Privacy Policy

Last updated: April 13, 2026

1. Introduction

FYP Now LLC ("we", "us", or "our"), a Delaware limited liability company, operates fypnow.com (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service. We are committed to protecting your privacy and complying with applicable data protection laws, including the California Consumer Privacy Act (CCPA) and the General Data Protection Regulation (GDPR) where applicable.

2. Information We Collect

2.1 Information You Provide

  • Account information: Email address, display name, and password when you create an account.
  • Billing information: Payment details are processed and stored by Stripe. We do not store your credit card number.
  • TikTok usernames: Creator usernames you submit for analysis.
  • Support communications: Any messages you send to us.

2.2 Information Collected Automatically

  • Login data: IP address, approximate location (city/country), browser type, and device information when you sign in.
  • Usage data: Features used, videos analyzed, scripts generated, and pages visited.
  • Cookies: We use essential cookies for authentication and session management. We do not use third-party advertising cookies.

2.3 TikTok Data

  • Public video data: When you analyze a TikTok creator, we collect publicly available video metadata including view counts, engagement metrics, descriptions, hashtags, and music information.
  • Connected accounts: If you connect your TikTok account via OAuth, we access only the data you explicitly authorize (profile info, video list, engagement stats). You can revoke this access at any time through TikTok's settings.

3. How We Use Your Information

  • Provide the Service: Analyze videos, detect patterns, generate scripts, and deliver insights.
  • AI processing: Video data is sent to third-party AI providers for content analysis. This data is processed in accordance with our providers' data processing terms and is not used to train their models.
  • Account management: Authenticate you, manage subscriptions, and enforce usage limits.
  • Communication: Send transactional emails (scrape completed, usage alerts, team invitations) based on your notification preferences.
  • Improvement: Understand how the Service is used to fix bugs and improve features.
  • Security: Detect and prevent fraud, abuse, and unauthorized access.

4. How We Share Your Information

We do not sell your personal information. We share data only with:

  • Cloud infrastructure providers: For database hosting, authentication, file storage, and serverless computing.
  • AI processing providers: For video analysis and content generation.
  • Payment processors: For billing and subscription management.
  • Content delivery and security providers: For website hosting, performance optimization, and protection against attacks.
  • Data retrieval providers: For collecting publicly available social media data.

We may also disclose information if required by law, court order, or government request, or to protect the rights, safety, or property of FYP Now, our users, or the public.

5. Data Storage and Security

  • Your data is stored with trusted cloud infrastructure providers with servers primarily in the Asia-Pacific region.
  • All data is transmitted over HTTPS/TLS encryption.
  • Passwords are securely hashed using industry-standard algorithms.
  • We implement row-level security policies to ensure users can only access their own organization's data.
  • Access tokens for connected TikTok accounts are stored encrypted.
  • We conduct regular security reviews of our infrastructure and access controls.

6. Data Retention

  • Account data: Retained while your account is active and for 30 days after deletion.
  • Video analysis data: Retained while your account is active. Deleted upon account deletion.
  • Login history: Retained for 90 days.
  • Audit logs: Retained for 12 months.
  • Billing records: Retained as required by tax and accounting laws (typically 7 years).

7. Your Rights

Depending on your location, you may have the right to:

  • Access: Request a copy of the personal data we hold about you.
  • Correction: Request correction of inaccurate or incomplete data.
  • Deletion: Request deletion of your personal data.
  • Portability: Request your data in a structured, machine-readable format.
  • Withdraw consent: Revoke previously granted permissions (e.g., TikTok account connection, email notifications).
  • Complaint: Lodge a complaint with your local data protection authority if you believe your privacy has been breached.

To exercise any of these rights, contact us at [email protected].

8. Cookies

We use the following cookies:

CookiePurposeDuration
sb-*-auth-tokenSupabase authentication sessionSession
cf_clearanceCloudflare bot protection30 minutes

We do not use analytics cookies, advertising cookies, or third-party tracking pixels.

9. Additional Rights for EU/UK Users (GDPR)

If you are located in the European Economic Area (EEA) or the United Kingdom, you have additional rights under the General Data Protection Regulation (GDPR) and UK GDPR:

  • Legal basis for processing: We process your data based on legitimate interest (providing and improving the Service), contractual necessity (fulfilling your subscription), and consent (where you explicitly opt in, such as connecting your TikTok account or enabling email notifications).
  • Right to restrict processing: You may request that we limit how we process your data in certain circumstances.
  • Right to object: You may object to processing based on legitimate interest at any time.
  • Supervisory authority: You have the right to lodge a complaint with your local data protection supervisory authority.

10. Additional Rights for California Residents (CCPA)

If you are a California resident, the California Consumer Privacy Act (CCPA) provides you with additional rights:

  • Right to know: You may request details about the categories of personal information we collect and the purposes for which it is used.
  • Right to delete: You may request deletion of your personal information, subject to certain exceptions.
  • Right to opt out of sale: We do not sell your personal information. No opt-out is necessary.
  • Non-discrimination: We will not discriminate against you for exercising your CCPA rights.

11. Business Transfers

In the event of a merger, acquisition, reorganization, or sale of assets, your personal data may be transferred as part of that transaction. We will notify you via email or prominent notice on the Service before your data is transferred and becomes subject to a different privacy policy.

12. International Data Transfers

Your data may be processed in the United States, Australia, and other regions where our service providers operate. Where data is transferred internationally, we ensure appropriate safeguards are in place through our providers' data processing agreements and standard contractual clauses.

13. Children's Privacy

The Service is not intended for children under 16. We do not knowingly collect personal information from children under 16. If we discover we have collected data from a child under 16, we will delete it promptly.

14. Changes to This Policy

We may update this Privacy Policy from time to time. If we make material changes, we will notify you via email or through the Service at least 14 days before the changes take effect. The "Last updated" date at the top reflects the most recent revision.

15. Contact Us

For privacy-related questions or requests, contact us at: