Privacy Policy
Last updated: November 23, 2025
GDPR Compliance: This Privacy Policy complies with the General Data Protection Regulation (GDPR) and explains how we collect, use, and protect your personal data.
1. Information We Collect
We collect the following types of information:
- Account Information: TikTok account access tokens (OAuth)
- Content Data: Videos, audio files, and metadata you upload
- Usage Data: Service interaction logs and timestamps
- Technical Data: IP address, browser type, device information
2. How We Use Your Information
We use collected information for:
- Processing and posting your content to TikTok
- Maintaining and improving the Service
- Communicating with you about the Service
- Ensuring security and preventing abuse
- Complying with legal obligations
3. Legal Basis for Processing (GDPR)
We process your data based on:
- Contract Performance: To provide the Service you requested
- Legitimate Interest: To improve and secure our Service
- Consent: When you explicitly grant permission
- Legal Obligation: When required by law
4. Data Sharing and Third Parties
We share data only with:
- TikTok: Required for posting content to your account
- Cloud Storage Providers: For temporary file storage (IONOS S3)
- Legal Authorities: When required by law
We do not sell your personal data to third parties.
5. Data Storage and Security
Your data is:
- Stored on secure servers in the European Union
- Encrypted in transit using SSL/TLS
- Protected with industry-standard security measures
- Retained only as long as necessary for Service provision
6. Data Retention
We retain your data:
- Content files: Deleted after successful posting (typically within 24 hours)
- Account information: Until you request deletion or close your account
- Logs: Up to 90 days for security and debugging purposes
7. Your Rights (GDPR)
Under GDPR, you have the right to:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate data
- Erasure: Request deletion of your data ("right to be forgotten")
- Restriction: Limit how we process your data
- Portability: Receive your data in a machine-readable format
- Object: Oppose processing based on legitimate interests
- Withdraw Consent: At any time, without affecting prior processing
To exercise these rights, contact us at mxmsolar@proton.me
8. Cookies and Tracking
We use minimal technical cookies necessary for Service functionality. We do not use advertising or tracking cookies. You can disable cookies in your browser settings, though this may affect Service functionality.
9. International Data Transfers
If data is transferred outside the EU, we ensure adequate protection through:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions for certain countries
- Your explicit consent when required
10. Children's Privacy
Our Service is not intended for users under 16 years of age. We do not knowingly collect data from children. If you believe we have collected data from a child, please contact us immediately.
11. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes via email or Service notification. Continued use after changes constitutes acceptance.
12. Supervisory Authority
You have the right to lodge a complaint with your local data protection authority if you believe we have not complied with GDPR requirements.