1. Overview
Comercii is a multi-industry directory and managed website platform that enables business owners to manage their online presence, schedule content, and leverage AI-powered tools. To deliver these features, our platform connects to third-party social media APIs on your behalf, including TikTok, YouTube (Google), and Meta (Instagram / Facebook).
By using Comercii, you agree to the collection and use of information described in this policy. If you do not agree, please do not use our services.
Data controller: Comercii acts as the data controller for information we collect directly. For data accessed via third-party APIs (TikTok, Google, Meta), we act as a data processor on your behalf under the terms you agreed to with those platforms.
2. Data We Collect
We collect information in the following categories:
Account & Identity
- Name, email address, and password (hashed)
- Business name, website URL, and industry
- Billing information (processed by our payment provider — we do not store card numbers)
- Profile photo if provided
Usage & Platform Activity
- Pages visited, features used, and session duration
- IP address, browser type, operating system, and device identifiers
- Actions taken within the dashboard (content scheduling, analytics views, etc.)
- Support tickets and correspondence
Social Media Integration Data
When you connect a social media account, we collect data via that platform’s official API. The specific data collected for each platform is described in Sections 3–5 below.
3. TikTok API Data
What TikTok data we collect
- Profile information: TikTok display name, username, profile photo URL, bio, verified status
- Video list: titles, descriptions, video IDs, thumbnail URLs, publish dates, and video URLs for your posted content
- Follower & audience metrics: follower count, following count, and aggregate audience demographics (age ranges, top regions — no individual follower identities)
- Engagement metrics: likes, comments, shares, views, and reach per video and per account
- Content scheduling tokens: OAuth access tokens and refresh tokens required to post on your behalf (stored encrypted; see Section 11)
How we use TikTok data
- Display analytics dashboards showing your content performance
- Schedule and publish content to your TikTok account on your instruction
- Power brand deal management features (matching your reach metrics to advertiser requirements)
- Generate AI-assisted content suggestions based on your historical performance
- Enable competitor benchmarking using only aggregated, anonymised data
Data use limitations
TikTok data accessed through the TikTok API is used solely for the purposes described above. We do not:
- Sell TikTok user data to third parties
- Use TikTok data for advertising targeting outside of your own campaigns
- Share TikTok data with any party not necessary to deliver our stated features
- Aggregate TikTok data in any way that identifies individual TikTok users who are not our customers
TikTok's own privacy policy
TikTok’s handling of your data on their platform is governed by TikTok’s Privacy Policy: https://www.tiktok.com/legal/privacy-policy
Revoking TikTok access
You can disconnect your TikTok account at any time from your Comercii dashboard under Settings → Connected Accounts. Upon disconnection, your OAuth tokens are immediately deleted and we cease all API calls to TikTok on your behalf. Cached analytics data is deleted within 30 days. You may also revoke access directly from TikTok at tiktok.com/setting/connected-apps.
4. YouTube / Google Data
What YouTube data we collect
- Channel name, subscriber count, and channel description
- Video list: titles, descriptions, publish dates, view counts, likes, and thumbnails
- Aggregate audience analytics (watch time, impressions, demographic breakdowns — no individual viewer identities)
- OAuth 2.0 access tokens and refresh tokens required to post or retrieve data on your behalf (stored encrypted)
How we use YouTube data
- Display content performance analytics in your dashboard
- Enable cross-platform content scheduling
- Generate AI-assisted content suggestions
Our use of data accessed via the YouTube API complies with the YouTube API Services Terms of Service and the Google Privacy Policy.
Revoking YouTube / Google access
Disconnect your YouTube account at any time from Settings → Connected Accounts in your Comercii dashboard, or revoke access directly from your Google Account at myaccount.google.com/permissions.
5. Meta / Instagram / Facebook Data
What Meta data we collect
- Instagram / Facebook page name, username, bio, and profile photo
- Post list: captions, media URLs, publish dates, and post IDs
- Follower count and aggregate audience insights (no individual follower identities)
- Engagement metrics: likes, comments, shares, impressions, and reach per post
- OAuth access tokens required to post or retrieve data (stored encrypted)
How we use Meta data
- Display analytics and content performance dashboards
- Schedule and publish posts on your instruction
- Support brand deal matching and content calendar features
Our use of Meta data complies with the Meta Platform Terms and Meta’s Privacy Policy.
Revoking Meta access
Disconnect your account from Settings → Connected Accounts, or remove access directly from your Facebook App Settings.
6. How We Use Your Data
We use the information we collect to:
- Operate, maintain, and improve our platform and features
- Create and manage your account and provide customer support
- Process transactions and send billing-related communications
- Display analytics dashboards and content performance metrics
- Schedule and publish content to connected social media accounts on your instruction
- Power AI-assisted content suggestions, brand deal matching, and competitor benchmarks
- Send service notifications, product updates, and security alerts (you can opt out of marketing emails)
- Detect and prevent fraud, abuse, and security incidents
- Comply with legal obligations
We do not sell your data. We do not sell, rent, or trade your personal data or any social media data collected on your behalf to advertisers, data brokers, or any other third parties.
7. Third-Party API Disclosure
Comercii integrates with the following third-party APIs to deliver social media management features. By connecting an account from any of these platforms, you explicitly authorise Comercii to access, retrieve, and in some cases post data on your behalf:
| Platform | API | Their Privacy Policy |
|---|---|---|
| TikTok | TikTok for Developers API | tiktok.com/legal/privacy-policy |
| YouTube | YouTube Data API v3 (Google) | policies.google.com/privacy |
| Meta Graph API | facebook.com/privacy | |
| Meta Graph API | facebook.com/privacy |
Each integration is governed by both this Privacy Policy and the respective platform’s own terms and privacy policy. You should review each platform’s policies before connecting your accounts.
8. Data Sharing & Disclosure
We do not sell your data. We share data only in the following limited circumstances:
Service Providers
We share data with trusted service providers who assist us in operating our platform (e.g., cloud hosting, payment processing, transactional email, analytics). These providers are contractually obligated to protect your data and may only use it for the specific purpose we engage them for.
Legal Requirements
We may disclose your information if required by law, subpoena, court order, or when we believe in good faith that disclosure is necessary to protect our rights, your safety, or the safety of others.
Business Transfers
If Comercii is acquired, merged, or its assets transferred, your information may be part of that transfer. You will be notified via email and/or a prominent notice on our platform before such a transfer occurs, and your information will remain subject to this Privacy Policy.
With Your Consent
We may share your information with third parties in other circumstances with your explicit consent.
9. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request that we correct inaccurate or incomplete information.
- Deletion: Request deletion of your personal data. We will honour deletion requests subject to legal retention obligations.
- Portability: Request a machine-readable export of your data (account info, analytics history, connected account metadata).
- Objection / Restriction: Object to or request restriction of certain processing activities.
- Withdraw Consent: Where processing is based on consent, withdraw that consent at any time without affecting the lawfulness of processing before withdrawal.
To exercise any of these rights, contact us at privacy@comercii.com. We will respond within 30 days. For residents of the EU/EEA, you also have the right to lodge a complaint with your local supervisory authority.
CCPA (California residents): You have the right to know what personal information we collect, the right to delete it, and the right to opt out of its "sale" (we do not sell personal information). To exercise these rights, contact us at the address above.
10. Consent & Opt-Out
How we obtain consent
When you connect a social media account (TikTok, YouTube, Instagram, Facebook), you are shown an explicit OAuth authorisation screen by that platform listing the specific permissions Comercii is requesting. By approving that screen, you consent to our access under the terms of this Privacy Policy.
Withdrawing consent
You may withdraw consent for any social media integration at any time by:
- Disconnecting the account from Settings → Connected Accounts in your Comercii dashboard
- Revoking app permissions directly on the respective platform (links provided in Sections 3–5)
Marketing communications
You may opt out of marketing emails at any time by clicking "Unsubscribe" in any email we send, or by emailing hello@comercii.com. Transactional and security emails cannot be opted out of while your account is active.
11. Minor Protection
Comercii’s platform is intended for business owners and professionals aged 18 and over. We do not knowingly collect personal information from children under the age of 13 (or under 16 in jurisdictions where that higher threshold applies, such as EU member states under GDPR).
If you are a parent or guardian and believe your child has provided us with personal information without your consent, please contact us at privacy@comercii.com. We will promptly delete the information upon verification.
For users under 18 accessing Comercii with parental consent (e.g., a minor business owner), a parent or legal guardian must agree to this Privacy Policy on the minor’s behalf and is responsible for ensuring the minor’s use of the platform is appropriate.
12. Data Retention & Deletion
Account data
We retain your account data for as long as your account is active. If you close your account, we will delete or anonymise your personal data within 90 days, except where we are required to retain it for legal or regulatory compliance (e.g., billing records may be retained for up to 7 years).
Social media integration data
When you disconnect a social media account:
- OAuth tokens are deleted immediately
- Cached analytics data is deleted within 30 days
- Historical reports you have explicitly exported and saved remain until you delete them
Deletion requests
You may request complete deletion of your data at any time by emailing privacy@comercii.com with the subject line "Data Deletion Request". We will confirm deletion within 30 days.
13. Security
We implement industry-standard security measures to protect your data:
- All data is transmitted over TLS/HTTPS
- OAuth tokens are stored encrypted at rest (AES-256)
- Passwords are hashed using bcrypt with per-user salts
- Access to production systems is restricted to authorised personnel and protected by multi-factor authentication
- We conduct regular security reviews of our codebase and infrastructure
Despite these measures, no method of transmission over the Internet or electronic storage is 100% secure. If we become aware of a data breach that affects your personal data, we will notify you in accordance with applicable law.
15. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, services, or legal requirements. When we make material changes, we will:
- Update the "Last updated" date at the top of this page
- Send an email notification to all active account holders
- Display a prominent notice in the dashboard for 30 days after the change
Continued use of Comercii after changes are posted constitutes acceptance of the updated policy. If you do not agree to the updated policy, please disconnect your accounts and close your account before the effective date of the changes.
16. Contact Us
If you have questions, requests, or complaints about this Privacy Policy or how we handle your data, please contact us:
This Privacy Policy was last reviewed and updated on March 29, 2026. It is provided in English. In the event of any inconsistency between translated versions, the English version shall prevail.