Introduction
This Privacy Policy explains how VITAXIS Content Scheduler collects, uses, and protects information when users connect their TikTok account and use our content scheduling and draft upload services.
Information We Collect
Depending on the product phase and user authorization, we may collect:
- TikTok account basic profile information authorized by the user.
- TikTok open_id or similar authorization identifier.
- Access token and refresh token when required for API access.
- Video upload status and publishing workflow data.
- Content scheduling metadata provided by the user.
- Technical logs required for security and troubleshooting.
How We Use Information
We use the information to authorize TikTok API access, upload draft videos selected by the user, track upload status, manage content schedules, and support internal workflow reporting.
TikTok Data Usage
TikTok data is only used for features authorized by the user, including account authorization and draft upload through TikTok Content Posting API. We do not sell TikTok user data.
- open_id is used to identify the authorized TikTok account.
- access_token is used to call TikTok APIs authorized by the user.
- refresh_token is used to renew API access without requiring the user to sign in again.
Data Storage and Security
Access credentials and tokens are stored securely and are not shared with unauthorized parties. We apply reasonable technical and organizational measures to protect user data.
The current public website is static and does not exchange, transmit, or store OAuth codes, access tokens, or refresh tokens. It does not call TikTok APIs.
Token storage will only be introduced in a future server-side phase after appropriate security controls are in place.
Data Sharing
We do not sell user data. We may share data only when required to operate the service, comply with legal obligations, or protect the security of the application.
User Control and Revocation
Users may revoke TikTok authorization through TikTok settings or contact us to request data deletion.
Data Deletion
Users may request deletion of stored account authorization data and related workflow records by contacting us.
We will process deletion requests within 30 days after receiving a valid request.
Contact
For privacy questions or data deletion requests, contact guozhendong188@gmail.com.