Privacy Policy
Last updated: July 2026. This page describes how Tokless handles data. If anything here is unclear, the short version is: we take the minimum required to resolve a public TikTok link, and we don't keep it.
1. What Tokless is
Tokless is a free browser-based tool that turns a public TikTok share link into a direct download of the underlying media file. There is no account, no sign-up, and no paid tier.
2. What we process
To resolve a media link, Tokless must fetch the public TikTok page that your pasted URL points to. That fetch involves the video's public identifier and, incidentally, the IP address of the request. We do not associate this with any personal identifier because we don't ask for one.
3. What we don't collect
We don't request an email address, phone number, or name. We don't set persistent tracking cookies for advertising. We don't operate a user account system. We don't sell the URLs you paste as trend data.
4. Cookies and local storage
Tokless may use a minimal amount of local storage to remember non-identifying UI state (for example, a chosen tab). It does not use tracking cookies. Your browser's storage is never sent to us as an identifier.
5. Third-party services
To fetch public TikTok metadata, Tokless relies on TikTok's own public endpoints (via a standard public API layer). Once a direct media URL is resolved, your browser downloads the file from TikTok's own content delivery network. Tokless does not proxy the media file. Those third parties have their own privacy practices, which we do not control.
6. Logs
Standard web server logs may temporarily record request metadata (such as timestamps and HTTP status codes) for basic operational purposes like debugging outages. These logs are not used to profile individuals and are rotated on a short schedule.
7. Downloads
The media file you download is served directly by TikTok's CDN. Tokless does not store a copy of your downloads on our servers.
8. Analytics
Tokless does not run a third-party analytics or advertising tracker on its pages. If this ever changes, this page will be updated before the change takes effect.
9. Data retention
Because we do not maintain user accounts and do not persist your queries, there is no profile of your activity to retain. Operational logs described in section 6 are short-lived.
10. Security
Tokless is served over HTTPS. We follow standard practices to keep the site infrastructure secure, but no service on the public internet can guarantee absolute security.
11. Children
Tokless is not directed at children under 13. It does not knowingly collect information from children.
12. Changes to this policy
We may update this page to reflect changes in practice or in the third-party services we rely on. The date at the top of the page reflects the most recent update.
13. Contact
Questions about this policy can be sent to the address listed inside the project's public repository README, if applicable.
