Legal
Privacy Policy
Last updated: July 2, 2026
1. Who we are
TopSkills Postiz ("the tool", "we", "us") is a self-hosted social media scheduling application, built on the open-source Postiz engine and operated by the team behind the TopSkills MD channel. It is used to plan, schedule and publish short-form video content to connected social accounts.
2. Who this policy applies to
This policy applies to the people who operate the tool and connect their own social accounts to it. The tool has no public-facing features: it does not create profiles for, or collect data from, viewers, followers or other members of the public.
3. Information we handle
To operate the tool, we handle the following:
- Connected social account credentials: OAuth access tokens and basic account identifiers for the TikTok, YouTube and Instagram accounts you connect to the tool.
- Content you publish: the videos, captions and post settings you upload to schedule or publish your content.
- Operational data: scheduling times, publishing status and basic logs needed to run the tool reliably.
We do not collect personal data from viewers, followers, or any other member of the public.
4. How we use TikTok data
We use TikTok's Login Kit and Content Posting API only for the following purposes:
- To authenticate and connect the TikTok account you authorize.
- To upload your videos, add captions and configure post settings (privacy level, comments, Duet and Stitch).
- To publish or schedule that content to the connected account.
The TikTok permissions (scopes) we request, and their single purpose, are:
- user.info.basic, user.info.profile, user.info.stats: identify the connected TikTok account inside the tool and show its profile information and account statistics to the owner.
- video.list: list videos already published on our own account, for content management and analytics.
- video.upload: upload our own video files to TikTok, including drafts.
- video.publish: directly publish or schedule our own videos to the connected account after the owner approves each post.
We do not use TikTok data for advertising, profiling, resale, or any purpose unrelated to publishing our own content. We do not access data belonging to other TikTok users.
5. How information is stored and protected
The tool is self-hosted on infrastructure controlled by our team. Access tokens and credentials are stored securely and used only to perform the publishing actions described above. Access to the tool is protected behind authentication and limited to its authorized operators.
6. Data sharing
We do not sell, rent, or share connected-account data or content with third parties. Data is transmitted only to the official APIs of the platforms we publish to (TikTok, YouTube, Instagram) as required to deliver our content.
7. Data retention and revocation
Access tokens are retained only while an account remains connected to the tool. The account owner can disconnect an account at any time, and can revoke the tool's access directly from the respective platform's settings. For TikTok: open Settings and privacy → Security & permissions → Apps and websites, select TopSkills Postiz and remove access (also available on tiktok.com under "Manage app permissions"). When access is revoked, the corresponding tokens are removed.
8. Third-party platforms
Publishing through the tool is subject to the terms and privacy policies of the platforms involved, including TikTok. We encourage reviewing TikTok's own policies for how the platform handles data on its side.
9. Changes to this policy
We may update this policy from time to time. The "last updated" date above reflects the most recent revision.
10. Contact
For any question about this policy or how we handle data, contact us at contato@cliqsolutions.com.br.