Legal

Privacy Policy

Last updated: 20 August 2026

This policy explains what HCE Marketing Bot accesses, why it needs that access, how long it is kept, and how you can withdraw your authorization or ask us to delete your data. It describes only what the application actually does.

1. What HCE Marketing Bot is

HCE Marketing Bot ("the application", "we", "us") is a social media content management and publishing tool operated by Helio Centric. It helps users prepare their own video content and publish it to social media accounts that have been explicitly authorized by their owners or administrators.

The application is currently in development. It does not scrape social media platforms, and it does not access any account that has not been connected through that platform's own authorization flow.

2. How authorization works

To use the application with a social media account, the account's owner or administrator connects it by signing in on the platform's own website and granting permission there. The platform then issues us an access token representing the permissions granted.

We never ask for, receive, or store your platform password. The token is what lets the application act on the account, and only for the actions you have authorized. Authorization lasts until you revoke it — see section 7.

3. What we access, and why

We only receive information because of an action you take. Specifically:

  • Access tokens issued by the platform. Stored so the application can carry out the publishing you request without asking you to sign in again each time. Some platforms also issue a refresh token, which is used to keep the authorization valid.
  • Basic account information. Where the platform provides it as part of sign-in or requires it for publishing — typically an account identifier, username or display name, and profile image. We use it to show you which account you are publishing to and to attach your authorization to the correct account.
  • Content you submit for publishing. The video files you upload and the details that go with them, such as captions and the publishing options you select. Processed so the content can be prepared and delivered to the platform you chose.
  • Publishing records. Whether a submission succeeded or failed, when it was attempted, and any error the platform returned — so you can see the outcome and so we can diagnose problems.
  • What you send us directly. If you email us, we process your message in order to reply.

We request only the permissions needed to provide these publishing features. We do not request access to private messages, follower data, advertising accounts, or other platform data unrelated to publishing your content.

4. How we use it

We use this information only to:

  • authenticate you with the platform you connected;
  • identify the authorized account content will be published to;
  • prepare and publish the content you submit, and report the result back to you;
  • diagnose errors and keep the application working;
  • respond to your questions and requests; and
  • comply with applicable law.

We do not sell information, and we do not use it for advertising or profiling. We do not use your content for anything other than the publishing you asked for.

5. Who it is shared with

Content and its accompanying details are transmitted to the platform you selected — that is the point of the request. We may also use infrastructure providers, such as hosting and storage services, which process information on our behalf and only for that purpose. We may disclose information where the law requires it. We do not sell, rent, or trade information about you.

6. How long it is kept

  • Access tokens are kept while the account remains connected. Disconnecting the account, or revoking authorization on the platform, ends their use and they are discarded.
  • Submitted video files are kept only as long as needed to prepare and deliver them and to show you the outcome, then deleted from our systems. Content already published is held by the platform under that platform's own policies.
  • Account information and publishing records are kept while your account with the application is active, and briefly afterwards for troubleshooting and legal purposes.

Backups may retain data for a short period after deletion, in the ordinary course of our providers' backup cycles, until they are overwritten.

7. Revoking authorization

You can withdraw authorization at any time, in either of two ways:

  • On the platform. Each platform has a settings screen listing the applications connected to your account. Removing HCE Marketing Bot there immediately ends our ability to act on it.
  • In the application. Disconnecting an account discards the stored access token for it.

Revoking stops all future access. It does not by itself remove content already published — delete that on the platform — and it does not automatically delete the other records we hold. For that, see the next section.

8. Deletion requests

You can ask us to delete the information we hold about you. Email 888hce.org@gmail.com from an address we can reasonably associate with your account, telling us which account it concerns. We will confirm receipt and act without undue delay.

Deletion covers stored access tokens, account information, any submitted content still held by us, and publishing records, except where we must retain something by law. It cannot cover content already published on a platform, or data the platform holds under its own policies.

9. Security

We take reasonable steps to protect the information we hold: access tokens are stored in a restricted location and used only for the actions you request, access to production systems is limited to those who need it, and connections to platforms use the secure transport those platforms require.

We do not claim any security certification, audit, or formal compliance program. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.

10. Third-party platforms

HCE Marketing Bot is an independent application. It is not affiliated with, endorsed by, sponsored by, or certified by TikTok, Instagram, Facebook, or any other platform, and no such relationship is claimed or implied.

When you connect an account or publish content you are also interacting with that platform directly. Your use of the platform, and any content you publish there, is governed by that platform's own terms of service and privacy policy, which are separate from this policy and outside our control.

11. Children

The application is not directed to children, and we do not knowingly collect information from children. If you believe a child has provided us with information, contact us and we will delete it.

12. Changes to this policy

We may update this policy as the application develops — for example when an integration goes live. We will revise the "Last updated" date above, and take reasonable steps to notify users of material changes. Continuing to use the application after a change means you accept the updated policy.

13. Contact

For privacy questions, authorization questions, or deletion requests, email Helio Centric at 888hce.org@gmail.com.