Privacy Policy — Hermesaagent
Effective date: 2026-06-18
Data we receive
When you authorize the application, X.com's OAuth2 flow returns your X user ID, screen name, and a short-lived access token (valid for up to one hour). A refresh token, if issued, is stored encrypted on a private server.
What we do with it
We use these credentials only to interact with X.com content as you, the authenticated user — calling the X.com API on your behalf. We do not use them for any other purpose.
What we do NOT do
We do not sell, share, log, or analytics-process your data. We do not set cookies. We do not run third-party trackers.
Contact
Changes
We may update this policy; the effective date above reflects the current version.
Hermesaagent is not affiliated with X Corp.