Privacy Policy

Last updated: 2026-08-06

This Privacy Policy describes how Hubei An'an Ruantu Software Co., Ltd. (ā€œweā€, ā€œusā€, or ā€œourā€) collects, uses, stores, shares, and deletes personal information when you use AutoAI websites, desktop clients, and related services (collectively, the ā€œServiceā€).

By creating an account or using the Service, you acknowledge this Policy. If you do not agree, please stop using the Service.

1. Who we are

Controller / operator: Hubei An'an Ruantu Software Co., Ltd..

Website: https://www.xrobot.tech

Privacy contact email: autoai@xrobot.tech

2. Information we collect

Depending on how you use the Service, we may collect:

  • Account information: username, email address, password (stored hashed), membership / quota related records.
  • Authentication and third-party login data: when you sign in or link accounts via WeChat, Google, Facebook / Meta, TikTok, LINE, or similar providers, we receive identifiers and basic profile fields the provider shares with your consent (for example user id, display name, avatar URL, email if granted). Google Sign-In profile fields (if used for login) are separate from YouTube channel authorization described below. TikTok Login and LINE Login are likewise separate from TikTok content-publishing or LINE Official Account messaging features.
  • Meta platform data (when you authorize Facebook, Instagram, Threads, Messenger, or related Marketing / Graph APIs): Page / account identifiers, access tokens, messaging content needed to deliver the features you enable, publishing and comment metadata, ads-related configuration you choose to connect, and webhook event payloads required to operate those features. Meta ads tooling does not use Google / YouTube API user data.
  • Google / YouTube data (when you authorize YouTube or related Google APIs): Google account identifiers needed for the connection, OAuth access and refresh tokens, YouTube channel identifiers and basic channel profile fields, video and publishing metadata for content you choose to publish or manage, comment content needed to list or reply to comments on your connected channel, and analytics / insights metrics returned by YouTube Data API and YouTube Analytics API for channels you connect. We may also process media files (video / thumbnail) and related storage URLs that you upload solely in order to publish them to YouTube at your request.
  • TikTok data (when you use TikTok Login and/or authorize TikTok content / Display APIs): TikTok open / union identifiers, OAuth access and refresh tokens, basic profile fields shared for login or channel connection, and—only if you connect TikTok publishing features—video / photo publish metadata, media you provide for posting, and permitted stats or listing fields returned by TikTok APIs for accounts you connect.
  • LINE data (when you use LINE Login and/or bind a LINE Official Account / Messaging API channel): LINE user identifiers and basic profile fields shared for login or account linking; and—only if you bind Official Account credentials—channel identifiers, channel access tokens / secrets you provide, bot profile fields, and messaging payloads needed to send or receive messages you request through Messaging API. We do not use LINE Login alone to post to LINE VOOM; Official Account messaging is separate from login.
  • Device and usage data: client version, OS type, approximate network / IP metadata, crash or diagnostic logs, and feature usage needed to secure and operate the Service.
  • Customer support communications: messages you send to us via email, WeCom, or the contact page.
  • Payment / billing records when you purchase credits or plans (processed via payment partners; we store order status and necessary billing references, not full card numbers).

3. How we use information

We use personal information to:

  • Provide, maintain, and operate the Service (account access, content publishing and management, messaging where you enable it, and related features you request).
  • Authenticate you and protect accounts against abuse, fraud, and unauthorized access.
  • Process purchases and manage quotas / entitlements.
  • Respond to support requests and send important service notices.
  • Comply with applicable laws and enforce our terms.
  • For Meta integrations specifically: only access and process Meta platform data as needed to provide the Meta-connected features you request, in line with Meta Platform Terms and the permissions you grant.
  • For Google / YouTube integrations specifically: only access and process Google user data to provide or improve the user-facing YouTube features that are prominent in the Service and that you request—namely connecting your YouTube channel, uploading / scheduling videos you provide, managing comments on your content, and displaying channel / video insights. Google user data is not used for advertising, Meta ads tooling, unrelated product analytics, or any purpose other than those disclosed here.
  • For TikTok specifically: use TikTok Login data only to authenticate or link your account; use TikTok content / Display API data only to connect accounts you authorize and to publish or manage content / listings you request. We do not sell TikTok user data or use it to train generalized AI / ML models.
  • For LINE specifically: use LINE Login data only to authenticate or link your account; use Official Account / Messaging API credentials and related payloads only to operate messaging features you enable (for example push or broadcast to users who have added your Official Account). We do not use LINE data for unrelated advertising profiles.

4. Sharing and disclosure

We do not sell your personal information. We do not sell Google user data. We may share data only in these cases:

  • Service providers that process data on our behalf (hosting, object storage / CDN, email delivery, payment processors, and infrastructure used solely to complete API requests you initiate) under contractual confidentiality and purpose limits. These processors may not use Google user data for their own purposes.
  • Meta Platforms, Inc. and related Meta services when you connect Facebook / Instagram / Threads / messaging / ads features—data flows according to your authorization and Meta’s terms.
  • Google LLC / YouTube when you connect YouTube features—OAuth tokens, channel identifiers, publish payloads (including media transferred for upload), comment actions, and analytics requests are sent to Google / YouTube APIs according to your authorization and Google’s terms. Media you choose to publish may first be stored on our CDN; our systems may then transfer that media to YouTube on your behalf to complete the publish action you requested.
  • TikTok (ByteDance / TikTok platforms) when you use TikTok Login or connect TikTok publishing features—authorization, profile, and publish requests are sent according to your consent and TikTok’s developer / platform terms.
  • LY Corporation / LINE when you use LINE Login or bind Messaging API / Official Account credentials—authorization, profile, and messaging API calls are sent according to your consent and LINE’s terms.
  • Other third-party platforms you explicitly connect (for example WeChat login or other social channels). Connecting those platforms does not grant them access to your Google / YouTube, TikTok, or LINE API data beyond what that platform’s own connection requires.
  • Legal or safety requirements: when required by law, regulation, or valid legal process, or to protect rights, safety, and integrity of users or the Service.
  • Business transfers: if we undergo a merger, acquisition, or asset transfer, information may be transferred as part of that transaction with continued protection commitments. For Google user data obtained via Google APIs, we will obtain affirmative user consent before transferring such data to a new operator, or we will delete it.

5. Meta Platform compliance

When you use AutoAI features that call Meta APIs, we act as a technology service provider for your use case. We process Meta platform data only to provide and improve those features for you, and we do not use that data to build unrelated profiles or sell it.

You can revoke AutoAI’s access to your Meta accounts at any time in Facebook Settings → Settings & privacy → Settings → Business integrations (or Apps and Websites), and/or by requesting deletion as described in our Data Deletion Instructions (https://www.xrobot.tech/ms/data-deletion/).

6. Google / YouTube API Services compliance

AutoAI’s use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Limited Use summary: we use Google user data obtained through YouTube / Google OAuth only to provide or improve user-facing features that are prominent in the Service: (1) connecting your YouTube channel, (2) publishing videos you provide (including resumable upload), (3) reading and replying to comments on content you manage, and (4) showing channel / video insights. We do not sell Google user data. We do not use Google user data for advertising (including retargeting, personalized ads, or ad measurement). We do not use Google user data to train, improve, or develop generalized AI / ML models. We do not allow humans to read Google user data unless (i) you give affirmative consent for a specific support case, (ii) it is necessary for security / abuse investigation, or (iii) it is required to comply with applicable law.

Transfers: we transfer Google user data only (a) to Google / YouTube as needed to operate the features you request, (b) to processors acting solely on our behalf under purpose limits to deliver those features, or (c) as required by law or with your explicit consent. We do not transfer Google user data for independent use by other parties.

Google’s own privacy practices are described in the Google Privacy Policy: https://www.google.com/policies/privacy

You may revoke AutoAI’s access to your Google account at any time at https://security.google.com/settings/security/permissions (Google Account → Security → Third-party access), and/or disconnect YouTube inside the Product. Revoking access or disconnecting a channel causes us to delete stored OAuth tokens and associated YouTube asset data we hold for that connection (subject only to short-term security or legally required logs). Full account deletion instructions: https://www.xrobot.tech/ms/data-deletion/.

Questions or complaints about our Google / YouTube data practices: autoai@xrobot.tech

7. TikTok

When you sign in or link with TikTok Login, AutoAI receives only the profile identifiers TikTok shares under the scopes you approve, and uses them to create or link your account.

When you connect TikTok content-publishing features, we store OAuth tokens and account bindings needed to publish media you provide and to show permitted listings / stats. Media may be stored temporarily on our CDN solely to complete a publish you request.

TikTok’s own practices are described in TikTok’s privacy policy and developer terms. You may unlink TikTok inside the Product and/or revoke access in TikTok’s account / app permissions settings. Deletion of stored tokens and bindings: see our Data Deletion Instructions (https://www.xrobot.tech/ms/data-deletion/).

8. LINE

When you sign in or link with LINE Login, AutoAI receives LINE user identifiers and basic profile fields under the scopes you approve, and uses them only for authentication and account linking.

When you bind a LINE Official Account (Messaging API) channel, you provide channel credentials so we can call Messaging API on your behalf (for example push or broadcast to users who have added your Official Account). LINE Login alone does not enable posting to LINE VOOM; there is no public VOOM publishing API in the Service.

LINE’s own practices are described in LINE’s privacy policy and developers documentation. You may unlink LINE Login and/or disconnect Official Account credentials inside the Product. Deletion instructions: https://www.xrobot.tech/ms/data-deletion/.

9. Storage, retention, and security

We store data on servers operated by us or our hosting providers. We apply reasonable technical and organizational measures (access control, encrypted transport, hashed passwords, least-privilege practices). No method of transmission or storage is 100% secure.

We retain personal information only as long as needed for the purposes above, including legal, accounting, or dispute-resolution needs. After account deletion requests are completed, or after you disconnect Google / YouTube, TikTok, or LINE connections, we delete or anonymize associated personal / API data except where retention is legally required. OAuth tokens that can no longer be refreshed are treated as invalid and removed.

10. Your rights

Subject to applicable law, you may request access, correction, or deletion of your personal information, or withdraw consent where processing is based on consent.

To exercise these rights, contact autoai@xrobot.tech or use https://www.xrobot.tech/ms/contact/. For step-by-step deletion instructions (including Meta, Google / YouTube, TikTok, and LINE-connected data), see https://www.xrobot.tech/ms/data-deletion/.

11. Children

The Service is not directed to children under 13 (or the minimum age required in your jurisdiction, if higher). We do not knowingly collect personal information from children. If you believe a child has provided us data, contact us and we will take appropriate steps to delete it.

12. International transfers

Depending on where you access the Service, data may be processed in China or other regions where we or our processors operate. Where Google / YouTube, TikTok, or LINE features require it, requests and media may be processed through infrastructure that can securely reach those platforms’ APIs, solely to complete actions you request. Where required, we take steps to ensure appropriate protections for cross-border transfers.

13. Changes to this Policy

We may update this Privacy Policy from time to time. Material changes will be posted on this page with an updated date. Continued use of the Service after changes take effect constitutes acceptance of the revised Policy. If we change how we use Google user data in a material way, we will update this Policy and obtain any additional consent required before using that data for a new purpose.

14. Contact us

Company: Hubei An'an Ruantu Software Co., Ltd.

Email: autoai@xrobot.tech

Website / contact: https://www.xrobot.tech/ms/contact/