Privacy Policy — Hermesaagent

Effective date: 2026-06-18

Data we receive

When you authorize the application, X.com's OAuth2 flow returns your X user ID, screen name, and a short-lived access token (valid for up to one hour). A refresh token, if issued, is stored encrypted on a private server.

What we do with it

We use these credentials only to interact with X.com content as you, the authenticated user — calling the X.com API on your behalf. We do not use them for any other purpose.

What we do NOT do

We do not sell, share, log, or analytics-process your data. We do not set cookies. We do not run third-party trackers.

Contact

[email protected]

Changes

We may update this policy; the effective date above reflects the current version.

Hermesaagent is not affiliated with X Corp.