Privacy Policy
Effective Date: February 14, 2026
1. Introduction
Gmaxhelper ("We", "Our", or "Us") is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy ("Policy") governs the collection, use, disclosure, and safeguarding of information when you use our AI-powered GMV Max Assistant service, particularly in relation to your TikTok advertising data.
By using our Service, you acknowledge that you have read, understood, and agree to be bound by this Policy. If you do not agree with this Policy, please do not use our Service.
2. TikTok Ads Data Authorization
Gmaxhelper operates as an authorized third-party application that interfaces with TikTok Advertising Platform APIs ("TikTok APIs"). Our data collection and processing practices strictly comply with TikTok's advertising policies, applicable data protection regulations, and the latest TikTok Marketing API Developer Agreement.
Important Notice: All data access is granted through proper OAuth 2.0 authorization, and we maintain strict adherence to TikTok's rate limits, API usage policies, and data retention requirements as specified in the current TikTok Marketing API Developer Documentation.
2.1 Data We Collect
With your explicit authorization, we may collect the following types of data from your TikTok advertising accounts:
- Campaign Performance Data: Impressions, clicks, conversions, spend, ROAS, CPA, and other campaign metrics
- Account Information: Account IDs, business account details, shop information, and advertiser profiles
- Advertising Objects: Ad groups, ads, audiences, creative assets metadata, and campaign structures
- Targeting and Bidding Data: Targeting parameters, bid strategies, budget allocations, and optimization goals
- Monitoring and Alert Data: Real-time performance data for automated monitoring and alerting purposes
2.2 Purpose of Data Collection
We collect and process your TikTok advertising data solely for the following legitimate purposes:
- Providing AI-powered insights, analysis, and recommendations for optimizing your ad campaigns
- Delivering real-time ROAS alerts and performance monitoring notifications
- Aggregating and analyzing data across multiple shops for comprehensive reporting
- Providing personalized AI-powered assistance for campaign management and optimization
- Ensuring compliance with TikTok advertising policies and industry regulations
3. AI Services and Third-Party Providers
To deliver our AI-powered services, Gmaxhelper integrates with leading AI service providers. This section provides detailed information about our AI integration practices and data handling protocols.
3.1 Third-Party AI Service Providers
We utilize the following AI service provider to enhance our service capabilities:
- Zhipu AI (智谱AI): For advanced natural language processing, analytics, intelligent campaign optimization, and recommendation algorithms
3.2 Data Transmission to AI Providers
Encryption and Security: All data transmitted to third-party AI providers is sent through encrypted channels using TLS 1.3 or higher encryption protocols. We ensure end-to-end encryption throughout the data transmission process.
3.3 Data Retention by AI Provider
Strict Data Retention Policy: Our contract with Zhipu AI explicitly prohibits the provider from storing, retaining, or using your data for any purpose other than processing your specific requests. Your data is not stored on their servers after the processing is complete.
3.4 AI Model Training Protection
AI Model Training Policy: Gmaxhelper strictly prohibits the use of your TikTok advertising data for training any general-purpose AI models. Your data is used exclusively for providing personalized services to you and will never be incorporated into any AI model training datasets.
We maintain contractual agreements with all AI providers that explicitly forbid the use of your data for model training or improvement of their general AI capabilities.
4. Data Security Measures
Gmaxhelper implements industry-leading security measures to protect your TikTok advertising data:
- Encryption: All data transmitted between our systems, TikTok, and AI providers is encrypted using TLS 1.3 with perfect forward secrecy
- Secure Storage: Data is stored in encrypted databases with AES-256 encryption and multi-factor authentication
- Access Controls: Strict role-based access control (RBAC) with audit logging for all system access
- Regular Audits: Annual independent security audits and quarterly penetration testing
- Incident Response: Established security incident response protocols with 24/7 monitoring
- Data Retention: Data is retained only as long as necessary for service provision and legal compliance
5. Data Sharing and Disclosure
We do not sell, rent, or lease your TikTok advertising data to third parties. We may only share your data in the following limited circumstances:
- AI Service Providers: With Zhipu AI solely for processing your requests, under strict contractual obligations prohibiting data storage or model training
- Service Providers: With trusted third-party service providers who assist in operating our service (e.g., hosting, analytics), subject to strict confidentiality agreements and data processing agreements
- Legal Requirements: When required by law, court order, or to protect our rights, safety, or the safety of our users
- Business Transfers: In connection with a merger, acquisition, or sale of assets, subject to prior notification
- With Your Consent: Any other sharing will require your explicit prior written consent
6. User Rights
Under applicable data protection laws (including GDPR, CCPA, and PIPL), you have the following rights regarding your TikTok advertising data:
- Right to Access: Request access to the personal data we hold about you
- Right to Correction: Request correction of inaccurate or incomplete data
- Right to Deletion: Request deletion of your data, subject to legal and business requirements
- Right to Portability: Request a copy of your data in a structured, commonly used format
- Right to Object: Object to processing of your data on legitimate interest grounds
- Right to Withdraw Consent: Withdraw your consent for data processing at any time
- Right to Lodge a Complaint: Lodge a complaint with a supervisory authority
To exercise these rights, please contact us at privacy@Gmaxhelper.com
7. TikTok Platform Compliance
Gmaxhelper maintains full compliance with TikTok's advertising platform policies and requirements:
- We are an authorized TikTok Marketing API developer with valid developer credentials
- All data access is granted through proper OAuth 2.0 authorization with explicit user consent
- We strictly adhere to TikTok's rate limits and API usage policies
- Our practices align with TikTok's advertising data usage guidelines and developer documentation
- We respect TikTok's user privacy and data protection requirements as outlined in the latest TikTok Marketing API Developer Agreement
- We implement proper data minimization principles, collecting only data necessary for service provision
8. Data Retention and Deletion
We retain your TikTok advertising data for the duration of your active account subscription and for a reasonable period thereafter for legal, compliance, and business purposes. Upon account termination, we will securely delete your data within 30 days, except as required by law or for legitimate business purposes.
You may request immediate data deletion at any time by contacting privacy@Gmaxhelper.com
9. International Data Transfers
Your TikTok advertising data may be transferred to and processed in countries other than your country of residence, including countries that may have different data protection laws. We ensure that such transfers comply with applicable data protection laws through appropriate safeguards, including:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Binding Corporate Rules (BCRs) where applicable
- Other legally recognized transfer mechanisms
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, applicable laws, or regulatory requirements. We will notify you of any material changes by:
- Posting the updated policy on our website
- Sending you a notification email
- Providing in-app notifications
Your continued use of Gmaxhelper after such changes constitutes your acceptance of the updated Policy. Material changes will not apply retroactively without your consent.
11. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
- Email: privacy@Gmaxhelper.com
- Address: [Your Business Address]
- TikTok Developer Support: We maintain active communication with TikTok's developer support team to ensure ongoing compliance
This Privacy Policy is effective as of February 14, 2026 and was last updated on February 14, 2026.
隐私政策
生效日期:2026年2月14日
1. 引言
Gmaxhelper("我们"、"本公司"或"我们")致力于保护您的隐私并确保您的个人信息安全。本隐私政策("政策")规定了当您使用我们的AI驱动的GMV Max助手服务时,特别是在涉及您的TikTok广告数据时,我们如何收集、使用、披露和保护您的信息。
通过使用我们的服务,您确认您已阅读、理解并同意受本政策的约束。如果您不同意本政策,请不要使用我们的服务。
2. TikTok广告数据授权
Gmaxhelper作为一个经授权的第三方应用程序,与TikTok广告平台API("TikTok API")接口。我们的数据收集和处理实践严格遵守TikTok的广告政策、适用的数据保护法规以及最新TikTok Marketing API开发者协议。
重要提示:所有数据访问均通过适当的OAuth 2.0授权获得,并且我们严格遵守TikTok的速率限制、API使用政策以及当前TikTok Marketing API开发者文档中指定的数据保留要求。
2.1 我们收集的数据
在您的明确授权下,我们可能会从您的TikTok广告账户中收集以下类型的数据:
- 广告系列表现数据:曝光量、点击量、转化量、花费、ROAS、CPA及其他广告系列指标
- 账户信息:账户ID、企业账户详情、店铺信息及广告主资料
- 广告对象:广告组、广告、受众、创意资产元数据及广告系列结构
- 定向和竞价数据:定向参数、竞价策略、预算分配及优化目标
- 监控和警报数据:用于自动监控和警报目的的实时性能数据
2.2 数据收集目的
我们收集和处理您的TikTok广告数据仅用于以下合法目的:
- 提供AI驱动的洞察、分析和建议,以优化您的广告系列
- 提供实时ROAS警报和性能监控通知
- 汇总和分析多个店铺的数据以生成综合报告
- 提供个性化AI助手,用于广告系列管理和优化
- 确保符合TikTok广告政策和行业法规
3. AI服务和第三方提供商
为提供我们的AI驱动服务,Gmaxhelper集成了领先的AI服务提供商。本部分详细说明我们的AI集成实践和数据处理协议。
3.1 第三方AI服务提供商
我们利用以下AI服务提供商来增强我们的服务能力:
- 智谱AI(Zhipu AI):用于高级自然语言处理、分析、智能广告系列优化和推荐算法
3.2 向AI提供商传输数据
加密和安全:传输给第三方AI提供商的所有数据都通过使用TLS 1.3或更高级别加密协议的加密通道发送。我们在整个数据传输过程中确保端到端加密。
3.3 AI提供商的数据保留
严格的数据保留政策:我们与智谱AI的合同明确禁止该提供商出于处理您的特定请求以外的任何目的存储、保留或使用您的数据。处理完成后,您的数据不会存储在他们的服务器上。
3.4 AI模型训练保护
AI模型训练政策:Gmaxhelper严格禁止使用您的TikTok广告数据来训练任何通用AI模型。您的数据仅用于为您提供个性化服务,绝不会并入任何AI模型训练数据集。
我们与所有AI提供商维护合同协议,明确禁止将您的数据用于模型训练或改进其通用AI能力。
4. 数据安全措施
Gmaxhelper实施行业领先的安全措施来保护您的TikTok广告数据:
- 加密:在我们的系统、TikTok和AI提供商之间传输的所有数据均使用TLS 1.3加密,具有完美前向保密性
- 安全存储:数据存储在使用AES-256加密和多因素身份验证的加密数据库中
- 访问控制:严格的基于角色的访问控制(RBAC),对所有系统访问进行审计记录
- 定期审计:年度独立安全审计和季度渗透测试
- 事件响应:建立的安全事件响应协议,24/7监控
- 数据保留:数据仅在服务提供和法律合规所需的必要时间内保留
5. 数据共享和披露
我们不会出售、出租或租赁您的TikTok广告数据给第三方。我们仅在以下有限情况下与第三方共享您的数据:
- AI服务提供商:与智谱AI合作,仅为处理您的请求,并受到严格的合同义务约束,禁止数据存储或模型训练
- 服务提供商:与协助我们运营服务的可信第三方服务提供商(如托管、分析),受严格的保密协议和数据处理协议约束
- 法律要求:当法律、法院命令要求,或为保护我们的权利、安全或用户安全时
- 业务转让:在合并、收购或资产出售的情况下,需事先通知
- 经您同意:任何其他共享均需您的明确事先书面同意
6. 用户权利
根据适用的数据保护法律(包括GDPR、CCPA和PIPL),您对您的TikTok广告数据享有以下权利:
- 访问权:请求访问我们持有的关于您的个人数据
- 更正权:请求更正不准确或不完整的数据
- 删除权:请求删除您的数据,受法律和业务要求约束
- 可携权:请求以结构化、常用格式获取您的数据副本
- 反对权:基于合法利益 grounds 反对处理您的数据
- 撤回同意权:随时撤回您对数据处理同意
- 投诉权:向监管机构提出投诉
如需行使这些权利,请联系privacy@Gmaxhelper.com
7. TikTok平台合规性
Gmaxhelper完全遵守TikTok的广告平台政策和要求:
- 我们是经授权的TikTok Marketing API开发者,拥有有效的开发者凭证
- 所有数据访问均通过适当的OAuth 2.0授权获得,并有明确的用户同意
- 我们严格遵守TikTok的速率限制和API使用政策
- 我们的做法符合TikTok的广告数据使用指南和开发者文档
- 我们尊重TikTok的用户隐私和数据保护要求,如最新TikTok Marketing API开发者协议所述
- 我们实施适当的数据最小化原则,仅收集服务提供所需的数据
8. 数据保留和删除
我们在您的活跃账户订阅期间以及之后的合理期限内保留您的TikTok广告数据,用于法律、合规和业务目的。账户终止后,我们将在30天内安全删除您的数据,除非法律要求或出于合法业务目的需要保留。
您可以随时通过联系privacy@Gmaxhelper.com请求立即删除数据。
9. 国际数据传输
您的TikTok广告数据可能会被传输到您居住国以外的国家并在那里进行处理,包括可能具有不同数据保护法的国家。我们确保此类传输通过适当的保障措施符合适用的数据保护法,包括:
- 欧盟委员会批准的标准合同条款(SCCs)
- 适用的具有约束力的公司规则(BCRs)
- 其他法律认可的传输机制
10. 本隐私政策的变更
我们可能会不时更新本隐私政策,以反映我们的实践、适用法律或监管要求的变化。我们将通过以下方式通知您任何重大变更:
- 在我们网站上发布更新的政策
- 向您发送通知邮件
- 提供应用内通知
在此类变更后继续使用Gmaxhelper即表示您接受更新的政策。未经您同意,重大变更不会追溯适用。
11. 联系信息
如果您对本隐私政策或我们的数据实践有任何问题、疑虑或请求,请联系我们:
- 电子邮件:privacy@Gmaxhelper.com
- 地址:[您的企业地址]
- TikTok开发者支持:我们与TikTok的开发者支持团队保持积极沟通,以确保持续合规
本隐私政策自2026年2月14日起生效,最后更新日期为2026年2月14日。