Privacy Policy
post2post ("we", "the service") is a social-media scheduling and publishing tool operated by Shmulik Shachar, SHAHAR AI PRODUCTIONS, Israel. This policy explains what data post2post collects, how it is used, and the choices you have.
1. Data we collect
- Account connection data. When you connect a social account (TikTok, Facebook, Instagram, YouTube, Pinterest or Google Business Profile), we receive from that platform, with your permission: your platform user ID (for TikTok, the
open_id), display name, profile picture, and the OAuth access and refresh tokens needed to act on your behalf. - Content you upload. Videos, images, captions, hashtags and the scheduled publishing time you set.
- Publishing results. The post ID and status returned by the platform after publishing (for example "published" or "failed").
- Analytics (optional). Where a platform allows it and you enable it, basic performance metrics for posts published through post2post.
We do not collect payment card details, and we do not read your private messages, followers list or contacts.
2. How we use the data
- To publish the content you schedule, to the account you choose, at the time you choose.
- To show you the connected account name and avatar in the dashboard so you know where content will be posted.
- To show you whether each post succeeded.
We do not use platform data for advertising, profiling, or training AI models, and we do not sell or rent it to anyone.
3. TikTok data
post2post uses TikTok Login Kit and the TikTok Content Posting API. We request only the scopes needed to identify your account (user.info.basic) and to upload and publish videos you choose (video.upload, video.publish). TikTok data is used only to publish your own content to your own TikTok account and is never shared with third parties. Your use of TikTok is also subject to TikTok's Privacy Policy.
4. Google and YouTube data
post2post uses YouTube API Services to upload videos you choose to your YouTube channel. By connecting YouTube you agree to the YouTube Terms of Service, and your data is also handled under the Google Privacy Policy. post2post's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. You can revoke access at any time from Google account permissions.
5. Meta and Pinterest data
Facebook and Instagram data is received through the Meta Graph API and handled under Meta's Privacy Policy; Pinterest data under Pinterest's Privacy Policy. It is used only to publish the content you schedule.
6. Storage and security
Data is stored on a private server operated by us. Access tokens are stored encrypted and are never shown in the interface or sent to any other service. Access to the server is restricted to the operator.
7. Retention and deletion
- Uploaded media is deleted from our server within 30 days after it is published.
- Tokens and account data are kept only while the account stays connected. When you disconnect an account in post2post, its tokens and profile data are deleted immediately.
- You can request deletion of all your data at any time by emailing shaharprod@gmail.com. We complete deletion within 30 days.
8. Revoking access
You can revoke post2post's access at any time from the platform itself: TikTok (Settings and privacy → Security → Apps and services permissions), Facebook business integrations, Google account permissions, or Pinterest (Settings → Security → Apps).
9. Children
post2post is not intended for anyone under 18.
10. Changes and contact
We will post any change to this policy on this page with a new effective date. Questions: shaharprod@gmail.com.
תקציר בעברית
post2post הוא כלי לתזמון ופרסום תוכן לרשתות חברתיות, בהפעלת שמוליק שחר, SHAHAR AI PRODUCTIONS. אנחנו מקבלים מהרשת שחיברתם רק את מזהה החשבון, שם התצוגה, תמונת הפרופיל והרשאות הגישה הנדרשות כדי לפרסם את התוכן שתזמנתם. המידע לא נמכר, לא מועבר לאף גורם ולא משמש לפרסום או לאימון מודלים. ניתוק חשבון מוחק מיד את ההרשאות שלו, ואפשר לבקש מחיקה מלאה בכתובת shaharprod@gmail.com.