Privacy notice
How ChiccStyle handles information in its internal KokoPintar TikTok workspace.
Last updated: 21 September 2026
Who this workspace is for
ChiccStyle operates this application for its authorized team and company-managed TikTok shops and advertising accounts. This notice covers the KokoPintar TikTok workspace at ttk.kokopintar.com, including its public pages and demonstration.
The public demo contains illustrative sample data. It does not expose live orders, customer information, advertising accounts, or authorization tokens.
Information we use
When an authorized team member connects an account, we receive the account information and permissions made available by TikTok, including shop or advertiser identifiers, account names, and access tokens. Depending on the permissions granted, the workspace requests order, product, campaign, and performance information to display to the team.
The application stores encrypted connection details, the selected accounts, sign-in sessions, temporary authorization state, and basic security and activity records. Activity records describe events such as sign-in or connection changes. Hosting services may also process technical request information needed to serve and protect the application.
Purpose and sharing
We use this information to operate our own shops, review advertising, authenticate staff, maintain account connections, and investigate service or security problems. API requests are exchanged with TikTok, and the application runs on our hosting infrastructure.
We do not sell this data. The workspace does not make connected business or customer data available to public visitors. Access is intended for authorized company personnel; information may also be handled by service providers necessary to operate the application or disclosed where legally required.
Storage and retention
Connection details, including provider tokens, are encrypted at rest. Passwords are stored as hashes. The current application does not persist raw customer records or raw order responses in its local database; authorized responses are processed to display the requested view.
Sign-in sessions expire after eight hours, and temporary authorization state expires after ten minutes. Application activity records are eligible for removal after 30 days through routine cleanup. These are this application's current settings, not statements about TikTok's own retention rules. Connection details remain until disconnected or removed by the administrator. Infrastructure logs and any backups are managed separately by the company administrator.
Cookies and your controls
The workspace uses an essential session cookie to keep authorized users signed in. Sign out to end that session. No advertising tracking is added by these public pages.
The Connections page lets an authorized user disconnect a provider. This removes its stored connection details and tokens from the active application database. It does not revoke TikTok's upstream authorization. To remove that grant, also use the applicable account or application authorization settings in TikTok.
Questions, access, or deletion requests
Contact your existing ChiccStyle company administrator to ask about access, correct account information, report a concern, or request deletion of application-held data. The administrator can coordinate requests concerning company records, technical logs, or backups. Business information is available at chiccstyle.id.
We will update this notice when the application's data practices change. TikTok's own services and authorization pages are governed by TikTok's applicable policies.