1.What this tool is
DSN Content Pipeline is an internal publishing tool operated by Digital Star Network ("DSN") for its own social media workflow. It connects DSN's internal content pipeline to TikTok's official APIs so authorized DSN team members can stage edited video drafts into DSN's own TikTok inbox and, once approved, publish them to DSN's own TikTok accounts. There are no public users and no public sign-ups.
2.Data we collect and why
We process only the minimum data needed to run the publishing workflow:
- TikTok identity data (display name, avatar, open_id, via Login Kit
user.info.basic) — to verify that the person signing in is an authorized DSN team member. - TikTok OAuth tokens (access token, refresh token) — to act on the authorized member's behalf when staging drafts and publishing approved videos.
- Video files and titles — the content the authorized member chooses to stage or publish, sent only to TikTok's Content Posting API.
- Basic operational logs — timestamps and success/error status of upload and publish actions, used for troubleshooting.
3.Data we do not collect
We do not collect payment information, location data, contacts, messages, followers, or analytics. There are no ads, no tracking pixels, and no third-party analytics in this tool.
4.How data is stored
OAuth tokens are stored server-side in a secrets store accessible only to DSN's authorized administrators. Tokens are never exposed in client-side code, never written to logs, and never shared with third parties. Uploaded video files are processed in transit and are not retained by the tool after the upload completes.
5.Data sharing
We do not sell, rent, or share personal data with anyone. Data is sent only to TikTok's official APIs for the purpose the authorized member requested (identity verification, draft staging, publishing). We do not disclose data to law enforcement or regulators except where legally required.
6.Data retention and deletion
OAuth tokens are kept only while the team member's access is active; tokens are revoked and deleted when access is removed or when the member requests deletion. Operational logs are retained for up to 90 days for troubleshooting and then deleted. A team member may request deletion of their data at any time by writing to partnerships@society.pictures; requests are completed within 30 days.
7.Security
We use industry-standard measures including encrypted storage of secrets, least-privilege access, and transport encryption (HTTPS) for all API calls. No system is perfectly secure, and we cannot guarantee absolute security, but we act promptly on any suspected incident.
8.Changes to this policy
We may update this policy; material changes will be communicated to authorized users before taking effect.
This document is published at its stable URL as of September 29, 2026.