SHEAR STEEL AI OS

Privacy Policy

Effective date: 24 August 2026

This Privacy Policy explains how SHEAR STEEL AI OS processes information when authorized users access the service or connect supported social media accounts.

1. Information we process

Depending on the features used and permissions granted, the service may process account identifiers, basic profile information, public video or content metadata, engagement and analytics metrics, authorization status, lead-attribution records, system logs, approvals, and operational audit records.

2. TikTok data

During the current read-only integration, the service is designed to request only the permissions required for authorized analytics and content-performance workflows, such as basic account information and public video-list access. The service does not require a user's TikTok password.

3. How information is used

Information is used to provide dashboards, analytics, internal workflow automation, performance tracking, account-connection health checks, evidence-based recommendations, lead attribution, security monitoring, and compliance controls.

4. Authorization tokens and credentials

OAuth access and refresh tokens are treated as sensitive credentials. They are intended to be encrypted and stored server-side, separate from normal application records. Tokens are not intended to be displayed to AI agents, end users, or stored in application audit logs.

5. Information sharing

SHEAR STEEL does not sell personal information. Information may be transmitted to a connected platform when necessary to use its official API, or to service providers that support hosting, security, authentication, or infrastructure under appropriate controls.

6. Data retention

Operational records are retained only as long as reasonably necessary for the service, security, audit, compliance, or legitimate business purposes. Authorization credentials may be removed when an account is disconnected or access is revoked.

7. Security

The service uses access controls, least-privilege permissions, audit logging, human approval gates, and server-side secret handling designed to reduce unauthorized access or misuse. No system can guarantee absolute security.

8. User choices and account disconnection

Authorized account owners may revoke platform access through the relevant platform and may request that the connected account be disconnected from SHEAR STEEL AI OS. Where applicable, locally stored authorization credentials will then be removed.

9. Children's privacy

SHEAR STEEL AI OS is a business system and is not intended for children.

10. Policy updates

This policy may be updated to reflect changes in the service, platform APIs, security practices, or applicable requirements. The effective date will be revised when material updates are published.

11. Contact

Privacy questions or requests may be sent to admin@shearsteel.net or info@shearsteel.net.