Privacy Policy for Hatorki

Effective Date: March 4, 2026

1. Introduction

Welcome to Hatorki ("we," "our," or "us"). Hatorki is a solo proprietorship based in India, operating a social media content scheduling and management platform. We respect your privacy and are committed to protecting your personal data.

This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application and services (collectively, the "Service").

Company Information

  • Entity: Hatorki (UDYAM Registration No. UDYAM-AS-06-0012190)
  • Type: Solo Proprietorship
  • Address: 49, North Thaikajhora Village, Bhur Tinali Bazar, Kokrajhar, Chirang, Assam – 783375, India
  • Email: [email protected]

2. Information We Collect

We believe in data minimization. We only collect the information absolutely necessary to provide our Service.

Information You Provide Directly

  • Account Information: When you register, we collect your Name and Email Address.
  • User Content: We temporarily store the text, images, videos, scheduled posts, and drafts you create within Hatorki specifically for the purpose of publishing them to your connected platforms.

Information from Connected Social Media Accounts

To schedule and publish content on your behalf, you must connect your third-party social media accounts. When you do, we securely collect and store:

  • Authentication Tokens: Encrypted OAuth Access Tokens and Refresh Tokens.
  • Profile Data: Platform-specific identifiers required to route your posts to the correct account, including: your platform username or handle, your platform account/user ID, your display name, and your profile picture URL.

Payment Information

We use secure third-party payment processors (such as Stripe or Razorpay) to handle transactions. We do not process, collect, or store your credit card details, bank account numbers, or direct financial information on our servers.

Cookies

We use "partial" or strictly necessary cookies required for the core functionality of the Service, such as keeping you logged securely into your account. We do not use analytics, tracking, or advertising cookies.

Data We Do Not Collect

We strictly do not collect device identifiers, browser fingerprints, or IP addresses for tracking or analytics purposes.

Data Retention

We retain your account information, OAuth tokens, and scheduled content only for as long as your account is active and the Service is being provided. Once you delete your account or disconnect a platform, all associated data — including encrypted tokens, profile identifiers, and scheduled content for that platform — is permanently deleted from our servers within 24 hours. Temporary post drafts are deleted immediately after successful publishing. We do not retain any user data after account deletion for analytics or any other purpose.

3. How We Use Your Information

We use the collected information for the following purposes:

  • To authenticate your account and provide secure access to the Service.
  • To successfully publish your scheduled content and drafts to your connected social media platforms.
  • To refresh your authentication tokens, ensuring uninterrupted service without requiring daily logins.
  • To process payments and send billing receipts via our payment partners.
  • To respond to your customer service requests or send critical account notifications.

4. Third-Party Integrations and API Services

Hatorki integrates with multiple third-party platforms. By connecting your accounts, you agree to comply with the respective Privacy Policies and Terms of Service of these platforms.

Our Service currently integrates with the following platforms:

  • YouTube (Google): Hatorki uses YouTube API Services. By connecting your YouTube account, you agree to be bound by the YouTube Terms of Service and the Google Privacy Policy.
  • Meta Platforms (Instagram, Facebook, Threads): By connecting your Meta accounts, you agree to comply with the Meta Privacy Policy.
  • TikTok: By connecting your TikTok account, you agree to comply with the TikTok Privacy Policy.
  • Pinterest: By connecting your Pinterest account, you agree to comply with the Pinterest Privacy Policy.
  • Other Platforms: X (formerly Twitter), LinkedIn, and Bluesky.

Google API Services User Data Policy: Hatorki's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Revoking Third-Party Access:
In addition to deleting your data within Hatorki, you can manually revoke Hatorki's access to your social accounts at any time through the security settings of the respective platforms (e.g., via your Google Account Security settings page).

5. Data Security and Hosting

We implement robust security measures to protect your data:

  • Encryption: All OAuth Access Tokens and Refresh Tokens are strictly encrypted at rest and in transit.
  • Infrastructure: Our application and data are hosted on secure, reputable cloud infrastructure providers with industry-standard physical and network security.
  • Access Limitations: Access to the database is restricted strictly to authorized operations required to run the Service.

Our servers and cloud infrastructure are located in India and the United States. All data transfers between these locations comply with applicable data protection and privacy laws.

6. Your Data Rights and Controls

You have full control over your data directly within the Hatorki application:

  • Right to Deletion: You do not need to email us to delete your data. You can completely delete your account, content, and all associated data instantly via the in-app settings (see our Data Deletion page).
  • Immediate Token Revocation: Upon initiating account deletion, all encrypted OAuth tokens and refresh tokens are permanently destroyed from our servers.
  • Right to Disconnect: You can disconnect individual social media profiles at any time, which will instantly remove our access to post to those specific accounts.
  • Right to Access & Data Portability: You have the right to request a copy of all personal data we hold about you. To make this request, email [email protected]. We will provide the data in a commonly used, machine-readable format within 30 days of your request.

Note for Account Recovery: You do not need to log in to request deletion. If you cannot access your account, simply email [email protected] with your registered email address and we will process your request within 7 days.

7. GDPR Compliance (European Users)

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR).

Lawful Bases for Processing

We process your personal data under the following lawful bases:

  • Contractual Necessity: Processing required to provide the Service you signed up for (e.g., storing your posts and tokens to publish content on your behalf).
  • Consent: Where you explicitly connect a third-party social media account, you consent to Hatorki accessing and storing the necessary platform data.
  • Legitimate Interest: Maintaining the security and reliability of the Service, and communicating critical account notifications.

Your GDPR Rights

In addition to the rights listed in Section 6, you have the right to:

  • Right to Rectification: Request correction of inaccurate personal data.
  • Right to Restriction: Request that we limit how we process your data in certain circumstances.
  • Right to Object: Object to processing based on legitimate interest.
  • Right to Lodge a Complaint: File a complaint with your local Data Protection Authority.

To exercise any of these rights, please contact us at [email protected]. We will respond within 30 days.

8. CCPA Compliance (California Users)

If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA).

We do not sell, rent, or share your personal information with third parties for monetary or other valuable consideration. We do not use your data for targeted advertising. Your data is used solely to provide and operate the Service.

You have the right to know what personal data we collect, request its deletion, and opt out of any future sale of your data (though we do not sell data). To exercise these rights, contact us at [email protected].

9. Children's Privacy

The Service is not intended for use by anyone under the age of 13 (or 16 where required by applicable local law, such as in the EU). We do not knowingly collect personal information from children under 13 (or 16 in the EU). If we become aware that we have collected personal data from a child under the applicable age of consent without verifiable parental consent, we will take immediate steps to delete that information from our servers.

10. Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify you of any material changes by updating the "Effective Date" at the top of this policy or via a prominent notice within the app.

11. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or how we handle your data, please contact us at:

  • Entity: Hatorki (UDYAM Registration No. UDYAM-AS-06-0012190)
  • Address: 49, North Thaikajhora Village, Bhur Tinali Bazar, Kokrajhar, Chirang, Assam – 783375, India
  • Email: [email protected]