Italiano · English
Service: Elvexa Cast (cast.elvexa.com) — the component of Elvexa that publishes a company's content to that company's own social channels.
Data controller: Elvexa Sagl, Via Nassa 46, 6900 Lugano, Switzerland — privacy@elvexa.com
| Data | Why | How long |
|---|---|---|
| Access and refresh tokens for your social account | They are what allows us to publish to your channel on your behalf, when you ask us to. | Until you disconnect the account. On disconnection they are deleted. |
| Identifier and name of the connected account (e.g. the ID and title of the YouTube channel, the member URN and name on LinkedIn) | So we know which channel we are publishing to, and so we can show it to you ("Connected: channel name"). | As above. |
| Publishing log: date, platform, account, outcome, post identifier | Diagnostics, and evidence of what was published and when. | 12 months. |
The content you publish is not retained. The video (or image) passes through Cast and is delivered to the platform: we do not archive it, index it, or reuse it. If you schedule a post, its content stays in the queue only until it is sent: as soon as it goes out — or if you cancel the order — it is deleted, and only the identifier of the published post remains. We do not collect your contact lists and we do not profile your audience.
Statistics and comments: pass-through only. At your request we show, in your own console, the statistics of your content and the comments you received, and we let you reply. This data is read on demand and forwarded to your console: we do not store it, we do not use it for any other purpose, and we do not share it with anyone. Comments are written by other people: we process them only to show them to you and let you reply, exactly as you would on the platform itself.
We ask for the minimum needed to do what we promised you — nothing more.
| Permission | What it is for |
|---|---|
youtube.upload | Uploading the video you decided to publish to your channel. It is the only way to do it. |
youtube.readonly | Knowing which channel you connected (id and name) and showing it to you — without it, we could publish to the wrong channel — and showing you, in your console, the comments left on your videos. |
yt-analytics.readonly | Showing you, in your console, the statistics of your videos (views, engagement), so you can see how your content is performing. It is the same data you see in YouTube Studio. |
youtube.force-ssl | Allowing you to reply, from your console, to comments received on your videos. The reply is sent only when you write it and confirm it: we never post comments automatically. |
| Permission | What it is for |
|---|---|
adwords | Showing you, in your console, how your advertising campaigns are performing (spend, impressions, clicks) alongside the results of your organic content, and letting you manage them from there: creating new campaigns — always paused, never live — and changing the budget or status of existing ones. Every change happens only when you confirm it. We never enable a campaign automatically and we never spend anything without an explicit action from you. |
The budget is spent from your own Google Ads account, with your own billing: Elvexa does not resell advertising space and does not apply any margin on your spend.
Use of data received from the YouTube APIs is subject to the YouTube Terms of Service and the Google Privacy Policy. You can revoke access at any time at myaccount.google.com/permissions.
| Permission | What it is for |
|---|---|
user.info.basic | Knowing which account you connected, and showing its name. |
video.upload | Sending the video to your content inbox: inside the TikTok app it is you who writes the description, chooses the privacy setting and publishes. |
video.publish | Publishing directly to your account the video you decided to publish, when you choose that mode in your console. You write the description and choose the post's privacy before it is sent: we never publish anything without your explicit confirmation. |
video.list | Showing you, in your console, the list of your published videos and their statistics, so you can see how your content is performing. |
| Permission | What it is for |
|---|---|
w_member_social | Publishing a post on your profile, when you ask us to. |
w_organization_social | Publishing a post on the Company Page you administer, when you ask us to. |
r_organization_social, rw_organization_admin | Knowing which Pages you administer, so you can choose which one to publish to, and showing you the statistics and the comments received on your own Page posts so you can reply to them. |
We only ever read data for organizations the connected member administers. We do not scrape or bulk-collect LinkedIn data, we do not build audience profiles or segments from it, and we do not sell, license or share it with third parties.
| Permission | What it is for |
|---|---|
pages_manage_posts, instagram_content_publish | Publishing to your Page and your Instagram account the content you decided to publish. |
pages_read_engagement, pages_read_user_content, instagram_basic | Showing you the statistics of your own content and the comments you received. |
pages_manage_engagement, instagram_manage_comments | Letting you reply to those comments, and hide them on your own Page. Replies are written by you. |
ads_management, ads_read | Showing you how your own campaigns are performing and letting you create them — always paused — or change budget and status, on your explicit confirmation. |
At any time, in two ways, both immediate: from your console ("Disconnect account"), or from the platform's own settings (Google, TikTok → Settings → Manage app permissions, LinkedIn → Settings → Permitted services, Facebook → Settings → Business integrations). On revocation we delete the tokens; the log of publications that already happened is kept for the period stated above. On request we also delete that, and any other data we obtained through the platform APIs.
Nobody. Data is not sold, licensed or used for advertising or model training. The only destinations are the social platforms you asked us to publish to. We do not share one customer's data with any other customer.
The data controller is Elvexa Sagl, Via Nassa 46, 6900 Lugano, Switzerland. For any request about your data — access, rectification, erasure, objection — write to privacy@elvexa.com: we reply within 30 days. Elvexa's general privacy policy is at elvexa.com/en/privacy.