Last updated 3 September 2026
Privacy policy
ManyHandles publishes to social accounts you own and shows you what came back. This page says exactly what we store to do that, for how long, and who else sees it. No tracking, no ads, no selling data.
Who we are
ManyHandles is operated by ManyHandles, a general partnership (VOF) registered in the Netherlands. We are the controller of the data described here. Questions and requests: privacy@manyhandles.com.
What we store and why
Everything below lives in our own database on servers run by Hetzner Online GmbH, on servers in Helsinki, Finland (EU).
| What | Why | How long |
|---|---|---|
| Your account: name, email, password (hashed) or your Google account id and email if you sign in with Google, profile picture link | So you can sign in | Until you delete your account |
| Sign-in sessions: session token, expiry, IP address, browser identifier | To keep you signed in and to spot abuse | Until you sign out or the session expires |
| Your workspace: name, members, roles, invitation emails | So a team can share one set of accounts | Until the workspace is deleted |
| Connected social accounts: platform, account id, handle, display name, avatar link, the access level you chose, your daily cap | To publish and read results for that account | Tokens are deleted the moment you disconnect. The account name stays with its history until you delete the workspace |
| Platform access tokens and the permissions you granted | To act on your behalf at the platform | Encrypted at rest (AES-256-GCM). Deleted on disconnect |
| Media you upload, captions, hashtags and the posts you schedule | That is the product | Until you delete the piece, post or workspace |
| Post numbers: views, likes, comments, shares, saves, reach | To show what earns | Refreshed for 30 days after publishing, then kept as history |
| Comments other people leave on your posts: their platform id, username, the text and time | To show them in your inbox so you can reply | Refreshed for 7 days after publishing, kept with the post until you delete it |
| Trackable links you create and when they were clicked | To show which post sent the click | Click records hold only a timestamp. No IP address, browser or referrer is stored |
Media you upload is stored on our server and fetched by the platforms from a long, unguessable link. That link is not listed anywhere, but anyone who has it can open the file. Do not upload anything that must stay private.
We do not run analytics or tracking scripts, we do not use advertising networks, we do not process your content with AI, and we do not sell or share your data with anyone beyond the parties named below.
Legal basis
- Performing our contract with you (GDPR art. 6(1)(b)): your account, workspace, connected accounts, media, posts, numbers and comments.
- Our legitimate interest in keeping the service secure (art. 6(1)(f)): session IP address and browser identifier.
- Your consent (art. 6(1)(a)): every platform connection is a permission screen you approve at the platform and can withdraw at any time.
Who else sees your data
- The platforms you connect: TikTok, Instagram, Facebook and Threads (Meta), and YouTube (Google). We send them your media, captions and posting options, and read back post ids, numbers and comments. Their own privacy policies apply to what they do with it.
- Google, if you choose "Continue with Google": we receive only your name, email address and profile picture.
- Hetzner Online GmbH: hosting, servers in Helsinki, Finland (EU).
- Cloudflare: domain name service for manyhandles.com only. Traffic to the app does not pass through Cloudflare.
Your data stays inside the EU except for what you send to the platforms themselves.
YouTube
ManyHandles uses YouTube API Services. By connecting a YouTube channel you also agree to the YouTube Terms of Service, and the Google Privacy Policy applies to what Google does with your data.
Through the YouTube API we upload the videos you schedule, read your channel and video details and statistics, and read and reply to comments on your own videos. We refresh or delete stored YouTube video details within 30 days. Statistics may be kept longer as your history. You can revoke our access at any time on your Google security settings page, in addition to disconnecting inside ManyHandles.
Instagram, Facebook and Threads
Through Meta's APIs we publish to the Instagram accounts, Facebook Pages and Threads profiles you connect, read the numbers those posts earn, read comments on them and send the replies you write. You can remove ManyHandles at any time under "Apps and websites" in your Meta account settings. To have every piece of data we hold about your Meta accounts deleted, follow the data deletion instructions.
TikTok
Through TikTok's API we publish the videos and photos you schedule to your own TikTok account and read the numbers they earn. You can remove ManyHandles at any time under "Manage app permissions" in your TikTok settings.
Cookies
- Sign-in session (better-auth.session_token): keeps you signed in. Strictly necessary.
- Theme (mh-theme): remembers light or dark mode for one year.
- Connection check(mh_<platform>_state): a one-time code while you connect an account, deleted when you return.
No third-party cookies, no cross-site tracking.
Your rights
You can ask us for a copy of your data, to correct it, to delete it, to restrict or object to how we use it, and to receive it in a portable format. Write to privacy@manyhandles.com from the email address on your account and we answer within 30 days. You can also complain to the Dutch supervisory authority, the Autoriteit Persoonsgegevens.
Deleting a connected account inside ManyHandles deletes our copy of its access token immediately. Deleting your whole account and everything in it is described on the data deletion page.
Security
All traffic is encrypted in transit. Platform tokens are encrypted at rest with a key that is never stored next to the data. Passwords are hashed. Access to the servers is by key only. If we ever discover a breach that affects you, we tell you without undue delay.
Changes
When we change what we store or who sees it, we update this page and the date at the top. Material changes are announced inside the app before they take effect.