TikTok Integration Disclosure
Effective: April 11, 2026
This document describes how AI Orchestra integrates with TikTok on your behalf when you connect a TikTok creator account, what data we read and write, what we store, and how to revoke access.
It is the canonical, dedicated disclosure for the TikTok integration and is referenced from the main Privacy Policy.
1. Features that use TikTok
The Platform exposes TikTok integration through:
- SMM Planner (
/smm-planner) — schedules and publishes videos
to your connected TikTok creator account using the official TikTok Content Posting API.
A user who does not connect TikTok never grants any TikTok scopes.
2. Data we read from TikTok
- Open ID and basic profile (display name, username, avatar URL)
of your connected TikTok creator account — to display which account is connected and to address publishing API calls correctly.
- Creator info (privacy level options, max video duration,
permissions to comment / duet / stitch) — to render the right publishing options in the SMM Planner UI.
We do not read the videos you have already posted, your follower list, your direct messages, or any analytics not directly tied to a post you created through the Platform.
3. Data we write to TikTok
- Video publication — when you click "Publish" in the SMM Planner
with TikTok selected, the Platform uploads the video to the TikTok Content Posting API and creates a post under your account using the title and privacy level you specified. No content is sent to TikTok unless you explicitly trigger this action.
We do not post on your behalf in any other context.
4. What we store
- Encrypted TikTok access token and refresh token (AES-256, per-row
context, stored in the user_tiktok_tokens table).
- Your TikTok open id, display name, and avatar URL.
- Token expiry timestamps and the granted scope list.
- Records of videos you have published (id, status, timestamps,
the title and privacy level you set).
5. What we do not do
- We do not read videos or analytics you did not publish through
the Platform.
- We do not share TikTok data with any third party.
- We do not sell, rent, lease, sublicense, redistribute, syndicate,
or otherwise monetize TikTok data in any form — including anonymized, de-identified, or aggregated derivatives — in accordance with the TikTok Developer Terms of Service.
- We do not use TikTok data for any purpose other than publishing
the videos you explicitly upload.
- We do not transfer TikTok data to any ad network, data broker, or
other advertising / monetization-related service.
- We do not retain TikTok data after you disconnect.
6. Disconnection and deletion
You can disconnect at any time:
- In the Platform — click "Отключить" / "Disconnect" on the
TikTok connection card in SMM Planner. The stored TikTok tokens are immediately marked as revoked and deleted from our active token store.
- In TikTok — go to *Settings and privacy → Security and login →
Manage app permissions*, find AI Orchestra, and remove access.
- Manual data deletion — email
ai_orchestra_main@ai-orchestra.net to request manual deletion of all TikTok-derived data associated with your account.