Privacy Policy

Effective 2026-08-12 · Updated 2026-09-28 (Instagram connected without Facebook; comments and automatic link messages on Facebook and Instagram; iPhone app: notifications and sharing into the app) · Previously updated 2026-09-25 (rewrote the summary and what we store for the web app and the iPhone app; added usage measurement, service providers and Sign in with Apple) · Operated by Elli & Tee Inc., United States · Contact: support@everysqueeze.com · Support

The short version: EverySqueeze is a web app at everysqueeze.com and an iPhone app that shows the same web app. To publish and track your videos it stores your account, your videos and the data from the accounts you connect on our servers, hosted by Cloudflare. We do not sell your data or use it for advertising, and we do not run third-party analytics, ad trackers or pixels. While you use the app it sends a periodic signal that it is open, which we use to see which accounts are active. You can disconnect any platform, or delete your whole account, from Settings.

What we collect, and where it lives

Your account. Your email address, the name you or your sign-in provider share with us (Google, Apple, Discord or TikTok, depending on how you sign in), your workspace id, the ids of the accounts you connect, and the sign-in records we need to let you back in (a password, if you set one, is stored only as a salted one-way hash).

Your content and connected-account data. The videos, cover images and thumbnails we copy from your TikTok account or that you upload (including from your iPhone's photo library, only when you choose a video), your captions, schedules, templates and product picks, the posting records and coverage we track across platforms, and earnings data from accounts you connect: TikTok Shop orders and commissions, and Amazon Associates and Creator Connections earnings if you use the extension (below). This is stored on our servers so the service can publish and track your videos, and it stays there until you disconnect the account it came from or delete your data (see below).

Messages you send us. Support emails, and notes you send from the app (for example feedback on a product pick), with the workspace they came from.

Usage. While you are signed in and the app is open and in view, it sends a small signal about once a minute that the app is open. From it we keep when your workspace was last active and a daily count of those signals for each workspace. We use this to see which accounts are active and to support you; if you have an assistant, the owner's assistant dashboard shows the assistant's own activity for the day. It is not used for advertising and not shared.

On your device. Your theme choice and a few display preferences are kept in your browser's storage (or the iPhone app's web storage). Clearing site data or removing the app erases them.

Server logs. Our host (Cloudflare) keeps standard, short-lived request logs (IP address, user agent, requested URL) to operate and secure the service. We do not build profiles from them.

No third-party analytics or advertising. The site and the iPhone app contain no third-party analytics, pixels, or ad code, and we do not track you across other companies' apps or websites.

Service providers. A few companies process data for us, only to provide the service: Cloudflare (hosting, storage, video delivery, and a bot check on the sign-in page when it is switched on), Resend (sending sign-in and account emails), Stripe (billing on the website; card details go to Stripe, not to us), Anthropic (an AI model we use to match your videos to products and to draft captions and titles; we send it the relevant video frames or thumbnails, titles, captions and product details, never your passwords or access tokens), a provider of public social media data (looking up public profile and post information for the handles you add), and a provider of Amazon product and price data. We do not sell data to anyone.

Your agreement to our Terms. When you agree to the Terms of Service (when you create an account, or when we ask you to agree to an updated version), we keep a record of the version you agreed to, when and how you agreed, the email on the account, the country our host reported for the request, and a one-way hash of your browser's user agent. We do not store your IP address or your full user agent in it. We keep this record even after your workspace is deleted, as evidence of the agreement.

Connected accounts (for example, TikTok Shop)

Some features let you connect an external account so the tool can show you your own data — for example, connecting TikTok Shop so we can display which products in your showcase match brands on other platforms. When you connect an account:

The EverySqueeze Chrome extension

If you install the extension, it works inside the Amazon Associates session you are already signed in to. It never asks for or stores your Amazon password. With your permission it reads your own earnings reports to build a list of the products you have sold, requests acceptance of Creator Connections and, if you turn it on, Sponsored Products campaigns in your own account, and reads your own Creator Connections earnings report.

What it sends to us: that product list (product IDs, titles, brands and variation IDs), the Amazon account id and store ids it came from, which campaigns were accepted and how each run went, and your Creator Connections earnings figures. All of it is stored in your own workspace only, over HTTPS, and is deleted with the rest of your workspace when you use Delete my data. The rest of what the extension learns stays in your browser's extension storage, kept separately for each Amazon account, and you can remove it for one account from the extension menu.

Nothing is accepted until you confirm the consent step in the extension menu, and you can turn the daily run off at any time. We do not sell or share this data, and we do not use it for advertising.

The EverySqueeze iPhone app

The iPhone app shows the same EverySqueeze web app, so everything on this page applies to it. It asks for access to your camera and microphone, or your photo library, only when you choose to film or upload a video, and it reads only the video you pick. It does not use Apple's advertising identifier and does not track you across other companies' apps or websites. You can delete your account from inside the app: Settings → Account and device → Delete my data.

Notifications. If you allow notifications, the app registers with Apple’s push notification service. We store the device token Apple gives us under your account and use it only to send you EverySqueeze notifications (for example, a video ready for you or a post that needs attention). The token is removed when you log out or delete your account, and you can turn notifications off at any time in your iPhone’s Settings.

Sharing into the app. When you use Share → EverySqueeze from another app, the video or link you picked is handed to the EverySqueeze app on your phone and is uploaded only when you continue in the app. Nothing else from the other app is read.

Signing in with Apple

Where it is offered, you can sign in with Apple. Apple then shares an identifier for your Apple account, your email address (which may be a private relay address Apple forwards to you) and, the first time only, your name. We use them to sign you in and match you to your EverySqueeze account. When you sign in, Apple also issues us a token for your Apple sign-in. We store it encrypted, and we use it for one thing: when your account is permanently deleted, we tell Apple to revoke EverySqueeze's access. You can also stop using Sign in with Apple for EverySqueeze at any time in your Apple ID settings.

Signing in with Discord

Where it is offered, you can sign in with Discord. Discord then shares your Discord user id, username and the email address on your Discord account. We use that email to sign you in only if Discord has verified it, and we match it to your EverySqueeze account exactly as we would an email sign-in link. During each Discord sign-in we also check whether you belong to one Discord server, the AIC community server; members receive lifetime full access. We do not read your other servers, your messages or your friends list.

What we keep. Your email and your EverySqueeze account, as with any sign-in. If you are an AIC member, we keep a grant record with your Discord user id, your email and the workspace the access applies to, so one Discord account grants access only once. That record is kept even after your workspace is deleted, like our other access-grant records. We do not keep Discord's access token: it is used for these reads during sign-in and then discarded. You can remove EverySqueeze from your Discord account at any time under User Settings, Authorized Apps.

Connecting Discord to your account. Where it is offered, you can also connect Discord from Settings while signed in. Discord then shares your Discord user id and username (not your email). We keep your Discord user id and username with your account so that signing in with that Discord account opens it, even if Discord holds a different email, and we run the same one-server membership check. You can disconnect it in Settings at any time; that removes the connection and leaves any access already granted in place.

YouTube API Services

EverySqueeze uses YouTube API Services. If you connect your YouTube channel, you are additionally agreeing to the YouTube Terms of Service, and Google's handling of any data it receives is governed by the Google Privacy Policy.

What we read. Only the channel you authorise, and only your own uploads — video title, publish date, duration, and the public statistics YouTube already shows on the video. We use this for one purpose: to build the coverage checklist that tells you which of your own videos have and have not been published to each platform you use.

What we write. Nothing, unless you explicitly choose a specific video and press publish — or you have explicitly turned on the optional auto-cross-posting setting for your account, in which case the app may upload your new videos to your own channel with titles and descriptions derived from your own content. You can turn that setting off at any time; with it off, publishing is strictly per-video and manual. We never post in bulk to channels you do not own.

What we never do. We do not read channels you do not own, do not access other users' data, do not build advertising profiles, and do not sell, rent or share YouTube data with third parties. Nothing derived from YouTube data is used to target advertising.

Storage and retention. Authorisation tokens are stored encrypted, scoped to your account alone, and are used only to serve your own requests. Video metadata is cached only as long as needed to render your coverage view: it is refreshed on each sync and permanently deleted within 30 days of disconnecting your channel or your account becoming inactive.

Revoking access. You can disconnect inside EverySqueeze at any time, which deletes the stored token and the metadata synced with it. You can also revoke independently of us, at any time, via Google's security settings: myaccount.google.com/permissions. Revoking through Google immediately ends our access whether or not you tell us.

Limited Use. EverySqueeze's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not use Google user data to develop, improve, or train generalised AI/ML models, and we do not transfer it to third parties for that purpose.

Meta Platforms (Facebook & Instagram)

If you connect a Facebook Page or Instagram professional account, we use Meta's APIs to publish the specific videos you choose to your own Page or account, to read back your own posts so your coverage view stays accurate, and, if you turn them on, to help you answer comments on your own posts (below).

Two ways to connect Instagram. You can connect Instagram through your Facebook Page (Facebook Login), or connect your Instagram professional account directly without Facebook (Instagram Login). With Instagram Login we receive your Instagram account id, username and account type, an access token for that account and the permissions you granted; nothing about your Facebook account. When both are connected and your Facebook Page is linked to your Instagram account, posts go through the Page and the Instagram connection waits on standby; a video is never posted to Instagram twice because two connections exist.

What we write. By default, a post is created only when you press Post on a specific video, with a caption you approved. If you turn on the optional auto-cross-posting setting, the app may also publish your new TikTok videos to your own Page or account as they appear — a setting you control and can turn off at any time. What we read: your list of managed Pages (to let you pick one), and the content and basic engagement of posts on that Page, used only to show you your own coverage and results.

Comments and link messages. If you use Engage or Auto DM, we read the comments people leave on your own posts (the commenter's name or username, the comment text and its time), which Meta sends us as they arrive, so you can see them and answer. When you post a comment or send a link, it goes out from your own Page or account. Auto DM sends one private message, only to a person whose own comment asked for the link using a trigger word you chose, with the Amazon link for that video and the disclosure you picked; never to anyone else, never in bulk, and at most 100 a day. Commenters' names and comment text are kept for 30 days, then deleted. We record which comments were answered so no one is messaged twice. We do not read your inbox or other people's posts.

Storage, deletion, revocation. Page and account tokens are stored encrypted and scoped to your workspace alone. A Facebook connection serves both your Page and the Instagram account linked to it, so the Facebook and Instagram cards share one Disconnect button: disconnecting deletes the stored token and every piece of Facebook and Instagram data we synced (post lists, coverage records, pictures, stored comments) — except, when Instagram is also connected directly with Instagram Login, the Instagram data, which stays with that connection. An Instagram Login connection has its own Disconnect button, which deletes its token and the Instagram data it synced. You can also revoke our access at any time: for Facebook in your Facebook settings under Business Integrations, for Instagram Login in the Instagram app under Settings and activity > Website permissions > Apps and websites. Revoking ends our ability to read or post immediately, though it does not by itself delete what we already synced — use Disconnect for that, or Delete my data to remove your whole workspace after the 7-day grace period.

Pinterest

If and when you connect a Pinterest account, the same rules apply: we publish only the Pins you explicitly create from your own videos, read back only your own Pins and their basic analytics to power your coverage view, store tokens encrypted per-workspace, and delete tokens and synced data on disconnect. We never read other users' data or use Pinterest data for advertising.

Affiliate links

Some outbound links are affiliate links and are labeled as such where they appear. If you buy through one, the operator earns a commission from the vendor at no extra cost to you. Vendors do not send us data about you beyond that a purchase occurred through our link.

Your rights

Email support@everysqueeze.com to ask what we hold about you, to request deletion, or to ask questions about this policy. You can also act yourself: disconnect a platform from Settings to delete what we synced from it, or use Settings → Account and device → Delete my data (on the website or in the iPhone app) to delete your whole account, as described above. Step-by-step help is on the Support page.

Children

This service is for working creators and is not directed at children under 18. Every monetization programme it describes requires adulthood; do not use the service if you are under 18.

Changes

Material changes to this policy will be dated here and noted on the site's "What's changed" page. We will not weaken the deletion-on-disconnect commitment retroactively.