ClipEmber Privacy Policy
Effective August 13, 2026. This policy covers the ClipEmber web application at clipember.com and the ClipEmber API. See also our Terms of Service.
1. Who we are
ClipEmber is a video repurposing service: it turns a long video into short vertical clips with burned-in captions, and can publish those clips to social accounts you connect. ClipEmber is operated by ClipEmber from Ukraine (“ClipEmber”, “we”, “us”). We are the data controller for the data described here. For any privacy question or request, write to hello@clipember.com — we answer from a human address, not a no-reply.
ClipEmber is an independent product. It is not affiliated with, endorsed by, or sponsored by TikTok, YouTube/Google, or Instagram/Meta.
2. What data ClipEmber collects
| Category | What exactly |
|---|---|
| Account | Email address and display name. If you sign in with Google, we receive only your email address and name from Google — never your Google password. |
| Your content | Videos you upload, video URLs you paste, the source video files ClipEmber downloads for you, the transcript (including word-level timings), the clips we render, thumbnails, your editor settings and caption edits, and any B-roll or music selections you add. |
| Product activity | Projects and their processing status, credit ledger entries (why a credit was spent or granted), schedule entries, clip thumbs up/down, share links you create and their view counts, API keys you generate, and rate-limit counters. |
| Connected accounts | For each social account you connect: the platform, your handle or channel name, avatar URL, the platform account id, the granted scopes, and the OAuth access and refresh tokens needed to publish on your behalf. Details in section 3. |
| Payments | If you buy credits or a plan, Stripe processes the payment on its own checkout page. ClipEmber stores the Stripe session/invoice identifier, the amount, and what it granted. ClipEmber never sees or stores your full card number. |
| Technical | Server logs from our hosting providers (IP address, user agent, timestamps, requested paths) used for security and debugging. ClipEmber runs no advertising or cross-site tracking pixels. |
3. Data from connected platforms (TikTok, YouTube, Instagram)
Connecting a social account is always optional — ClipEmber works fully without it (you can just download your clips). When you do connect an account, you go through that platform’s own OAuth consent screen and see the permissions before you approve them. Here is exactly what ClipEmber requests and what it deliberately does not touch:
TikTok — scopes: user.info.basic, video.upload, video.publish, video.list
user.info.basic— read only your TikTok open id, display name and avatar image URL, so the Connected accounts and Calendar screens can show you which account a clip will go to before you confirm it.video.upload— upload one rendered clip that you selected to your own TikTok account. TikTok then sends a notification to your Inbox, you tap it in the TikTok app, and the editing and posting happen there — we cannot publish it for you. This is the only TikTok path in use today, so the final publishing decision always stays inside TikTok.video.publish— post a clip you already queued straight to your profile, so you do not have to finish every post by hand (TikTok calls this Direct Post). We ask for this permission, but it is NOT in use today: TikTok approved the app itself on 18 August 2026, and the separate Direct Post audit that would allow public posts is still under review (we applied on 13 August 2026). We tested it on 26 August 2026 and TikTok refused the post, which is how we know the audit has not landed yet. Until it does, every TikTok clip is uploaded and TikTok notifies you in your Inbox — you tap that notification and post it yourself in the app. When the audit does land, direct posting will apply only to clips where you picked the audience yourself, on the Post to TikTok screen or the TikTok queue screen; there will be no saved default and nothing will be inherited, so a new clip always arrives without a choice and waits for you to make one.video.list— read back the public view, like, comment and share counts of the clips you published through us, so the app can show you how each clip performed and improve which moments it picks next time.- ClipEmber does not read your direct messages, followers list, private analytics or advertising data, or post anything to your TikTok profile at all — today every TikTok clip is uploaded and TikTok notifies you in your Inbox, and the post itself happens only when you tap that notification and post inside the TikTok app.
YouTube — scopes: youtube.upload, youtube.readonly
youtube.readonly— read your channel id and channel title, so you can see which channel is connected.youtube.upload— upload the clips you chose to publish to that channel.- ClipEmber does not read your watch history, subscriptions, comments or channel analytics.
Instagram — scopes: instagram_business_basic, instagram_business_content_publish, instagram_business_manage_insights (Instagram Login) — or instagram_basic, instagram_content_publish, pages_show_list, pages_read_engagement, business_management (Facebook Login)
instagram_business_basic / instagram_basic + pages_show_list— read your Instagram professional account id and username (and the linked Facebook Page id) to show which account is connected.instagram_business_content_publish / instagram_content_publish— publish the Reels you chose to publish to that account.instagram_business_manage_insights— read back the views, likes and comments of the Reels we published for you — nothing else. Two things use it: the Analytics screen, so you can see how a clip did, and the scoring model, which compares what it picked against what people actually watched and gets better at picking next time. We read only media we published through ClipEmber.- ClipEmber does not read your feed, followers, direct messages, or the insights of posts you made outside ClipEmber.
Publishing is user-initiated. A clip leaves ClipEmber for a platform only when you press Post on that clip, or when it reaches a time slot in a schedule or automation rule that you created yourself and can pause or delete at any time. ClipEmber does not post promotional content of its own to your accounts, and does not use your connected accounts to follow, like, comment or message anyone.
We keep platform tokens only to perform these publish actions and to refresh expiring tokens. Tokens are never shared with other ClipEmber users, sold, or used to build profiles or datasets about you or your audience.
4. Why ClipEmber uses your data
- To provide the service you asked for — download or receive your video, transcribe it, score candidate moments, reframe to 9:16, burn captions, store the result so you can download it, and publish it where you told us to. Legal basis: performance of our contract with you.
- To operate accounts and credits — authenticate you, keep the credit ledger correct, enforce rate limits and prevent abuse. Legal basis: contract and our legitimate interest in a working, non-abused service.
- To improve clip selection — your thumbs up/down on a clip tunes scoring heuristics for your own results. Legal basis: legitimate interest.
- To support you and send service email — password/sign-in email, processing notifications you enabled, and replies when you write to us. You can turn non-essential email off in Settings → Notifications. Legal basis: contract and consent.
- To take payment when you buy credits or a plan. Legal basis: contract and our legal obligation to keep financial records.
ClipEmber does not sell your personal data, does not share it for cross-context behavioural advertising, and does not use your videos, transcripts or clips to train machine-learning models — ours or anyone else’s.
5. Where processing happens, and AI
Transcription and clip selection run inside ClipEmber’s own worker on our hosting provider — speech-to-text uses a self-hosted Whisper model, and the current production clip scorer is a deterministic heuristic over your transcript. That means your video and transcript are not sent to any third-party AI or speech-to-text provider today. If we ever route your content through an external AI provider, we will name that provider in this policy before switching it on.
AI-generated output (ClipEmber clip scores, suggested titles, hashtags, summaries and translations) is a suggestion, not editorial fact. You stay responsible for what you publish — see the Terms of Service.
6. Who we share data with
ClipEmber shares data only with the processors below, only for the purpose listed, and only the data that purpose needs. There are no data brokers, ad networks or analytics resellers in this list.
| Provider | Purpose | Data involved |
|---|---|---|
| Vercel Inc. (USA) | Web application hosting | Requests to clipember.com, IP addresses in server logs |
| Neon Inc. (USA) | Managed PostgreSQL database | Account records, project metadata, transcripts, schedule, connection tokens |
| Cloudflare, Inc. (USA) | R2 object storage, DNS, email routing for hello@ | Uploaded/downloaded source videos, rendered clips, thumbnails; email you send us |
| Fly.io, Inc. (USA) | Background worker that transcribes, cuts and renders | Your media and transcripts during processing |
| Stripe, Inc. (USA) | Payment processing (only if you buy credits or a plan) | Billing details you enter on Stripe’s own checkout; we receive only a session id and result |
| Google LLC | Sign in with Google; YouTube Data API (only if you connect YouTube) | Your email and name at sign-in; upload of clips you choose to publish |
| TikTok (ByteDance Ltd. and affiliates) | TikTok Login Kit and Content Posting API in inbox-upload mode — only if you connect TikTok | Your TikTok open id, display name, avatar; clips you send to your TikTok account for posting |
| Meta Platforms, Inc. | Instagram Graph API (only if you connect Instagram) | Your Instagram business account id and username; clips you choose to publish |
We may also disclose data if the law requires it (for example a valid legal request), to protect the rights and safety of users or the public, or as part of a merger or acquisition — in which case we will say so here before your data moves.
If you create a public share link for a clip, anyone with that link can watch that clip until you revoke the link. That is the one case where ClipEmber exposes your content outside your account, and only because you asked it to.
7. Cookies
ClipEmber uses strictly necessary cookies only: one session cookie that keeps you signed in, and short-lived cookies during a social-account connect flow (a CSRF state value and your user id) that are deleted as soon as the connection completes. There are no advertising, profiling or third-party analytics cookies, which is why ClipEmber shows no cookie banner.
8. How long ClipEmber keeps data
- Source videos, clips and thumbnails — kept for 60 days after the project is created, then eligible for automatic cleanup. Download anything you want to keep.
- Transcripts, project metadata, credit ledger — kept while your account is open, because they explain your credit balance and let you re-edit a clip.
- Platform tokens and connection records — kept until you disconnect that platform or delete your account, whichever comes first; then deleted from our database (see section 9).
- Payment records — retained as long as accounting and tax law requires, typically several years, even after account deletion.
- Server logs — retained by our hosting providers for a short rolling window for security and debugging.
9. Disconnecting a platform and revoking access
You can disconnect any connected account at any time in ClipEmber → Connections → Disconnect. ClipEmber then asks the platform to revoke the token and deletes the stored access token, refresh token and connection record from our database. Scheduled posts that depended on that connection stop.
You can also revoke ClipEmber’s access from the platform’s own settings, independently of us:
- TikTok: app → Profile → Settings and privacy → Security & permissions → Manage app permissions.
- Google/YouTube: myaccount.google.com/permissions.
- Instagram/Meta: Business settings → Apps, or Instagram → Settings → Website permissions.
10. Deleting your account and data
Delete your account in ClipEmber → Settings → Account, or email hello@clipember.com from your account address with the subject “Delete my ClipEmber account”. Deletion closes access immediately; we then erase your account record, projects, media, transcripts, clips, schedule and platform tokens within 30 days, except records we must keep by law (payment records) which are retained in isolation for that purpose only.
Want only your data from one platform gone? Disconnecting that platform (section 9) removes its tokens and connection record without touching the rest of your account.
11. Your privacy rights
Wherever you live, you can ask ClipEmber to give you a copy of your data, correct it, delete it, or stop a specific use. If you are in the EU/EEA, the UK or Switzerland you also have the rights to restriction, objection and data portability, and to complain to your local supervisory authority. If you are in California, you have the rights to know, delete, correct and to opt out of sale/sharing — ClipEmber does not sell or share personal information in that sense, so there is nothing to opt out of, and we do not discriminate against anyone who exercises a right.
To exercise any right, email hello@clipember.com from your account address. We reply within 30 days and never charge for a first request.
12. Security
All traffic to ClipEmber runs over HTTPS/TLS. Data at rest sits in managed services (Neon Postgres, Cloudflare R2) that encrypt storage volumes. Media in object storage is private and served only through short-lived signed URLs. Access to production systems is limited to the people who operate ClipEmber, and platform tokens are requested with the narrowest scopes the feature needs (for example: upload permission, not read-your-videos permission). No system is perfectly secure; if a breach ever affects your data we will notify you and the relevant authority as the law requires.
13. Children
ClipEmber is a business tool for creators and is not directed to children. You must be at least 18 years old to use it. We do not knowingly collect data from children; if you believe a child has an account, write to hello@clipember.com and we will delete it.
14. International transfers
ClipEmber’s hosting, storage and payment providers are located in the United States, so your data is processed there and in Ukraine. Where we transfer personal data out of the EU/EEA or the UK, we rely on the European Commission’s Standard Contractual Clauses (and the UK addendum) in our agreements with those providers.
15. Changes to this policy
If we change how ClipEmber handles your data, we update this page and its effective date, and for material changes we email account holders before the change takes effect. Continuing to use ClipEmber after that date means the updated policy applies.
16. Contact
Privacy questions, data requests and complaints: hello@clipember.com. Operator: ClipEmber, Ukraine. Related document: ClipEmber Terms of Service.