Last updated: January 23, 2026
1. Overview
We operate Draftly to help you connect, upload, and manage TikTok content securely. This Privacy Policy describes what information we collect, how we use it, and the choices you have.
2. Information We Collect
- Account data: Email, name, and hashed password to authenticate you.
- TikTok connection data: Access tokens, refresh tokens, OpenID, username, and granted scopes required to perform uploads on your behalf.
- Usage data: Upload logs, API key metadata, webhook URLs, and scheduling preferences.
- Technical data: IP address, browser metadata, and server logs for security and debugging.
3. How We Use Information
- To authenticate you and maintain sessions.
- To initiate and publish uploads to TikTok using your authorized scopes.
- To provide analytics, audit trails, and webhook notifications.
- To secure the service, prevent abuse, and debug performance issues.
4. Data Sharing
We do not sell your data. We share information only with:
- TikTok: To perform OAuth, upload, and publish actions you request.
- Service providers: Infrastructure or monitoring vendors used to operate this service (if any).
- Legal: When required to comply with applicable law or protect the service from fraud or abuse.
5. Data Retention
We retain account and operational records while your account remains active. Upload logs and analytics are kept for operational visibility and may be pruned periodically. You may request deletion of your account and associated personal data by contacting support.
6. Security
We use HTTPS, scoped tokens, and server-side protections to safeguard data. API keys are shown only once at creation. Access tokens are stored securely and refreshed as needed to provide the service you request.
7. Your Choices
- Disconnect TikTok accounts at any time to stop further uploads.
- Rotate or delete API keys from the dashboard.
- Request account deletion and data removal.
8. Data Deletion
You have the right to request deletion of your personal data. To delete your account and all associated data:
- Log in to your account and navigate to Settings (if available)
- Or contact us directly using the contact information below
- We will process deletion requests within 30 days
- Note: Some data may be retained as required by law or for legitimate business purposes (e.g., fraud prevention)
9. Cookies
We use cookies solely for authentication and session continuity. No third-party advertising cookies are used.
10. Changes to Privacy Policy
We may update this Privacy Policy from time to time. The "Last updated" date at the top reflects the most recent changes. Continued use of the service after changes constitutes acceptance of the updated policy.
11. Contact Us
For privacy questions, data deletion requests, or other inquiries:
- Email: support@drafttok.app
- Website: https://drafttok.app
We will respond to all legitimate requests within 30 days.