TryPost by CobiHay
Sign in
Legal

Privacy Policy

Last updated: 20 August 2026. Operated by Cobi Hay Digital. Contact: cobihay@gmail.com

English עברית

Privacy Policy

TryPost by CobiHay is a social media content planning and publishing service operated by Cobi Hay Digital. It is used by businesses, agency teams and the client accounts they manage. This policy describes the data the service actually processes, why it is processed, and what you can do about it.

1. Data we process

User account data. The name and email address of the person using the service, their sign in credentials, the workspaces they belong to and the role they hold in each, and their interface preferences such as language.

Connected social media accounts. When you connect an account, we store what the network returns for that account: its identifier at the network (for TikTok, the open_id), the basic public display identity such as the display name or handle, the profile picture, and the list of permissions the network granted. The profile picture is stored as a copy on our storage so the interface can show it.

Access and refresh tokens. Connecting an account produces an access token and, on most networks, a refresh token. These are what allow TryPost by CobiHay to publish on your behalf. They are stored encrypted at rest in our database and are never shown in the interface or sent to your browser.

Content you create. Post text, the images, video and documents you upload to the workspace library, the accounts and formats you selected, the per network settings you chose, scheduling times, comments teammates leave on a post, and templates.

Publishing results. For each post and each account: whether it was published, when, the identifier and link the network returned, and the error the network reported if it failed. Where a network exposes performance figures for content published through the service, those figures are shown in the interface.

Operational data. Ordinary server and application logs needed to run the service and investigate faults.

2. Why we process it

  • To provide the service: to store what you plan, and to publish it to the accounts you connected, at the times you set.
  • To keep a connection alive, by refreshing an access token before it expires, and to tell you when a connection needs to be reconnected.
  • To show you the state of your work: the calendar, the drafts, what published and what failed, and the figures a network reports back.
  • To secure the service: to authenticate users, separate one workspace from another, and investigate abuse or faults.

We do not use your content or your connected account data to build advertising profiles, and we do not use it to train AI models.

3. How tokens are handled

  • Access and refresh tokens are encrypted at rest in the database.
  • Token refresh happens server side. Tokens are never exposed to the browser and are not written into post content or logs of the interface.
  • Tokens are used only to perform the actions you asked for on the account they belong to.
  • Deleting the connected account inside TryPost by CobiHay deletes the stored tokens with it.

4. Who else sees the data

We do not sell personal data, and we do not share it for advertising. Data leaves the service in three narrow situations:

  • The social network you publish to. When a post is published, its text, its media and the settings you chose are sent to that network through its official API. From that point the network’s own terms and privacy policy apply to the published post.
  • Service providers that run the service. Hosting, database and file storage, and email delivery. They process the data on our instructions in order to operate the service.
  • AI providers, only if you use the AI features. If you ask the service to draft or review content for you, the text and, where relevant, the media involved in that request are sent to the AI provider configured for this installation. If you do not use those features, nothing is sent.

We may also disclose data where the law requires it.

5. TikTok

TikTok is connected through TikTok’s own login screen. The authorization request asks for exactly two permissions:

  • user.info.basic — the account’s open_id and its basic display identity, so the interface can show which account a post will go to.
  • video.publish — permission to publish the post you created to that account.

The authorization request does not ask for permission to read follower counts or other profile statistics, it does not ask for access to the videos already on the account, it does not ask for access to messages, and it does not request video.upload. What we send to TikTok is the video or the photos you attached, the caption you wrote, and the settings you selected including who may view the post and the commercial content declaration. What we receive back is the identifier and the publishing status of that post.

You can disconnect TikTok inside TryPost by CobiHay at any time, which deletes the stored tokens, and you can also revoke access from TikTok’s own settings.

6. Retention, disconnection and deletion

We keep data for as long as it is needed to run the service for you: a post and its media stay in the workspace until they are deleted, and a connected account stays until it is disconnected. There is no fixed retention period beyond that.

  • Disconnecting an account deletes the connected account record and its encrypted tokens from our database, and removes it from posts that were still waiting to publish. Posts already published keep their history so the record of what went out is not lost.
  • Deleting content that you created inside a workspace removes it from the workspace. Content already published to a social network has to be removed on that network.
  • Closing an account or a workspace, or asking for the deletion of the data held about you, is done by writing to cobihay@gmail.com. Backups and ordinary server logs age out on their own schedule.

7. Your rights and contact

You can ask what data we hold about you, ask for it to be corrected, ask for a copy, or ask for it to be deleted. Write to cobihay@gmail.com and we will answer. If we change this policy, the date at the top of this page changes with it.

See also the Terms of Service.

מדיניות פרטיות

TryPost by CobiHay הוא שירות לתכנון ולפרסום תוכן ברשתות החברתיות, המופעל על ידי Cobi Hay Digital. בשירות משתמשים עסקים, צוותי סוכנויות וחשבונות הלקוחות שהם מנהלים. המסמך הזה מתאר אילו נתונים השירות מעבד בפועל, לשם מה, ומה אפשר לעשות בנוגע לכך.

1. הנתונים שאנחנו מעבדים

נתוני חשבון המשתמש. שם וכתובת דוא"ל של המשתמש, פרטי ההתחברות שלו, סביבות העבודה שהוא שייך אליהן והתפקיד שלו בכל אחת, והעדפות ממשק כגון שפה.

חשבונות רשתות חברתיות מחוברים. בעת חיבור חשבון נשמר מה שהרשת מחזירה עליו: המזהה שלו ברשת (ב-TikTok, ה-open_id), זהות התצוגה הציבורית הבסיסית כגון שם התצוגה או הכינוי, תמונת הפרופיל, ורשימת ההרשאות שהרשת העניקה. תמונת הפרופיל נשמרת כעותק אצלנו כדי שהממשק יוכל להציג אותה.

אסימוני גישה ורענון. חיבור חשבון מייצר אסימון גישה, וברוב הרשתות גם אסימון רענון. הם מה שמאפשר ל-TryPost by CobiHay לפרסם בשמכם. הם נשמרים מוצפנים בבסיס הנתונים, ואינם מוצגים בממשק ואינם נשלחים לדפדפן.

התוכן שאתם יוצרים. טקסט הפוסטים, התמונות, הווידאו והמסמכים שאתם מעלים לספריית סביבת העבודה, החשבונות והפורמטים שבחרתם, ההגדרות הייחודיות לכל רשת, זמני התזמון, הערות של חברי צוות על פוסט, ותבניות.

תוצאות הפרסום. לכל פוסט ולכל חשבון: אם פורסם, מתי, המזהה והקישור שהרשת החזירה, והשגיאה שהרשת דיווחה אם נכשל. כשרשת חושפת נתוני ביצועים על תוכן שפורסם דרך השירות, הנתונים האלה מוצגים בממשק.

נתונים תפעוליים. יומני שרת ואפליקציה רגילים, הדרושים להפעלת השירות ולבירור תקלות.

2. לשם מה

  • כדי לספק את השירות: לשמור את מה שתכננתם ולפרסם אותו לחשבונות שחיברתם, בזמנים שקבעתם.
  • כדי לשמור על חיבור פעיל, על ידי רענון אסימון גישה לפני פקיעתו, ולהודיע לכם כשחיבור דורש התחברות מחדש.
  • כדי להציג לכם את מצב העבודה: לוח השנה, הטיוטות, מה פורסם ומה נכשל, והנתונים שהרשת מחזירה.
  • כדי לאבטח את השירות: אימות משתמשים, הפרדה בין סביבות עבודה, ובירור שימוש לרעה או תקלות.

איננו משתמשים בתוכן שלכם או בנתוני החשבונות המחוברים לבניית פרופילי פרסום, ואיננו משתמשים בהם לאימון מודלי AI.

3. איך מטופלים האסימונים

  • אסימוני גישה ורענון נשמרים מוצפנים בבסיס הנתונים.
  • רענון האסימונים מתבצע בצד השרת. האסימונים אינם נחשפים לדפדפן.
  • האסימונים משמשים אך ורק לביצוע הפעולות שביקשתם, בחשבון שאליו הם שייכים.
  • מחיקת החשבון המחובר בתוך TryPost by CobiHay מוחקת איתה את האסימונים השמורים.

4. מי עוד רואה את הנתונים

איננו מוכרים מידע אישי ואיננו משתפים אותו לצורכי פרסום. נתונים יוצאים מהשירות בשלושה מצבים מוגדרים בלבד:

  • הרשת החברתית שאליה מפרסמים. בעת פרסום, הטקסט, המדיה וההגדרות שבחרתם נשלחים לאותה רשת דרך ה-API הרשמי שלה. מאותו רגע חלים על הפוסט שפורסם תנאי השימוש ומדיניות הפרטיות של הרשת.
  • ספקי שירות שמפעילים את השירות. אחסון שרתים, בסיס נתונים ואחסון קבצים, ושליחת דוא"ל. הם מעבדים את הנתונים לפי הוראותינו לצורך הפעלת השירות.
  • ספקי AI, רק אם אתם משתמשים ביכולות ה-AI. אם ביקשתם מהשירות לנסח או לבדוק תוכן, הטקסט, ובמקרים הרלוונטיים גם המדיה שבבקשה, נשלחים לספק ה-AI המוגדר בהתקנה הזו. אם אינכם משתמשים ביכולות האלה, לא נשלח דבר.

ייתכן גילוי נתונים גם כאשר הדין מחייב זאת.

5. TikTok

החיבור ל-TikTok נעשה דרך מסך ההתחברות של TikTok עצמה. בקשת ההרשאה מבקשת בדיוק שתי הרשאות:

  • user.info.basic — ה-open_id של החשבון וזהות התצוגה הבסיסית שלו, כדי שהממשק יראה לאיזה חשבון הפוסט הולך.
  • video.publish — הרשאה לפרסם לאותו חשבון את הפוסט שיצרתם.

בקשת ההרשאה אינה מבקשת הרשאה לקרוא מספרי עוקבים או נתוני פרופיל סטטיסטיים אחרים, אינה מבקשת גישה לסרטונים הקיימים בחשבון, אינה מבקשת גישה להודעות, ואינה מבקשת video.upload. מה שנשלח ל-TikTok הוא הווידאו או התמונות שצירפתם, הכיתוב שכתבתם, וההגדרות שבחרתם, לרבות מי רשאי לצפות בפוסט והצהרת התוכן המסחרי. מה שמתקבל בחזרה הוא המזהה וסטטוס הפרסום של אותו פוסט.

אפשר לנתק את TikTok מתוך TryPost by CobiHay בכל רגע, מה שמוחק את האסימונים השמורים, ואפשר גם לבטל את ההרשאה מתוך ההגדרות של TikTok.

6. שמירה, ניתוק ומחיקה

אנחנו שומרים נתונים כל עוד הם נדרשים כדי להפעיל עבורכם את השירות: פוסט והמדיה שלו נשארים בסביבת העבודה עד שהם נמחקים, וחשבון מחובר נשאר עד שהוא מנותק. אין תקופת שמירה קבועה מעבר לכך.

  • ניתוק חשבון מוחק מבסיס הנתונים את רשומת החשבון המחובר ואת האסימונים המוצפנים שלו, ומסיר אותו מפוסטים שעדיין המתינו לפרסום. פוסטים שכבר פורסמו שומרים את ההיסטוריה שלהם, כדי שהתיעוד של מה שיצא לא יאבד.
  • מחיקת תוכן שיצרתם בסביבת העבודה מסירה אותו מסביבת העבודה. תוכן שכבר פורסם ברשת חברתית יש להסיר באותה רשת.
  • סגירת חשבון או סביבת עבודה, או בקשה למחיקת המידע שנשמר עליכם, נעשות בפנייה אל cobihay@gmail.com. גיבויים ויומני שרת רגילים מתיישנים לפי מחזור החיים שלהם.

7. הזכויות שלכם ויצירת קשר

אתם רשאים לשאול איזה מידע נשמר עליכם, לבקש לתקן אותו, לבקש עותק, או לבקש למחוק אותו. פנו אל cobihay@gmail.com ונענה. אם נעדכן את המדיניות הזו, התאריך בראש העמוד ישתנה בהתאם.

ראו גם את תנאי השימוש.

TryPost by CobiHay
Privacy Policy Terms of Service Sign in

TryPost by CobiHay. Social media content planning and publishing, operated by Cobi Hay Digital. Contact: cobihay@gmail.com