Social Factory Privacy Policy
Effective September 20, 2026.
Information used by the service
Social Factory processes configured account identifiers, content drafts and media, scheduling and review records, publication identifiers, performance metrics and operational records to provide and troubleshoot its content management features. Connected services may require credentials and permissions to access their APIs.
TikTok integration status
User-initiated TikTok connection, private Direct Post (SELF_ONLY) and Upload-to-TikTok Draft are implemented for the Sandbox review workflow. Live TikTok publishing is not enabled. The OAuth callback validates a browser-bound state and exchanges the authorization code for access and refresh tokens. Credentials are stored in a restricted credential file, separate from account metadata. The panel does not display or log tokens or callback parameter values. Sandbox review requests user.info.basic, video.publish and video.upload permissions. Consented test media is sent to TikTok for private Direct Post or inbox Draft Upload.
Storage and service providers
Operational data is stored in the deployment's databases and files. Configured social platforms and content generation providers receive information needed for the features used, subject to their own policies. The hosting and network services that deliver this site may process request metadata; the callback handling described above applies to the Social Factory panel.
Retention and choices
Records may remain until removed by the operator; the service does not promise automatic deletion on a fixed schedule. Contact the Social Factory operator through the channel used to arrange your access to request access, correction or deletion of your data, or to stop using a connected account. Platform permissions can also be managed through the relevant platform's account settings. Removing permissions does not itself delete existing local records.
Security and updates
No storage or transmission system can guarantee absolute security. Do not share credentials in content or support requests. Changes to this policy will be posted here with an updated effective date.