Privacy Policy
FlipOS is the dashboard FlipWallz uses to run its live-selling shop. It is operated by Julian Alden, a Sole proprietorship based in Port Charlotte, Florida, United States. This page says what the dashboard collects, why, who else sees it, and how to reach us about it. It is written in plain language on purpose.
1. Who this covers
- Team members who sign in to the dashboard with an invited account.
- Buyers who ordered from our shop on TikTok Shop, whose order details reach the dashboard so we can pack and ship.
- People in public livestreams that our team follows for market research, whose public usernames and chat messages the dashboard records.
- Discord users who talk to the dashboard's bot in our team server.
2. What we collect
Accounts
A username and a password. Passwords are stored only as a salted hash and cannot be read back. Optionally a profile photo, banner and short bio you add yourself. Your role and permissions, the invite that created the account, when the account was created and last signed in. If you connect Discord under Settings, your Discord user ID and username so slash commands can act as your dashboard account.
Use of the dashboard
An activity log of what was done in the dashboard, by which account and when, for example "packed order 1234" or "changed a pay rate". Teammates with the right permission can see it; it exists so the shop's books and stock changes are traceable. The server also keeps short-lived technical logs for troubleshooting.
Cookies and browser storage
One session cookie that keeps you signed in, and a few preferences (theme, last workspace, which sidebar sections are open) saved in your browser. Details are in the Cookie Policy. There are no advertising or analytics trackers.
Shop data from TikTok Shop
When the shop is connected to TikTok Shop, the dashboard pulls what we need to run it: orders, including the buyer's name, shipping address, phone number, TikTok nickname and buyer ID, the items ordered, payment totals, shipping status and tracking numbers; buyer messages sent to the shop; returns and refund requests; payouts; product listings; and sales analytics. We receive this from TikTok under our seller account.
Public livestream data
The dashboard can follow other sellers' public TikTok LIVE and Whatnot streams. For those streams it records the public usernames and chat messages, viewer counts and when the stream ran, and it may record the audio of tracked TikTok LIVE sessions. This is public information as broadcast, collected for market research such as which products people ask for.
The Discord bot
Commands and messages you send to the bot, and your Discord user ID, so it can answer you and check which dashboard account you are linked to.
What we do not collect
No email address or phone number for team accounts. No payment details of any kind; payments happen on TikTok. No advertising IDs, no tracking pixels, no third-party analytics, and nothing from your device beyond what a normal web page needs.
3. Why we use it
- To run the dashboard and keep you signed in.
- To pack, ship, refund and answer questions about orders.
- To keep the shop's records: stock movements, pay, finances and who changed what.
- To learn what buyers ask for in public streams and plan what to stock.
- To keep the dashboard secure and to fix problems.
We do not sell personal information and we do not use it for advertising.
4. Who else sees it
The dashboard runs on a computer we control. Some features rely on other companies, and they only see what they need:
- TikTok provides the order, message and analytics data through its Seller API, and when you view an order or a message the dashboard loads product and profile images straight from TikTok's servers, so TikTok sees your IP address for those requests. TikTok's own privacy policy applies to your TikTok account.
- Discord carries bot commands and alerts posted to our team server.
- Whatnot is read as a public website for the streams we follow there.
- A signing service (EulerStream) used by the TikTok LIVE connector sees which public usernames we follow.
- Anthropic processes short excerpts of public chat requests when the optional AI review of requested designs is switched on, and answers questions asked of the team chat assistant. Buyer addresses and account passwords are never sent to it.
- Tailscale provides the encrypted tunnel that makes the dashboard reachable outside our network.
- USPS and other carriers, through TikTok Shop, receive the shipping details on labels.
- A public spot-price feed supplies metal prices; no personal data goes to it.
We will also disclose information if the law requires it or to protect the shop, its team or its buyers from fraud or abuse.
5. Where it is kept and how long
Everything is stored in a database on a computer we control in Florida, with a daily backup kept for 14 days. Passwords are hashed. Access is by invitation only, over HTTPS, and each account only sees what its role allows.
- Accounts stay until the account is removed by an admin. A removed account's name may remain in the activity log and in records it changed.
- Orders, messages and returns are kept as long as we need them for fulfilment, returns, disputes and bookkeeping.
- Public livestream logs and recordings are kept while we track that seller and for market-research history after that.
- Technical logs are overwritten routinely.
6. Your choices
- Team members can change their photo, bio and password under Settings → Account, and can ask an admin to remove the account.
- Buyers can see and manage their data through TikTok Shop. You can also write to us at [email protected] to ask what we hold about an order or to correct a shipping address.
- If you appear in a public stream we follow and want your username or messages removed from our logs, email [email protected] with the stream and date and we will remove them where we are not required to keep them.
- Signals such as "Do Not Track" make no difference here because there is no tracking to switch off.
FlipOS is built for a small team in the United States and is not offered to the public as a service. If a law in your state or country gives you rights over your personal information, email us and we will honour them where they apply.
7. Children
The dashboard is for people 18 or older. We do not knowingly collect information from anyone younger, and we will delete it if we learn that we have.
8. Changes
When this policy changes, the effective date at the top changes with it and the team is told in the dashboard's changelog. Continued use after a change means the new version applies.
9. Contact
Julian Alden, Port Charlotte, Florida, United States. Email [email protected].