Privacy Policy

Last updated: June 19, 2026

1. Who we are

Company Command Control Center is a social media management and business operations platform operated by Company Command Control Center SAS, a company registered in France.

Contact: nils.entreprise@gmail.com

2. What data we collect

When you use Company Command Control Center, we collect:

  • Account information — your name, email address, and company name when you sign up.
  • OAuth access tokens — when you connect a social media account (YouTube, Facebook, Instagram, TikTok, etc.), we store the OAuth access tokens provided by those platforms to act on your behalf.
  • Social media content — posts, captions, media files, and scheduling information that you create or import.
  • Analytics data — public performance metrics (views, likes, comments, reach, impressions) fetched from connected platforms on your behalf.
  • Usage data — basic logs of how you use the platform for product improvement purposes.

3. How we use your data

We use your data solely to provide the Service:

  • To display your social media posts, analytics, and account information in your dashboard.
  • To publish, schedule, or update content on your connected social media accounts on your instruction.
  • To retrieve analytics and performance data from connected platforms on your behalf.
  • To send transactional emails (account confirmation, invitations).

We do not sell your data. We do not use your social media content or analytics for advertising purposes. We do not share your data with third parties except as described in Section 4.

4. Third-party services

Company Command Control Center integrates with the following services:

  • Meta (Facebook & Instagram) — OAuth tokens are used to read your page posts, publish content, and retrieve insights. Governed by Meta's Privacy Policy.
  • Google (YouTube) — OAuth tokens are used to upload videos, manage your channel, and retrieve YouTube Analytics data. Governed by Google's Privacy Policy.
  • TikTok — OAuth tokens are used to publish videos and retrieve account analytics. Governed by TikTok's Privacy Policy.
  • Twilio — used to send SMS messages on your behalf via the SMS Marketing module.
  • Resend — used to send email campaigns and transactional emails.
  • Supabase — our database and authentication provider (EU region). Governed by Supabase's Privacy Policy.
  • Vercel — our hosting provider. Governed by Vercel's Privacy Policy.

5. Data from platform APIs

Company Command Control Center accesses social platform APIs (Meta, Google, TikTok) only with your explicit consent via OAuth. The data retrieved is:

  • Displayed only to you, the authenticated account owner.
  • Not shared with other users or third parties.
  • Not used for any purpose other than powering your dashboard.
  • Deleted when you disconnect the platform account or delete your account.

Our use of data from Google APIs complies with the Google API Services User Data Policy, including the Limited Use requirements.

6. Data retention

We retain your data for as long as your account is active. If you delete your account, all personal data including OAuth tokens, posts, and analytics is permanently deleted within 30 days.

You can request early deletion at any time by contacting us at nils.entreprise@gmail.com.

7. Your rights (GDPR)

If you are located in the European Economic Area, you have the following rights:

  • Right of access — request a copy of your personal data.
  • Right to rectification — correct inaccurate data.
  • Right to erasure — request deletion of your data.
  • Right to portability — receive your data in a machine-readable format.
  • Right to object — object to certain processing.

To exercise any of these rights, contact us at nils.entreprise@gmail.com.

8. Revoking platform access

You can disconnect any social media platform at any time from the Connect Channels tab. This immediately removes the stored OAuth token. You can also revoke access directly from each platform's settings (for example, Facebook Settings > Apps and Websites).

9. Security

OAuth tokens and sensitive credentials are stored encrypted in our database. All data in transit is protected by HTTPS. Access to your workspace is enforced by row-level security — no other user can access your data.

10. Changes to this policy

We may update this Privacy Policy from time to time. We will notify you by email or in-app notification if we make material changes. Continued use of the Service after such changes constitutes acceptance.

11. Contact

For any privacy-related questions: nils.entreprise@gmail.com

Company Command Control Center — France