offload

Privacy Policy

EFFECTIVE 2026-08-13

Offload ("Offload", "we", "us") is a desktop and mobile application and cloud service that lets creators connect their platforms and tools and delegate work to an AI agent. This policy explains what information we collect, how we use it, and the choices you have. Contact: saadosman450@gmail.com.

1. Information we collect

2. How we use information

We do not sell your personal information, and we do not use your content or your connected-account data for advertising.

3. When we share information

4. YouTube API Services

Offload uses YouTube API Services to let you connect your YouTube channel. By using this feature you also agree to the YouTube Terms of Service, and Google's handling of your data is described in the Google Privacy Policy.

5. TikTok and other connected platforms

When you connect TikTok (or another platform), Offload accesses only the data you authorize on the platform's consent screen — such as your profile, your videos, and their performance metrics — to display it to you and run the tasks you request. TikTok access and refresh tokens are stored only in an encrypted server-side credential record while the connection is active. A TikTok disconnect immediately blocks local use, requests revocation directly from TikTok, and deletes the credential after TikTok acknowledges the request. If that request is temporarily unavailable, the connection remains disabled and the encrypted credential is retained only for a safe revocation retry. For other connections managed by our OAuth partner, a returned asynchronous revocation receipt is shown as pending and unverified unless authoritative completion is available. Disconnecting does not by itself erase data already imported into Offload. For supported connected tools, the desktop Stack screen offers a separate Delete imported data action after disconnect; you can also revoke access from the platform's own security settings.

6. Data retention and deletion

7. Security

Data in transit is encrypted with TLS. Sign-in uses one-time email codes and a signed access session that can last up to 30 days. An active client may rotate that session into a new 30-day session; rotation revokes the previous session. Signing out clears the session from the current client and attempts to revoke it server-side. If that request cannot reach the service, such as while offline, the server session can remain valid until it expires even though this client no longer retains it. Offload never sees a password for you or any connected account. Access tokens for most connected platforms are held by our OAuth partner. Native TikTok access and refresh tokens are held by Offload in AES-256-GCM-encrypted server-side records, refreshed there, and retained only while needed to operate the connection or complete a requested revocation. Connected-platform tokens are never exposed to other users or shipped to the desktop or mobile client.

8. Your rights

Depending on where you live, you may have rights to access, correct, export, or delete your personal information. Email saadosman450@gmail.com and we will honor these requests. Offload is not directed to children under 13, and we do not knowingly collect their information.

9. Changes

We will post any changes to this policy on this page and update the effective date above. Material changes will be announced in the app or by email.