Last updated: 23 August 2026

Privacy Policy

How BuzzExtra handles your data and connected social account information.

1. Who we are

BuzzExtra ("we", "us") is a software-as-a-service tool that helps creators and agencies manage short-form video publishing across multiple connected social accounts. This policy explains what data we collect and how we use it.

2. Account data

When you create a BuzzExtra account we store your email address, an encrypted password (or OAuth identifier if you sign in with Google), and your subscription plan. We use this to authenticate you and operate the service.

3. Connected YouTube data (Google API)

When you connect a YouTube channel, Google provides OAuth access and refresh tokens and channel information such as the channel ID, title, handle and thumbnail.

We use this access to identify the channel you selected, upload videos and metadata you submit, upload the selected custom thumbnail, add the uploaded video to the playlist you selected, and read channel, uploaded-video and basic public performance information displayed in BuzzExtra.

We request YouTube upload, read-only and `youtube.force-ssl` access; Google describes the latter as broad channel-management access, but BuzzExtra uses it only for the documented playlist assignment and does not delete your YouTube videos, ratings, comments or captions.

BuzzExtra's use and transfer of information received from Google APIs complies with the Google API Services User Data Policy, including its Limited Use requirements.

We do not sell Google user data, use it for advertising or use it to train general-purpose AI models. Human access is limited to security, legal compliance, service support with your consent, or aggregated data that cannot identify you.

Google's handling of data is described in the Google Privacy Policy.

You can review or revoke BuzzExtra's Google access from Google Account permissions.

4. Connected TikTok data

When you connect TikTok, TikTok provides OAuth access and refresh tokens and the basic account information covered by the `user.info.basic` scope, including account identifiers, display name and avatar. We request `video.publish` so BuzzExtra can query the creator-supported posting options shown to you, submit a video and the caption, privacy, interaction and disclosure choices you authorise, and check its publishing status through TikTok's Content Posting API.

We do not request access to your followers, messages, contacts or advertising data. We do not sell TikTok data, use it for advertising or use it to train general-purpose AI models.

Our TikTok integration follows the TikTok Developer Guidelines, Content Posting API guidelines and TikTok Developer Terms of Service.

TikTok's handling of data is described in the TikTok Privacy Policy. You can withdraw access by disconnecting TikTok in BuzzExtra or through TikTok's connected-app controls; see section 14 for deletion details.

5. Connected Instagram data (Meta APIs)

When you connect Instagram, Meta provides OAuth tokens and information about the Instagram Professional accounts linked to Facebook Pages you are authorised to manage, including the Instagram account ID, username and profile image.

BuzzExtra uses permissions including `pages_show_list`, `instagram_basic` and `instagram_content_publish` to let you choose the correct account, verify that it can publish, publish Reels and metadata you authorise, and check the resulting publishing status.

We do not request access to Instagram Direct messages, contacts or advertising accounts, and we do not sell Instagram data, use it for advertising or use it to train general-purpose AI models.

This integration uses the official Instagram Platform and is governed by the Meta Platform Terms and Meta Developer Policies.

Meta's handling of data is described in the Meta Privacy Policy. You can withdraw access by disconnecting Instagram in BuzzExtra or removing BuzzExtra from Meta's connected-app settings; see section 14 for deletion details.

6. Connected Facebook data (Meta APIs)

When you connect Facebook, Meta provides OAuth tokens and information about the Facebook Pages you are authorised to manage, including Page IDs, names, categories, profile images and the Page tasks available to your account. BuzzExtra uses permissions including `pages_show_list`, `pages_read_engagement`, `pages_manage_posts` and `business_management` to let you choose the correct Page, verify its publishing permissions, publish Reels or posts and metadata you authorise, and check the resulting publishing status.

We do not request access to private messages or advertising accounts, and we do not sell Facebook data, use it for advertising or use it to train general-purpose AI models.

This integration uses the official Meta Graph API and is governed by the Meta Platform Terms and Meta Developer Policies.

Meta's handling of data is described in the Meta Privacy Policy. You can withdraw access by disconnecting Facebook in BuzzExtra or removing BuzzExtra from Meta's connected-app settings; see section 14 for deletion details.

7. Connected Pinterest data

When you connect Pinterest, Pinterest provides OAuth access and refresh tokens and basic account information such as an account ID, username and profile image. BuzzExtra requests `user_accounts:read`, `boards:read`, `boards:write`, `pins:read` and `pins:write` so it can show the selected account, list the boards available to it, create a board when you request one, publish Pins and metadata you authorise, and read the resulting Pin status.

We do not request access to advertising data, and we do not sell Pinterest data, use it for advertising or use it to train general-purpose AI models.

Our use of Pinterest data follows the Pinterest Developer Guidelines and Pinterest's OAuth and scope documentation. Pinterest's handling of data is described in the Pinterest Privacy Policy.

You can withdraw access by disconnecting Pinterest in BuzzExtra or revoking the app in Pinterest; see section 14 for deletion details.

8. Connected LinkedIn data

When you connect LinkedIn, LinkedIn provides an OAuth access token and the basic member information covered by the `openid` and `profile` scopes, including your member identifier, name and profile image. BuzzExtra requests `w_member_social` so it can publish posts, videos and metadata that you explicitly authorise to the selected member profile and record the resulting publishing status.

We do not request access to your messages, contacts, connections or advertising data, and we do not sell LinkedIn data, use it for advertising or use it to train general-purpose AI models.

Our use, storage and deletion of LinkedIn data follows the LinkedIn API Terms of Use and the applicable LinkedIn Community Management API review requirements. LinkedIn's handling of data is described in the LinkedIn Privacy Policy.

You can withdraw access by disconnecting LinkedIn in BuzzExtra or removing BuzzExtra from LinkedIn's permitted services; see section 14 for deletion details.

9. Storage, security and retention

OAuth access and refresh tokens are encrypted on BuzzExtra's backend and are never exposed in the browser or shared with another customer.

We retain connected-account identifiers, granted scopes, encrypted credentials, publishing records and provider responses only for operating the connection, showing publishing history, security, troubleshooting and legal compliance.

We do not sell connected-account data or use it for cross-site advertising. When you disconnect an account, BuzzExtra attempts to revoke provider access, marks the connection inactive and stops using its credentials.

Connection and publishing records may remain for a limited period for security, audit, dispute resolution or legal obligations.

Deleting your BuzzExtra account permanently removes your account data, stored credentials and uploaded media from active systems, subject to limited backups and records we must retain by law.

10. Platforms and service providers

Connected-platform data is processed through the APIs of Google/YouTube, TikTok, Meta/Facebook/Instagram, Pinterest and LinkedIn, subject to their own policies: Google Privacy Policy, TikTok Privacy Policy, Meta Privacy Policy, Pinterest Privacy Policy, and LinkedIn Privacy Policy.

We also use contracted hosting, storage, security, analytics and payment providers as needed to operate BuzzExtra. They may process data only for the services they provide to us and under appropriate safeguards. We do not allow third parties to use connected-account data for their own advertising.

11. Cookies and Local Storage

BuzzExtra uses strictly-necessary cookies and browser local storage to keep you signed in, remember your theme and library preferences, and protect against abuse (e.g. captcha tokens).

We also use a privacy-friendly analytics cookie (Google Analytics) to understand aggregate usage. No cross-site advertising cookies are set. You can clear cookies and local storage at any time from your browser settings.

12. Age Restrictions

BuzzExtra is not directed to children. You must be at least 13 years old to create an account, and at least 16 if you reside in the European Economic Area or the United Kingdom. If we become aware that we have collected data from a child below the applicable age, we will delete it promptly.

13. Your rights

You may request access to, correction of, or restriction on the processing of your personal data. Contact us via the contact form to exercise these rights.

14. Disconnecting Accounts and Deletion

You can disconnect any social account from its BuzzExtra channel settings. This stops BuzzExtra publishing to it and attempts to revoke the provider authorisation.

You may also revoke access directly in the provider's security or connected-app settings; for Google/YouTube use Google Account permissions. To permanently delete your BuzzExtra account and associated personal data, submit a verified request through the contact form with the topic "Account Access".

We action verified deletion requests within 30 days, after which your account, projects, stored connected-account credentials and uploaded media are removed from active systems, subject to limited backups and records we must retain by law.

15. Contact

Questions about this policy? Reach us through the contact form.