Legal / Privacy
Privacy Policy
This policy explains how JINGTANG handles data for the public website, controlled-publishing Workspace, support contact, and official platform integrations enabled for an account.
1. Who we are and scope
JINGTANG is operated by Jingtang (Shanghai) Intelligent Technology Co., Ltd.. This policy applies to jingtangai.com, the JINGTANG Workspace, official support contact, and integrations we explicitly make available.
2. Data we collect
Depending on the feature used, data may include account identity and locale preference; consent evidence; Workspace, membership and role data; user-owned assets and content metadata; approval and publishing records; connected-channel identifiers and authorized API data; audit events; support messages; and limited infrastructure security signals. We do not ask for platform passwords.
3. Why we use data
We use data to provide requested identity, Workspace, approval, publishing, tracking, support, security, audit, revocation, and deletion functions; to preserve user choices; and to meet applicable platform and legal obligations. We do not silently repurpose authorized platform data for unrelated advertising or AI training.
4. Processors, region, and transfers
The public website and account-controlled Workspace are hosted on JINGTANG-controlled Tencent Cloud resources in Seoul, South Korea. The website and authenticated service use separated application, database, private object-storage, configuration, and log boundaries. GitHub handles source and synthetic CI data. Google/YouTube, Meta/Facebook/Instagram, and TikTok handle data under their own global platform infrastructure only after an explicit authorized platform action. Email providers handle messages sent by users.
5. Google, YouTube, Meta, Facebook, Instagram, and TikTok data
When enabled for an account, JINGTANG uses YouTube API Services, the Meta Graph API, Instagram API with Instagram Login, or TikTok Login Kit and Content Posting API through official OAuth only for functions explicitly shown to the user. Facebook access is limited to the Meta user ID and name, eligible Page ID/name/tasks, encrypted user and selected-Page tokens, and the exact confirmed video result. Instagram access is limited to instagram_business_basic and instagram_business_content_publish for one authorized Professional account: user_id, username, encrypted tokens, the exact confirmed MP4 and caption, a REELS container with share_to_feed=false, and its returned publish status. JINGTANG does not read an Instagram feed or media library, metrics, comments, messages, Ads, tags, or unrelated profile data. TikTok access is limited to user.info.basic and video.publish: the TikTok open_id and minimum creator display data, encrypted tokens, the exact confirmed MP4, caption, privacy and disclosure choices, publish_id, and resulting status. JINGTANG does not request TikTok email, feed, prior-video list, followers, comments, messages, or unrelated profile data. Confirmed media and fields are sent only to the selected platform account, whose provider controls the hosted copy. Users can disconnect in JINGTANG and use the relevant platform settings to remove access. Each platform also processes data under its own terms and privacy policy.
6. Retention and deletion
Active Workspace data is kept while needed for the service. Authorized deletion deny-marks access immediately and targets live data deletion within 7 days; encrypted backups expire within 35 days and replay the deletion ledger on restore. Website inquiries are removed after 180 days without an active relationship. Ordinary YouTube Authorized Data and active Facebook, Instagram, or TikTok authorization linkage are periodically validated or removed; applicable disconnect, deauthorization, invalid-authorization, or deletion-request data is removed as soon as possible and within 7 days. Instagram disconnect immediately stops new operations, erases JINGTANG-held tokens and account authorization data, and stops refresh; only minimized one-way callback-correlation and lifecycle evidence may remain. Minimized deletion and security evidence is kept for up to 365 days.
7. Cookies and website measurement
The public website does not use advertising trackers or analytics processors. A first-party locale preference may be stored when a visitor explicitly changes language. The Workspace uses secure session technology needed to provide the requested authenticated service.
8. Security
JINGTANG applies HTTPS, tenant and role boundaries, server-managed sessions, private object storage, OAuth token encryption, restricted service access, safe logging, backup procedures, incident response, and vulnerability management to the current service. See the Security page for details.
9. Choices and contact
Users may request access, correction, deletion, or help with consent and revocation through the support email shown on this site. Requests are verified to protect the Workspace and affected individuals. Applicable law may provide additional rights.
10. Changes
Material policy changes receive a new version and, where required, blocking re-consent before affected platform features continue. The English and Simplified Chinese pages describe the same policy meaning.