ChatCoat App Icon
ChatCoat Application

Official Legal & Compliance

YouTube API Services
Privacy Policy>YouTube & Google API

YouTube API Services Privacy Policy

Effective Date: September 11, 2026 • Application: ChatCoat

YouTube API Services Compliance Notice

ChatCoat uses official YouTube API Services to provide channel connection, video and YouTube Shorts publishing, metadata management, and comment automation features. Our application adheres strictly to the YouTube API Services Terms of Service, the Google API Services User Data Policy, and YouTube brand identity guidelines.

1. YouTube API Services & Google Privacy Notice

ChatCoat uses YouTube API Services to provide YouTube channel connection, video and YouTube Shorts publishing, metadata management, and comment automation features.

  • YouTube Terms of Service: Users must comply with applicable YouTube Terms and policies when using ChatCoat. In accordance with YouTube API Services Developer Policies, users are informed that by accessing or using ChatCoat's YouTube integration features, you agree to be bound by the YouTube Terms of Service.
  • Google Privacy Policy: ChatCoat processes user data received from Google APIs in accordance with the Google Privacy Policy.
  • Google API Services User Data Policy: ChatCoat's use and transfer to any other app of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

2. Device Information, Cookies, and Local Storage Technologies (Policy III.A.2.g)

Mandatory Disclosure under YouTube Developer Policy III.A.2.g:

ChatCoat stores, accesses, and collects information directly or indirectly on or from users' devices, and allows essential technical infrastructure providers (specifically our authentication service and secure cloud hosting) to place, access, or recognize cookies and browser storage technologies on users' devices or web browsers solely to operate, authenticate, and secure the service.

Purpose of Device Technologies: These cookies and device technologies are utilized strictly to:

  • Maintain and protect your authenticated user session when navigating the ChatCoat application.
  • Store OAuth 2.0 PKCE code verifiers and state tokens to prevent CSRF attacks during Google and YouTube authentication.
  • Preserve user workspace configuration, UI preferences, and platform selections.
  • Ensure the security and reliability of API communications between your browser, our servers, and Google APIs.

Third-Party Technologies: Authorized infrastructure service providers (specifically Clerk authentication and secure cloud database servers) place and access essential session cookies on your device strictly as data processors to execute session verification and DDoS protection.

Cookie Controls: Users have the right to block, delete, or manage cookies at any time through their browser preferences. Please note that disabling essential session cookies will prevent login and access to YouTube integration functionality.

3. Information Collected from YouTube & Google

When you authenticate with Google OAuth 2.0 and grant ChatCoat access to your YouTube account, we access and collect:

  • Channel Profile: YouTube Channel ID, channel title, description, custom URL, and thumbnail/avatar URL.
  • Authentication Credentials: OAuth 2.0 access tokens and refresh tokens with explicit scopes (youtube.upload, youtube.force-ssl, userinfo.email, userinfo.profile).
  • Video Metadata: Uploaded video titles, descriptions, hashtags (including #Shorts), privacy statuses (Public, Unlisted, Private), and publishing timestamps.
  • Comments & Interaction Data: Comments posted on user campaign videos and automated reply execution logs.

4. How We Use YouTube Data

We process YouTube data solely for the following explicit purposes:

  • Displaying your connected YouTube Channel identity within your workspace.
  • Uploading and publishing scheduled videos and Shorts directly to your channel at your instruction.
  • Setting video metadata, privacy levels, and scheduled publication times.
  • Posting automated comment follow-ups or replies to viewer questions on campaign videos.
  • Automatically deleting campaign videos upon promotional expiration if configured by the user.

5. Data Refresh Frequency & 30-Day Storage Limits (Policy III.E.4.a-g)

In accordance with YouTube API Services Developer Policies Section III.E.4 (Refreshing, Storing, and Displaying API Data), ChatCoat enforces the following strict data lifecycle guarantees:

  • Data Refresh Frequency (Policy III.E.4.a): Channel profile data (channel title, channel ID, avatar URL) is automatically refreshed from YouTube API Services at least every 30 days. In addition, users can manually refresh their channel metadata at any time by clicking "Refresh Channel Data" in the Integrations dashboard.
  • No Storage of YouTube Statistics (Policy III.E.4.c, d): ChatCoat does NOT retrieve, display, or store any statistics or metrics retrieved from YouTube API Services (including view counts, subscriber counts, watch time, impressions, or like counts) for more than 30 days. In fact, ChatCoat does not track or store historical YouTube statistics at all.
  • Interaction Data Purging (Policy III.E.4.b, f): All temporary comment payloads and interaction logs retrieved from YouTube API Services to execute keyword automation are purged automatically from our databases within 30 days.
  • Immediate Deletion Upon User Request / Disconnection (Policy III.E.4.b): When a user disconnects YouTube from ChatCoat or requests deletion, all stored tokens, credentials, and channel identifiers are permanently deleted immediately.

6. Storage, Security & Token Encryption

All Google OAuth tokens are stored in secure databases and encrypted at rest using strong AES-256 encryption. Transmissions to and from Google/YouTube APIs occur strictly over encrypted TLS/HTTPS connections. We do not store raw video files permanently; uploaded media is processed for transmission and purged following successful publication or campaign completion.

7. No-Sale Policy & Third-Party Sharing

ChatCoat does NOT sell, monetize, or lease your YouTube or Google data to any third party, data broker, or advertising network.

YouTube data is never used for training external machine learning models or shared with unauthorized third parties. Data is transmitted exclusively to official Google APIs to execute user-configured campaign automations.

8. How to Revoke Access & Delete Data

You have full control over your Google/YouTube data at all times:

1. Revoke via Google Security Settings: You can view and revoke ChatCoat's access immediately at any time through the Google Security Permissions Page.

2. In-App Disconnect: Go to Integrations → Disconnect YouTube in your ChatCoat dashboard to instantly delete all stored access and refresh tokens.

3. Full Data Purge Request: Email us at support@chatcoat.com or visit our Data Deletion Page to request complete erasure of all campaign and account records.

9. YouTube Brand & Trademark Notice

YouTube, the YouTube logo, and other YouTube marks and logos are trademarks of Google LLC. ChatCoat is an independent third-party software service and is not endorsed by, directly affiliated with, maintained, authorized, or sponsored by YouTube or Google LLC. All product and company names are the registered trademarks of their respective owners. The use of any trade name or trademark is for identification and reference purposes only and does not imply any endorsement or affiliation with the trademark holder.

10. Contact Information

For questions regarding our YouTube API compliance or data handling, email: support@chatcoat.com