YouTube API Privacy Policy
Last updated: August 24, 2026
Controller
Ömer Hakan Ölçer - Hafsa Software
Fritz-Reuter-Str. 19, 21629 Neu Wulmstorf, Germany
Email: [email protected]
Data obtained and purpose
Our self-hosted Postiz application uses Google OAuth 2.0 and the YouTube Data API v3 to connect YouTube channels that we own or are authorized to manage. It stores the channel connection identifiers and OAuth credentials needed to upload approved videos and associated titles, descriptions, visibility and publication times. We do not sell this data, use it for advertising, build user profiles, or share it with unrelated third parties.
Service providers and policies
Approved media is stored in private Cloudflare R2 storage and transferred to our self-hosted Postiz instance for delivery to Google/YouTube. Use is subject to the YouTube API Services Terms of Service, the YouTube Terms of Service, and the Google Privacy Policy.
Revocation, retention and deletion
A channel connection may be disconnected in Postiz or revoked in Google Account permissions. After disconnection, credentials are no longer used. You may request deletion of local connection and publication metadata by emailing [email protected]. We normally complete valid requests within 30 days, unless legal, security or evidentiary obligations require retention.
Security and changes
Access is restricted to authorized administrators and protected through secure transport, private storage and audited publishing records. Material changes are published on this page. Additional information is available in our general privacy notice and Terms of Service.