SECURITY & TRUST

Transparency leads to trust.
Here's how we protect your data.

Content Oasis handles sensitive platform credentials and your creative intelligence. We've built our architecture around the principle of minimum viable data.

Your credentials staying with you.

We do not store your platform API keys or AI (OpenAI) keys on our servers. When you enter a key in the settings panel, it is stored in your browser's localStorage. All API calls are made directly from your client to the platform proxies, ensuring your keys never touch a persistent database under our control.

The Tech Stack

  • · AES-256 local encryption for sensitive strings.
  • · Client-side API execution via secure proxies.
  • · No persistent database for credentials.

How we authenticate.

Whenever possible, we use OAuth 2.0 flows. This means you login directly on the platform (like LinkedIn or Facebook) and grant us a limited-scope permission token. You can revoke these tokens at any time directly from the platform's security settings.

Supported OAuth

LinkedIn
Facebook
Instagram
Reddit

X and Threads require per-app keys which you provide manually for maximum safety.

Security FAQ

Is my content training your AI?

No. We do not use your generated content or your source scripts to train our models. Your creative intellectual property belongs to you.

What happens if Content Oasis is breached?

Since we don't store your API keys or post history on our servers, there are no credentials for an attacker to steal. Your accounts remain safe.

What data do you actually store?

We store your email address, your waitlist status, and your style profile preferences (which are non-sensitive tuning parameters).

Can I request a data export?

Yes. You can download all your settings and style profile data directly from the settings panel in the tool at any time.