Privacy Policy

This policy describes how WONDOT Production Console handles Google and YouTube data for authorized WONDOT production operations.

Scope

WONDOT Production Console is a local-first internal tool used by authorized WONDOT operator(s) to manage WONDOT-owned YouTube channels and controlled production upload operations. It is not offered as a public consumer SaaS service.

Google and YouTube Data Accessed

Credential Handling

Access tokens are used in memory only for runtime API calls. Refresh tokens are stored locally with Windows CurrentUser DPAPI protection. Client secrets and tokens are not stored in the repository and must not be committed to source control.

Purpose of API Data Access

YouTube API data is used to verify the correct authorized channel, execute explicitly approved private uploads, set approved thumbnails where applicable, prevent duplicate uploads, reconcile YouTube processing state, and maintain an internal production audit record.

Local Storage and Retention

The tool stores non-secret operational records such as channel identifiers, YouTube video identifiers, upload metadata, upload ledgers, processing status, reconciliation status, and checksum evidence. These records are retained as internal production and audit records until changed or removed through an approved local cleanup process.

Revocation and Deletion

OAuth app access can be revoked from the relevant Google Account security settings. Local stored OAuth credentials can be deleted through a supported local credential removal workflow when available, or otherwise handled under an approved operator procedure. YouTube-hosted video deletion is separate from local credential or ledger deletion and is not performed automatically by WONDOT Production Console.

Data Sharing

WONDOT Production Console does not sell Google user data or YouTube API data. It does not share this data with third parties except as necessary for operating with Google and YouTube services under the operator's authorization.

Google API Limited Use

Use and transfer of information received from Google APIs is intended to comply with the Google API Services User Data Policy, including the Limited Use requirements, where those requirements apply to the tool's use of Google user data.

Contact

HUMAN_INPUT_REQUIRED