Legal
Privacy Policy
Last updated: October 4, 2026
1. Who we are
Finery Cast (“Finery Cast”, “we”, “us”) is an internal software tool. We use it to publish content created by our own team for our own businesses to social media accounts those businesses own: YouTube channels, Facebook Pages, Instagram professional accounts and TikTok accounts.
Finery Cast is not offered to the public. Only authorized members of our team can sign in. This policy explains what information Finery Cast handles at cast.taskfinery.com and in the tool itself.
2. Information we collect
Visitors to this website
- No tracking. This website uses no analytics, advertising or tracking cookies, and loads no third-party scripts or fonts.
- Server logs. Like any website, our server records technical details of each request (IP address, browser type, page requested and time) to keep the service secure and working.
- Contact form. If you write to us, we receive your name, email address and message.
Team members who use Finery Cast
- Name, email address, a securely hashed password and a two-factor authentication secret, used only to sign in.
- A record of actions taken in the tool (for example “post scheduled”, “account connected”), kept for security.
Connected social media accounts
When an authorized team member connects one of our businesses’ accounts, they sign in on the platform’s own page and approve access. The platform then gives Finery Cast:
- the account’s ID, name or handle and profile picture link (to show which account is connected);
- for Facebook, the list of Pages the person manages and, for each Page we choose to connect, its linked Instagram professional account;
- access tokens and refresh tokens that let Finery Cast publish on that account’s behalf.
We never receive or store anyone’s platform password.
Content we publish
The videos, photos, captions, titles, schedule times and settings our team prepares, plus the result from each platform (the post ID, link and any error message).
3. How we use information
- To publish the content our team chose, to the accounts our team chose, at the time our team chose.
- To show which accounts are connected and whether each post succeeded, with its live link.
- To keep connections working by refreshing access tokens automatically.
- To keep Finery Cast secure, prevent misuse and fix problems.
- To answer messages sent through our contact form.
We do not sell information, use it for advertising, build profiles of people, use it to train artificial-intelligence models, or read private messages, comments or follower lists.
4. Google and YouTube data
Finery Cast uses the YouTube API Services. When a YouTube channel is connected, we request only these permissions:
youtube.upload— to upload videos our team prepared to that channel, with their title, description and privacy setting;youtube.readonly— to show the channel’s name and confirm which channel is connected.
By connecting a YouTube channel to Finery Cast, the person connecting it agrees to be bound by the YouTube Terms of Service. Google’s handling of data is described in the Google Privacy Policy.
Finery Cast’s use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Google user data is used only to provide the features described above. It is not transferred to anyone else except as needed to provide those features, to comply with the law, or as part of a merger or acquisition with notice. No person reads it unless we have permission for a specific item, it is needed for security or the law, or it has been made anonymous.
Access can be revoked at any time from Finery Cast or on the Google Account “Third-party connections” page (security.google.com/settings/security/permissions). When access is revoked or the channel is disconnected, we delete its stored tokens; see Retention.
5. Facebook and Instagram data
When a Facebook Page and its Instagram professional account are connected, Finery Cast uses these Meta permissions, only for the Pages and Instagram accounts our businesses own:
pages_show_listandbusiness_management— to list the Pages the person manages so they can choose which of our Pages to connect;pages_read_engagement— to read the connected Page’s basic details (name, ID, linked Instagram account) and confirm a post went live;pages_manage_posts— to publish videos, photos and text posts to the connected Page;instagram_basic— to read the connected Instagram account’s username and ID;instagram_content_publish— to publish Reels and photo carousels to the connected Instagram account.
Access can be removed at any time from Finery Cast or in Facebook under Settings & privacy → Settings → Business integrations (or Apps and websites). Meta’s handling of data is described in the Meta Privacy Policy. You can also ask us to delete data: see Data deletion.
6. TikTok data
When a TikTok account is connected, Finery Cast uses these TikTok permissions:
user.info.basic— to show the account’s display name and avatar;video.publishandvideo.upload— to send videos our team prepared to that account, with the caption and privacy setting chosen.
Access can be removed at any time from Finery Cast or in the TikTok app under Settings and privacy → Security & permissions → Apps and services permissions. TikTok’s handling of data is described in the TikTok Privacy Policy.
7. When information is shared
- With the platforms you post to. Publishing a post sends its content to that platform — that is the purpose of the tool.
- With our service providers that run the service for us: our server host and Cloudflare, which protects and delivers this website. They may process information only to provide their service.
- When required by law, or to protect the rights, safety and security of our users, our businesses or the public.
We do not sell or rent information to anyone.
8. How we protect information
- Platform access tokens and app secrets are encrypted in our database (XChaCha20-Poly1305) and are never shown again after they are saved.
- All traffic is encrypted with HTTPS.
- The admin area requires a password and two-factor authentication, and is limited to authorized team members.
- Each business’s connected accounts and posts are kept in a separate workspace.
No system is perfectly secure, but we work to protect information and will act promptly if a problem occurs.
9. How long we keep information
- Access and refresh tokens: kept only while an account is connected; deleted immediately when it is disconnected or when we learn access was revoked.
- Uploaded videos and photos: deleted from our server within 7 days after they are published (or after a post is cancelled).
- Post records (caption, channels, time, result and link): kept for up to 12 months so our team can see what was published, then deleted.
- Contact messages: kept for up to 12 months.
- Server logs: kept for up to 30 days.
10. Your choices and deleting data
You can ask us what information we hold about you, ask us to correct it, or ask us to delete it. To remove Finery Cast’s access to an account and have its data deleted, follow the steps on our Data deletion page or contact us through our contact form. We complete deletion requests within 30 days and confirm by email.
11. Children
Finery Cast is a business tool for our own team and is not directed to children. We do not knowingly collect information from anyone under 16.
12. Changes to this policy
If we change this policy, we will update the date at the top of this page. Important changes will also be shown in Finery Cast.
13. Contact
For any privacy question or request, contact us through our contact form.