隱私權政策
一句話版本
你上傳的影片與文案,只有在「產生逐字稿」與「產生文案」這兩個步驟會送到 AI 服務商處理, 用的是付費 API 方案,依其條款不會被拿去訓練模型。發布時則會送到你自己授權的社群平台。 除此之外,你的內容不會離開本系統。
我們蒐集哪些資料
| 類別 | 內容 | 來源 |
|---|---|---|
| 帳號識別 | 使用者代號。本系統不儲存你的密碼;Email 僅用於比對使用授權名單。 | Clerk(第三方登入服務) |
| 你上傳的內容 | 影片檔、逐字稿、文案、封面圖、品牌設定 | 你自己輸入 |
| 社群平台授權 | 各平台的存取權杖,以 AES-256-GCM 加密儲存 | 你完成授權時由平台核發 |
| 操作紀錄 | 誰在何時發布/串接/解除串接的摘要,不含你的內容 | 系統自動記錄 |
資料會送到哪裡
| 步驟 | 送出什麼 | 送到哪裡 | 為什麼需要 |
|---|---|---|---|
| 產生逐字稿 | 影片的音訊(不含畫面) | OpenAI(Whisper API) | 語音轉文字 |
| 產生文案 | 逐字稿與品牌設定(定位、語氣、SLOGAN 等) | Anthropic(Claude API) | 依你的品牌規則改寫成各平台文案 |
| 發布 | 影片檔、文案、封面 | 你自己授權的平台:Facebook、Instagram、Threads、YouTube、TikTok、Bluesky | 這就是發文本身 |
| 其他所有步驟 | — | 不出本系統 | — |
不會送出的:你的帳號與登入資料、系統內的操作紀錄、其他使用者的任何資料。
不想讓影片音訊離開?
在「逐字稿」步驟選擇「手動輸入」,自己貼上文案重點,就完全不會用到 OpenAI。 若連文案產生也不希望送出,那就無法使用本系統的 AI 功能——這是這類工具的本質,不是設定問題。
Google/YouTube 相關說明
當你在「帳號串接」授權 YouTube 時,本系統向 Google 取得的權限僅有兩項:
https://www.googleapis.com/auth/youtube.upload——把你在本系統完成的影片、標題與描述,上傳到你自己的 YouTube 頻道成為 Shorts。這是本工具的核心功能,沒有這項權限就無法代你發布。https://www.googleapis.com/auth/youtube.readonly——僅用於讀取你的頻道名稱與頻道代號,顯示在「帳號串接」頁面,讓你在發布前確認即將發布到哪一個頻道。YouTube Data API 沒有比這更小的範圍能取得這項資訊。
本系統不會讀取或修改你既有的影片、播放清單、觀看數據、留言、訂閱者名單或收益資料, 也不會代表你訂閱、留言或按讚。每一支影片的標題、描述、封面與發布時間,都由你在本系統中自行決定。
使用 YouTube 相關功能時,同時適用 YouTube 服務條款 與 Google 隱私權政策。
如何撤銷:你可以隨時在本系統的「帳號串接」頁面按「解除串接」,我們會立即從資料庫刪除已儲存的 Google 更新權杖(refresh token)與頻道資訊;也可以直接到 https://myaccount.google.com/permissions 撤銷本應用程式的授權。已經發布到 YouTube 上的影片屬於你的頻道,不會因為解除串接而被刪除。
TikTok 相關說明
當你授權 TikTok 帳號時,本系統向 TikTok 取得的權限僅有兩項:
user.info.basic——讀取你的暱稱、頭像與可用的發布設定,用於在發布前顯示「你將發布到哪個帳號」,並取得該帳號實際可選的隱私權限選項。video.publish——把你在本系統完成的影片與文案發布到你自己的 TikTok 個人檔案。
本系統不會讀取你的 TikTok 影片清單、粉絲數或任何統計資料,也不會代表你追蹤、留言或發送訊息。 每一次發布的隱私權限、留言/合拍/合影開關與商業內容揭露,都由你在發布前自行選擇,系統不會代為決定。 你可以隨時在本系統的「帳號串接」解除授權,或到 TikTok App 的設定中撤銷。
資料保存與刪除
- 影片、逐字稿、文案、封面:留在系統裡直到你自己刪除。
- 刪除單篇:在「影片管理」按刪除,會一併刪掉該篇的影片檔與封面。
- 刪除全部:到「帳號與資料」→「刪除我的所有資料」,會清空所有內容並移除所有社群平台的存取權杖。
- 已經發布到平台上的貼文不會被刪除——那些內容在平台上,需要的話請自行到各平台刪除。
- 操作紀錄會保留,內容只有動作摘要,沒有你的內容。
安全措施
- 社群平台的存取權杖以 AES-256-GCM 加密儲存,只有伺服器在實際發文的當下才解密,不會出現在畫面上、也不會回傳到瀏覽器。
- 影片與封面存放於物件儲存,對外一律使用有效期一小時的預簽名網址。
- 每個使用者的資料彼此隔離,所有查詢都以登入身分為條件。
- 上傳的封面圖在儲存前會移除 EXIF 等中繼資料(含 GPS 座標)。
你的權利
你可以隨時查閱自己的操作紀錄、解除任一平台的串接,或刪除全部資料。 若對本政策有疑問,請透過下方聯絡方式與我們聯繫。
Privacy Policy (English)
What we collect
A user identifier from our authentication provider (Clerk); the content you upload (videos, transcripts, captions, cover images, brand settings); encrypted access tokens for the social platforms you connect; and an activity log containing action summaries only. We never store your password.
Where your data goes
- Transcription: the audio track of your video is sent to OpenAI (Whisper API).
- Caption generation: the transcript and your brand settings are sent to Anthropic (Claude API).
- Publishing: your video, caption and cover are sent to the platforms you have personally authorised — Facebook, Instagram, Threads, YouTube, TikTok and Bluesky.
- No other step sends data outside this system.
Both OpenAI and Anthropic state that content submitted through their paid APIs is not used to train their models by default. This service uses those APIs exclusively.
Google / YouTube data usage
We request exactly two Google scopes, and only when you explicitly connect your YouTube account.
youtube.upload is used to upload the video, title and description you prepared in this
service to your own YouTube channel as a Short. youtube.readonly is used
solely to read your channel name and channel ID so we can show you which channel a
video is about to be published to; the YouTube Data API offers no narrower scope for that.
We do not read or modify your existing videos, playlists, analytics, comments, subscribers or revenue data, and we never subscribe, comment or like on your behalf.
Limited Use disclosure: this application's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, Google user data is used only to provide the publishing feature you requested; it is never used for advertising, never sold or transferred to third parties, advertising platforms, data brokers or information resellers, and never used to train AI or machine learning models. No humans read this data except as required for legal compliance, security, or with your explicit consent.
Use of YouTube features is also subject to the YouTube Terms of Service and the Google Privacy Policy. You may revoke access at any time from the Connections page in this service, which immediately deletes the stored refresh token, or at https://myaccount.google.com/permissions.
TikTok data usage
We request exactly two scopes. user.info.basic is used to display which TikTok
account a video will be published to, and to retrieve the privacy options that account is
actually allowed to use. video.publish is used to publish the video you prepared
in this service to your own TikTok profile.
We do not read your video list, follower counts or any analytics, and we never follow, comment or send messages on your behalf. Privacy level, interaction settings and commercial content disclosure are chosen by you before every publish; the system never selects them for you. You may disconnect at any time from the Connections page, or revoke access in the TikTok app.
Retention and deletion
Your content stays until you delete it. Deleting your account data from the "Account & Data" page removes all content, files and stored access tokens. Posts already published to a platform remain on that platform and must be deleted there.
Security
Access tokens are encrypted at rest with AES-256-GCM and decrypted only at the moment of publishing. Media is served through pre-signed URLs that expire after one hour. Uploaded cover images are stripped of EXIF metadata, including GPS coordinates. Each user's data is isolated and every query is scoped to the authenticated identity.