BuoyAI Clips Privacy Policy
Last updated September 28, 2026 · BuoyAI LLC
Who this covers
BuoyAI Clips (called Clip Studio inside BuoyAI) is an internal tool of BuoyAI LLC. BuoyAI staff use it to review short videos about the BuoyAI app and publish them to BuoyAI's own YouTube, TikTok and Instagram accounts. It is not offered to the public and it is not part of the BuoyAI app. People who use the BuoyAI app never connect a YouTube account and are covered by the BuoyAI Privacy Policy.
YouTube API Services
BuoyAI Clips uses YouTube API Services to upload videos to BuoyAI's YouTube channel. By using the YouTube features of BuoyAI Clips you agree to the YouTube Terms of Service. Google's handling of data is described in the Google Privacy Policy.
What we access
When a BuoyAI team member connects the BuoyAI channel, Google gives BuoyAI Clips two permissions:
- Upload videos (
youtube.upload): to publish the videos we made. - View channel information (
youtube.readonly): used only to confirm, before every upload, that the connected channel is BuoyAI's. BuoyAI Clips refuses to upload to any other channel.
What we store, and where
- The access token Google issues, stored only on the BuoyAI computer that runs BuoyAI Clips. It is never sent to a BuoyAI server or anyone else.
- The ID and name of the connected channel.
- The ID and link of each video we upload, in our posting log, so we can link to our own posts.
We store no other YouTube data, and nothing about people who watch our videos.
How we use and share it
Only to upload BuoyAI's own videos, with titles and descriptions we wrote, to BuoyAI's channel. We do not sell or share YouTube data, and we do not use it for advertising.
Revoking access
The channel owner can revoke access for BuoyAI Clips at any time in their Google Account at
security.google.com/settings/security/permissions
(Security → Your connections to third-party apps & services). BuoyAI Clips can also revoke its
own access: post_clip.py revoke youtube revokes the token with Google and deletes it from
this computer.
Retention and deletion
- Revoking from BuoyAI Clips deletes the stored token immediately.
- If access is revoked in the Google Account instead, we delete the stored token within 7 days.
- Video IDs in the posting log are deleted on request, or within 30 days after BuoyAI Clips loses access to the channel.
TikTok
BuoyAI Clips connects to BuoyAI's own TikTok account through TikTok Login Kit and the Content Posting API.
What we access
- Basic account info (
user.info.basic): required by Login Kit. We keep only the account's open_id, to know which account is connected, and read no other profile data. - Post videos (
video.publish): to publish a finished video to the account. Before each post, BuoyAI Clips shows the connected account, and a team member chooses who can view the video, whether comments, duets and stitches are allowed, and whether it is disclosed as promotional content. It reads the account's posting options (creator info) only to show those choices. - Upload drafts (
video.upload): to send a finished video to the TikTok inbox as a draft instead, to finish and post in the TikTok app.
What we store, and where
The access token, refresh token and open_id, stored only on the BuoyAI computer that runs BuoyAI Clips; the ID TikTok returns for each post and the choices made for it, in our posting log. We store nothing about other TikTok users or viewers, and we do not sell or share TikTok data.
Revoking and deletion
The account owner can remove BuoyAI's access at any time in the TikTok app's settings, where the apps connected to the account are listed. We delete the stored tokens within 7 days after access is removed, or immediately on request, and upload IDs within 30 days.
When connected, the Instagram access token is stored only on the computer that runs BuoyAI Clips, is used only to publish BuoyAI's own videos to BuoyAI's own account, and can be revoked in Instagram's settings under apps and websites.
Contact
BuoyAI LLC · privacy@buoy-ai.com