Last updated: 2026

Privacy Policy

Yosteps respects your privacy and applies the GDPR for users based in the European Union. This is an indicative document; a legal version will be added before any paid public launch.

1. Data collected

  • Account: email, password (hashed), role.
  • Profile: name, bio, country, city, styles, languages, social links.
  • TikTok Data: When you connect your TikTok account via TikTok Login, we collect authorized data (such as your avatar, display name, and video list) through the official TikTok API to verify your profile and showcase your content to artists.
  • Transactions: credit history, payments, Stripe withdrawals.
  • Analytics: pages visited, actions taken (anonymized).

2. Purposes

  • Provide the platform (matching, payments, communications).
  • Improve the service (aggregated statistics).
  • Transactional communications (pitch received, approved video).
  • Fraud prevention.

3. Data sharing

Your data is shared only with:

  • Supabase(auth & DB hosting, EU)
  • Apify (public TikTok/Instagram scraping, EU)
  • Soundcharts (music catalog)
  • Stripe (payments and withdrawals)
  • Vercel (web hosting)

No data is resold to third parties for advertising purposes.

4. TikTok Data Compliance

Yosteps uses the official TikTok API to allow dancers to authenticate and showcase their content. In compliance with the TikTok Developer Terms:

  • No Data Sale: We do not sell, rent, or transfer any data obtained from the TikTok API to third-party advertising networks, data brokers, or any other unauthorized parties.
  • Limited Use: TikTok data is used exclusively to provide the Yosteps platform features (e.g., displaying your dancer portfolio to artists).
  • Revoking Access: You can disconnect your TikTok account from Yosteps at any time within your profile settings. You can also revoke Yosteps' access directly from your TikTok account settings (Security > Manage App Permissions).
  • Data Deletion: Upon account deletion or when you disconnect your TikTok account, all associated TikTok data is permanently deleted from our servers within 30 days.

5. Your rights (GDPR)

At any time, you can:

  • Access your data (export on request)
  • Correct it directly in your profile
  • Request its deletion
  • Object to processing
  • Withdraw your consent

Send your request to privacy@yosteps.com. Response within 30 days.

6. Cookies

Strictly necessary cookies only (session, preferences). No third-party advertising cookies.

7. Retention

Your data is kept as long as your account is active. On deletion, personal data is erased within 30 days, except for legal obligations (invoices, accounting = 10 years).

8. Security

TLS encryption, hashed passwords (bcrypt via Supabase), restricted DB access. No sensitive data is transmitted by email.

9. DPO contact

privacy@yosteps.com