Purpose-limited API use for the GrowLumina service.
SKYMOND LIMITED operates GrowLumina and plans to use TikTok Business API access only for the business functions described below and only for accounts that explicitly authorize access.
Requested capabilities
Account User
Used to identify and display basic information for the TikTok business account that has explicitly authorized GrowLumina.
Get Account Media
Used to retrieve media belonging to the authorized account, together with relevant media metadata, so the account owner can review and organize its own content inside GrowLumina.
Account Comment
Used to support comment-management workflows for content belonging to the authorized account. GrowLumina does not use this capability to build datasets of comments from unrelated public accounts.
Account Post Content
Used for user-initiated content publishing. Publishing actions are intended to occur only when requested or approved by an authorized account operator.
Auth Code Management
Used to receive authorization responses, connect authorized accounts and support the authorization lifecycle. Authorization codes are treated as security credentials rather than content for analytics or marketing.
Access principles
- Access begins only after an account owner completes an authorization flow.
- GrowLumina requests only capabilities needed for the product functions described above.
- TikTok-derived data is not sold to data brokers or used to build unrelated public-user datasets.
- Users may revoke authorization and may request deletion of TikTok-derived data.
- Production credentials and tokens are intended to be handled server-side and protected from exposure in client-side code.
Authorization callback pages
GrowLumina publishes dedicated callback pages for the authorization flows used in this integration:
https://tk.growlumina.com/auth/tiktok-account-holder-redirect.html
Business contact
Contact SKYMOND LIMITED at [email protected] for API-use, privacy or authorization questions.