Privacy Policy
Last updated: June 20, 2026 · Effective: June 20, 2026
This Privacy Policy explains how Fortune Cat Studios, an independent software studio operated by Dan Andrews ("Fortune Cat Studios," "we," "us"), collects, uses, and protects information in connection with our website and the tools we build (the "Services"), including features that connect to third-party platforms such as TikTok and Google/YouTube through their official APIs.
We follow a simple principle: we collect only what a feature needs, we use it only for that feature, and we never sell it.
1. Who we are
Fortune Cat Studios is an independent studio that builds and operates its own software products, based in the State of Maryland, United States. You can reach us at [email protected] for any privacy question or request.
2. Information we collect
- Information you provide — your name, email address, and any message or content you submit when you contact us or use a tool.
- Connected-account data — when you authorize a connection to a third-party account (such as TikTok or Google/YouTube), we receive only the specific data that platform grants for the feature you enabled. See Sections 5 and 6 for exactly what that is.
- Usage data — basic technical information such as browser type, pages viewed, and timestamps.
- Cookies — only the essential cookies needed to operate the site (see Section 9).
3. How we use information
- To provide and operate the feature you are using.
- To authenticate you and connect the third-party accounts you explicitly authorize.
- To respond to your requests and communicate with you.
- To protect security, prevent abuse, and meet legal obligations.
We do not sell your personal information, and we do not use data obtained through any platform API for advertising, profiling, or training machine-learning models. We use it only to deliver the feature you requested.
4. Connected platforms and APIs (general)
Some features connect to third-party platforms through their official APIs. When you authorize a connection, your use of that platform remains governed by that platform's own terms and privacy policy. We access, use, store, and transfer platform data only as permitted by that platform's developer policies, and only to deliver the feature you enabled. You can revoke our access at any time through the platform's own settings or by emailing us.
5. TikTok
If you connect a TikTok account, we use TikTok's official APIs solely to let you publish content to your own account.
- What we access: your basic profile (such as your TikTok open ID, display name, and avatar) and your "creator info" (the privacy options and posting limits TikTok reports for your account). We access this only via TikTok's Login Kit and Content Posting API.
- How we use it: to identify your connected account, to show you the posting options TikTok allows, and to publish only the videos and captions you submit or schedule through our tools. We never post on your behalf without an action you initiate.
- Storage & sharing: we store your TikTok access and refresh tokens on access-controlled, private infrastructure, encrypted in transit. We do not sell, rent, or share your TikTok data with third parties, and we do not use it for advertising, profiling, or model training.
- Revoking & deletion: you can disconnect us at any time in the TikTok app under Settings → Security & permissions → Manage app permissions. Doing so revokes our access; we then delete the tokens we hold. You can also email [email protected] to request deletion.
- Compliance: our use of TikTok data adheres to the TikTok Developer Terms of Service and TikTok's platform and content-sharing guidelines.
6. Google / YouTube
If you connect a Google account, we use Google OAuth and the YouTube Data API solely to upload or manage the videos you authorize on your own channel. We request the narrowest scopes needed for that feature. Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements. You can revoke our access at any time at myaccount.google.com/permissions.
7. How we share information
- Service providers who process data on our behalf (such as hosting and infrastructure) under confidentiality obligations.
- Legal requirements — when required by law or to protect rights, safety, and security.
- Business transfers — in connection with a merger, acquisition, or sale of assets, with notice where required.
We never sell personal information.
8. Data retention and deletion
We keep personal data only as long as needed for the purposes described here, or until you revoke access or ask us to delete it. You may request access to, correction of, or deletion of your data at any time by emailing [email protected]; we will respond within 30 days. To delete data from a connected platform, revoke our access in that platform's settings (which prompts us to delete the associated tokens) or contact us.
9. Cookies
We use only the essential cookies required to operate the site. We do not use advertising or cross-site tracking cookies. You can control cookies through your browser settings.
10. Security
We protect information with reasonable technical and organizational measures, including encryption in transit and access controls, and we keep platform credentials on private infrastructure that is not exposed to the public internet. No method of transmission or storage is perfectly secure, and we cannot guarantee absolute security.
11. Your rights
Depending on where you live, you may have rights to access, correct, delete, restrict, or port your personal data, and to object to certain processing. To exercise these rights, contact [email protected]. Residents of the EEA/UK (GDPR) and California (CCPA/CPRA) may have additional rights, which we honor where applicable.
12. Children
Our Services are not directed to children under 13, and we do not knowingly collect their personal data. If you believe a child has provided us data, contact us and we will delete it.
13. Changes to this policy
We may update this policy from time to time. We will post the revised version here and update the "Last updated" date above. Material changes will be communicated where appropriate.
14. Contact
Questions about this policy or your data: [email protected].
