Privacy Policy
Last updated: March 4, 2026
Service: DumbSMM
Contact: support@dumbsmm.wtf
Overview
DumbSMM helps users create, store, schedule, and publish social media content across connected platforms such as Instagram, TikTok, and YouTube. This Privacy Policy explains what information we process, why we process it, how we store it, and what controls you have.
Information we collect and process
Depending on how you use the Service, we may process the following categories of information:
- Account and contact data, such as login details, account identifiers, and email addresses you provide for access or support.
- Workspace and content planning data, such as application or brand profiles, prompts, notes, content ideas, description templates, schedules, publishing preferences, and related metadata.
- Media and generated content, such as videos, images, captions, carousel drafts, rendered outputs, thumbnails, previews, and files you upload or create through the Service.
- Connected platform data, such as OAuth access tokens, refresh tokens, token expiry times, account or channel IDs, account names, usernames, thumbnails, and connection status for integrations you choose to link.
- Platform response data needed to operate the Service, such as publish results, returned post IDs, upload status, and analytics or insights data when those features are used.
- Technical and operational data, such as request timestamps, error logs, job status, and security-related events generated while the Service runs.
Google and YouTube data we access
If you connect a Google account for YouTube publishing, DumbSMM requests only the Google scopes shown on the consent screen and currently uses the following YouTube Data API scopes: https://www.googleapis.com/auth/youtube.upload and https://www.googleapis.com/auth/youtube.readonly.
- From YouTube read-only access, we retrieve the authenticated channel's channel ID, channel title, and channel thumbnail so we can display the connected account and associate scheduled uploads with the correct channel.
- From YouTube upload access, we upload videos and related metadata that you choose to send, including title, description, tags, category, and privacy status.
- We store Google OAuth access tokens, refresh tokens, granted scopes, and token expiry information so your YouTube connection can stay active until you disconnect it or revoke access.
DumbSMM does not request access to Gmail, Google Drive, Google Contacts, Google Calendar, or other Google data unrelated to the YouTube features described above.
How we use information
We use information we process to:
- provide the core features of DumbSMM;
- store, organize, and render uploaded media and generated outputs;
- connect and maintain social platform integrations you authorize;
- schedule, publish, retry, and monitor posts you ask us to send;
- generate captions, carousels, prompts, or other user-requested outputs through internal processing and third-party model providers used by the Service;
- show account status, publishing history, and analytics or insights data;
- secure the Service, troubleshoot failures, prevent abuse, and provide support;
- comply with legal obligations and enforce our Terms of Use.
How we share information
We do not sell personal data. We share information only in the limited situations below:
- With infrastructure and service providers that host the Service or store data on our behalf, such as database, storage, and hosting providers.
- With connected platforms when you instruct the Service to act on your behalf, such as uploading a video to YouTube or publishing content to Instagram or TikTok.
- With AI or automation providers only as needed to generate outputs you request, such as captions, prompts, or carousel content.
- If required by law, legal process, or a valid governmental request, or when necessary to investigate abuse, fraud, or security incidents.
- In connection with a merger, acquisition, financing, or sale of assets, subject to applicable confidentiality and legal obligations.
Google API Services user data commitments
Google user data obtained through Google API Services is used only to provide or improve user-facing features that you request, such as connecting your YouTube channel, showing the connected channel in the product, and uploading videos you choose to publish. We do not sell Google user data, use it for advertising, or share it with data brokers. We do not use Google user data to train generalized AI or machine learning models.
Access to Google user data by our personnel is limited to situations where it is necessary for support, security, legal compliance, or operation of the Service and is subject to access controls. If you revoke the integration, we stop using the Google connection for future actions.
Storage and security
We store data using the infrastructure required to operate the Service, which may include application hosting, database services, background workers, and S3-compatible object storage. We use reasonable technical and organizational safeguards such as HTTPS/TLS in transit, server-side access controls, credentials management, and operational logging designed to protect information from unauthorized access, loss, or misuse.
Data retention
We retain information for as long as reasonably necessary to provide the Service, maintain active integrations, fulfill your requests, resolve disputes, and meet legal or security obligations.
- Connected platform tokens and account metadata are retained while the integration is active and are deleted when you disconnect the integration, unless retention is needed for legal or security reasons.
- Uploaded media, generated outputs, schedules, and content history are retained until you delete them, request deletion, or they are removed under our operational retention rules.
- Logs and diagnostic records may be kept for a shorter period as needed for monitoring, debugging, and abuse prevention.
Your choices and controls
You can disconnect linked social accounts in project settings, delete content you no longer want stored, and contact us to request deletion of data associated with your use of DumbSMM.
For Google and YouTube access specifically, you can disconnect the integration inside DumbSMM and you can also revoke the app's access from your Google account permissions page at myaccount.google.com/permissions.
To request deletion or ask privacy questions, email support@dumbsmm.wtf.
Changes to this policy
We may update this Privacy Policy from time to time. The current version will remain published on this page with its effective date.