Privacy Policy
Last updated: July 22, 2026
ai.cewbin is a web-based video preparation and upload tool for creators and brand users. This Privacy Policy explains what information we collect, how we use it, and how users can control their data.
Information We Collect
We collect information that is necessary to provide the TikTok upload workflow, including:
- Basic TikTok account information returned through TikTok OAuth, such as display name, avatar, and account identifier.
- User-selected video files or video metadata, depending on the user's browser storage settings.
- Caption text, hashtags, privacy selections, content disclosure selections, and upload history.
- Technical information needed to operate the service, such as timestamps, upload status, and error messages.
How We Use TikTok Data
We use TikTok OAuth to let users connect their own TikTok account. TikTok access tokens are used only to make authenticated TikTok API requests that support the user-controlled upload workflow.
We use TikTok account information to show the connected account in the dashboard so the user can confirm that they are uploading to the correct TikTok account.
How We Use Uploaded Videos
Videos are selected by the user and are used only for previewing and uploading content to TikTok after the user confirms the upload. We do not upload videos automatically.
Data Storage
TikTok access and refresh tokens are kept on the application server and are not exposed to browser JavaScript or local storage. The current sandbox deployment stores token sessions temporarily in server memory. Captions, privacy selections, and upload history may be stored in the user's browser local storage. Selected video files may be stored in browser IndexedDB when available.
Sandbox and Upload Processing
Sandbox target users authorize through TikTok's real Login Kit flow. If TikTok grants the video.upload scope and the user explicitly confirms an upload, the selected video passes through the application server and is transferred to TikTok as an inbox draft. The application server does not retain the video after the request completes.
If the authorized token does not include the video.upload scope, the application displays a clearly labeled upload mockup for developer review. The mockup demonstrates selection, preview, settings, confirmation, progress, and completion entirely in the browser. It does not transmit the selected video, caption, or settings to TikTok and does not create a TikTok publish ID.
Data Sharing
We do not sell user data. We share data with TikTok only when the user explicitly initiates the TikTok upload workflow through the application.
User Control
Users can disconnect their TikTok account at any time, which requests revocation of the TikTok access grant. Users may also delete local videos and upload records from the application interface.
Data Deletion Requests
Users may request deletion of their stored account data, upload history, and related records by emailing support@ai.cewbin.com. Deletion requests are processed within 30 days.
Prohibited Use
This application does not provide automated likes, comments, follows, scraping, account growth automation, or bulk posting behavior.
Changes to This Policy
We may update this Privacy Policy from time to time. Updates will be posted on this page with a new effective date.
Contact
For privacy questions or data deletion requests, email support@ai.cewbin.com.