Privacy Policy
TrackMock · last updated 22 September 2026
Summary
TrackMock shows creators the metrics of the videos on the social account they connect. It has no third-party analytics, no advertising, no tracking cookies, and it shares nothing with anyone.
What is collected
When you connect an account, the tool stores:
- the access and refresh tokens issued by the platform, and the account identifier they belong to (for TikTok, the
open_id; for Instagram, the user id; for YouTube, the channel id), together with your display name and profile picture URL; - for each post you look up: its id, caption, publish time and its view, like, comment and share counts, along with the raw API response, kept as a record of what the platform returned and when.
No passwords are ever seen or stored — authentication happens on the platform's own login page. No email address, contact list, location or browsing activity is collected.
How it is used
Solely to display the metrics for the post you asked about, and to keep an audit record that the figures shown came from the platform's API. The data is not used to build profiles, not used for advertising, and not used to train anything.
Where it is stored and who can see it
Everything is stored on the operator's own server. One cookie per connected platform keeps you signed in to your TikTok, Instagram or YouTube account; it contains that account's identifier and a signature, nothing else. Nothing is sold, rented or shared with third parties. The only outbound requests are to the platform APIs themselves — TikTok, Meta and Google — in order to fetch the metrics you requested.
TrackMock's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. For YouTube it requests read-only access (youtube.readonly) and uses it only to list your channel's videos and read their statistics. TrackMock uses YouTube API Services; see the YouTube Terms of Service and the Google Privacy Policy.
Retention and deletion
Tokens are kept until you disconnect, until they expire, or until the operator deletes them. Disconnecting removes the stored token immediately, after which the tool can no longer read your account. To have the stored metric records deleted as well, contact the operator at the address below.
Your choices
You can revoke access at any time from your TikTok, Instagram or Facebook account settings, or for YouTube at myaccount.google.com/permissions, without needing the operator's involvement. Revoking takes effect immediately.
Contact
Questions, or requests to delete stored data: stuffshop.tn@gmail.com.