, which uses one of your plan's creator slots
  • Generate a new weekly content plan, which replaces that week's plan in Brika

It cannot post, comment, send messages or change anything on Instagram or TikTok, and it cannot access your billing details or password.

Brika does not receive or store your conversations with the assistant. We only receive the tool calls the assistant makes. For each call we log the tool name, whether the connection uses OAuth or an API key, and the time, for security, abuse prevention and usage analytics; we do not store the arguments or the results. These logs are kept while your account is active and deleted with your account. The OAuth and API-key credentials themselves are stored only as one-way hashes.

The assistant's provider (for example Anthropic for Claude or OpenAI for ChatGPT) handles your conversation, including the Brika data returned to it, under its own privacy policy.

You can revoke access at any time in Brika under Settings, AI Integrations: "Disconnect all" removes every app connected through OAuth, and revoking an API key disables it. Revoked credentials stop working immediately. Questions:[email protected].

How We Share Information

We do not sell your personal data. We share information only with third-party service providers who process it on our behalf, under contractual confidentiality and data-protection obligations, including providers who help us with:

  • Database, authentication, and file storage for your account data
  • Application hosting and content delivery
  • Retrieving public information about the creators you track
  • Generating AI-powered content plans and analysis
  • Billing and payment processing
  • Delivering transactional and alert emails
  • Optional messaging notifications, if you connect a messaging integration
  • Email marketing and customer relationship management
  • Product analytics and session recording
  • Rate limiting and abuse prevention

We may also disclose information if required by law, to protect our rights or the safety of our users, or in connection with a merger, acquisition, or sale of assets, in which case we will notify you of any change in ownership or use of your data.

Data Retention

We keep your data for as long as your account is active and as needed to provide the Service. You may request account deletion at any time by emailing [email protected]. After deletion, we remove or anonymize your personal data within a reasonable timeframe, except where we are required to retain it for legal, tax, or fraud-prevention purposes (for example, billing records).

Data Security

We use industry-standard safeguards, including encryption in transit, access controls, and row-level security on our database, to protect your information. No method of storage or transmission over the internet is 100% secure, so we cannot guarantee absolute security, but we work to promptly address any vulnerabilities we identify.

Your Rights and Choices

  • Access, correct, or export your account data from Settings, or by emailing us
  • Delete your account and associated personal data at any time
  • Disconnect Google Sign-In, a connected messaging integration, a connected Instagram/Facebook account, or any AI assistant connection from Settings (see our Instagram & Facebook Data Deletion page for details on that specific connection)
  • Unsubscribe from marketing emails via the link in any marketing email, without affecting transactional/service emails
  • Depending on where you live (e.g. under GDPR or CCPA), you may have additional rights to restrict or object to certain processing, or to lodge a complaint with your local data protection authority

Children's Privacy

Brika is not directed to, and does not knowingly collect personal information from, anyone under 16. If we learn that we have collected personal information from a child under 16, we will delete it. If you believe a child has provided us with personal information, please contact us at [email protected].

International Data Transfers

Brika and the third-party providers listed above operate infrastructure in multiple countries, including the United States and the European Union. If you access the Service from outside these regions, your information may be transferred to and processed in a country with different data protection laws than your own. Where required, we rely on appropriate safeguards, such as standard contractual clauses, for these transfers.

Changes

We may update this policy from time to time. If we make material changes, we will update the "Last updated" date above and, where appropriate, notify you by email or through the Service. Continued use of Brika after changes take effect means you accept the updated policy.

Contact

For privacy-related questions or to exercise any of the rights described above, email [email protected]. You can also reach general support at [email protected].