Privacy policy
Last updated 10 October 2026
Vera (vera.levaralabs.com) is a private video production studio run by Levara Labs. People with an account make short videos in it and, if they choose, connect their own YouTube, Instagram and TikTok accounts so Vera can post their finished videos for them. This page says what Vera keeps, why, and how to remove it.
What Vera keeps
- Your Vera account: username, display name, a salted password hash (never the password), your role, and which groups you can open.
- Your work: the briefs you write, the runs that make your videos, the videos themselves, their posting calendar and the view counts of posts you add.
- Connected accounts: for each YouTube channel, Instagram account or TikTok account you connect, its id, name, handle and picture, and the access and refresh tokens the platform issues. Tokens are encrypted (AES-256-GCM) with a key kept outside the database, are never shown in the browser, and are used only on Vera's servers.
- Publishing records: which video went to which account, when, the options you confirmed (title, caption, visibility) and the link the platform returned.
How Vera uses platform data
Vera acts only when you press Publish (now, or at a time you pick). It uses each connection for exactly this:
- YouTube (scopes
youtube.uploadandyoutube.readonly): to see which channel you connected and to upload the video you chose, with the title, description and visibility you confirmed. - Instagram (
instagram_business_basic,instagram_business_content_publish): to see which professional account you connected and to publish the Reel you chose, with your caption. - TikTok (
user.info.basic,video.upload): to see which account you connected and to send the video you chose to your TikTok inbox as a draft. You finish and post it in the TikTok app.
Vera doesn't read your messages, followers, other posts or analytics through these connections, doesn't sell or share platform data, doesn't use it for advertising, and doesn't use it to train AI models. It isn't shared with anyone except the platform itself and the services that run Vera: Supabase (database), Cloudflare R2 (video storage) and the servers Vera runs on.
Vera's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Vera uses the YouTube API Services: by connecting a channel you agree to the YouTube Terms of Service, and Google's handling of your data is covered by the Google Privacy Policy.
Disconnecting and deleting your data
- Disconnect an account on Vera's Connections page. Vera deletes its tokens at once and asks Google and TikTok to revoke them.
- You can also revoke Vera at the platform: Google Account → Third-party connections, Instagram → Settings → Apps and websites, or TikTok → Settings → Security → Manage app permissions. Vera then can't post, and you can disconnect it here to remove what's left.
- Delete everything: email [email protected] from the address tied to your account, or ask a Vera admin. Your account, its connections and tokens are deleted within 30 days; videos you made stay with the group they belong to unless you ask for them to go too.
Keeping it safe
Vera is served only over HTTPS. Connections and publishing are available only to signed-in accounts, and only the person who connected an account can publish to it. The AI that helps make videos never sees platform tokens and can't publish anything.
Contact
Questions or requests: [email protected]. If this policy changes, the date at the top changes with it.