Effective date: March 4, 2026
1. What We Collect
When you sign in with Google, we receive and store:
- Google profile information: your name, email address, and Google account ID
- OAuth tokens: access and refresh tokens used to query the YouTube APIs on your behalf
When you use the dashboard, we query the YouTube Analytics API and YouTube Data API v3 to retrieve:
- Watch time metrics (hours, views) for your channel
- Video metadata (titles, publish dates, subscriber counts)
- Search terms, traffic sources, and content performance data
We do not collect or store any YouTube analytics data long-term. All analytics data is fetched in real time from the YouTube API and cached temporarily (see Section 3).
2. How We Use Your Data
- Your Google profile is used solely to identify your account and display your name in the dashboard.
- OAuth tokens are used exclusively to authenticate API requests to YouTube on your behalf.
- YouTube analytics data is displayed to you and only you. We do not share, sell, or analyze your channel data for any purpose other than rendering your personal dashboard.
3. Data Retention & Caching
- Analytics data: cached in server memory for up to 15 minutes to reduce API calls, then automatically discarded. No analytics data is written to permanent storage.
- OAuth tokens: stored in our database for as long as your account exists, encrypted at rest. Tokens are used only to authenticate YouTube API requests.
- Account data: your Google profile information and dashboard settings are stored until you delete your account.
In compliance with the YouTube API Services Terms of Service, we do not retain any YouTube API data beyond 30 days. Our 15-minute cache is well within this limit.
4. Third-Party Services
This application uses the following Google API services:
By using this application, you also agree to the Google Privacy Policy.
5. Revoking Access
You can revoke this application's access to your YouTube data at any time:
When access is revoked, we will delete all stored tokens and cached data within 7 days (for app-initiated revocations) or 30 days (for Google-initiated revocations).
6. Your Rights (GDPR)
If you are in the European Economic Area, you have the right to:
- Access: request a copy of your stored data via the Export feature
- Rectification: update your settings at any time via Settings
- Erasure: delete your account and all associated data via Account Management
- Portability: download your data in JSON format via Export
7. Security
We protect your data using:
- HTTPS encryption for all connections
- Encrypted token storage in the database
- Session-based authentication with secure cookies
- Rate limiting to prevent abuse
8. Changes to This Policy
We may update this privacy policy from time to time. Changes will be posted on this page with an updated effective date. Continued use of the service after changes constitutes acceptance of the updated policy.
9. Contact
For questions about this privacy policy or your data, please contact us through the application's support channels.