最終更新日: 2026年10月4日

1. 適用範囲

本プライバシーポリシーは、運営者本人が使用する個人専用ローカルアプリ「Hotty YouTube Publisher」(以下「本アプリ」)に適用されます。本アプリは一般ユーザー向けに配布・販売されておらず、第三者のアカウントを利用するサービスではありません。

2. YouTube API Servicesの利用

本アプリはYouTube API Servicesを使用します。本アプリを利用することにより、利用者はYouTube利用規約の適用を受けます。また、Googleによるデータの取扱いについてはGoogleプライバシーポリシーをご確認ください。

本アプリによるGoogle APIから受領した情報の利用は、Google API Services User Data Policy(Limited Use要件を含みます)に従います。

3. アクセスするGoogle・YouTubeユーザーデータ

本アプリは、本人がGoogleのOAuth同意画面で許可した https://www.googleapis.com/auth/youtube.force-ssl scopeを使用します。このscopeは、YouTube動画、評価、コメント、字幕等の閲覧・編集に関する広い権限を含みます。

現在の本アプリが実際にアクセスまたは処理するデータは、次の範囲です。

  • 認証されたYouTubeチャンネルのID、表示名、ハンドル、アップロード再生リストID
  • 重複投稿を防ぐために確認する最近のアップロードの動画ID、タイトル、概要欄
  • 対象動画のタイトル、概要欄、カテゴリ、タグ、公開状態、処理状態、公開予定時刻等
  • 本人が指定した動画ファイル、サムネイル、タイトル、概要欄、カテゴリ、タグ
  • OAuthアクセストークン、リフレッシュトークン、scope、期限情報
  • 投稿処理に必要な動画ID、再開可能アップロードの状態、処理時刻、照合結果

本アプリはGoogleアカウントのパスワードを取得・保存しません。ブラウザのCookieを収集しません。

4. データの利用目的と本人による操作

データは、本人が明示的に依頼・承認した次の機能を提供するためだけに使用します。

  • 対象チャンネルの本人確認と誤投稿防止
  • 重複投稿の防止
  • 承認された動画の非公開アップロード
  • 承認されたメタデータとサムネイルの設定
  • 投稿結果と非公開状態の読戻し確認
  • 別途承認された予約公開設定または概要欄更新
  • 通信結果が不明な場合の重複送信防止と処理状態の照合

本アプリは、本人の最終確認なしに動画を公開する設計ではありません。private-onlyとして承認された処理では、登録者通知を無効にし、予約公開を禁止します。

5. 保存場所

OAuthクライアント設定、OAuth token、投稿manifest、処理状態、照合結果は、運営者本人が管理するMac内に保存されます。OAuth tokenは公開ソースリポジトリの外にある専用フォルダに、OSのファイル権限でアクセスを制限したJSONファイルとして保存されます。

本アプリの現在の実装には、ユーザーデータを保存する外部アプリケーションサーバー、外部データベース、広告システム、アクセス解析基盤はありません。

動画および必要なメタデータは、本人が承認した機能を実行するためGoogle・YouTubeへ送信されます。

6. 第三者提供、販売、広告利用

本アプリは、Google APIから取得したユーザーデータを販売しません。広告配信、リターゲティング、パーソナライズ広告、信用評価、データブローカーへの提供には使用しません。

現在の実装では、Google・YouTubeへ本人が要求した処理を実行するために必要な送信を除き、ユーザーデータを第三者へ共有しません。

7. Limited Use

本アプリによるGoogle APIから受領した情報の利用および他のアプリへの転送は、Google API Services User Data Policy(Limited Use要件を含みます)に従います。取得データは、本アプリの明示された本人向け機能を提供または改善する目的に限定して使用します。

8. 保存期間

本アプリは、OAuth tokenを、本人の承認が有効で、本アプリの機能提供に必要な間だけローカルに保持します。

YouTube API Servicesから取得してローカルに保存したデータは、取得または前回更新から30日以内に、引き続き必要な場合はYouTube API Servicesから更新し、不要な場合は手動で削除します。保持する必要がないデータを、保存期間を延ばす目的だけで更新することはありません。

アクセス取消し、利用終了、またはデータ削除の申込みがあった場合、OAuth tokenと関連するローカル保存データを、できるだけ速やかに、遅くとも7日以内に手動で削除します。

現在の実装には、自動的な保存期限管理、一括削除、またはアプリ内からOAuth tokenをプログラムで取り消す機能はありません。上記の30日確認および7日以内の対応は、運営者が手動で実施します。実装されていない自動処理は行いません。

9. OAuthアクセスの取消し

利用者は、Googleアカウントのサードパーティとの接続ページから、いつでも本アプリのアクセス権を削除できます。手順はGoogleアカウント ヘルプでも確認できます。

アクセス取消し後は、運営者がOAuth tokenと対象ユーザーに関連するローカル保存データを確認し、できるだけ速やかに、遅くとも7日以内に手動で削除します。

ローカルデータを削除しても、YouTube上の動画その他のデータは削除されません。YouTube上のデータはYouTube Studio等で別途管理する必要があります。

10. データ削除の申込み

データの確認・削除に関する問い合わせは、次の公開連絡先で受け付けます。

連絡先: petitpont.official@gmail.com

現在は自動削除受付画面を実装していません。問い合わせを受けた場合は、対象データを確認し、できるだけ速やかに、遅くとも7日以内に手動で削除します。削除完了の記録には、OAuth token、API応答全文、アップロードセッションURLその他の秘密値を含めません。

11. セキュリティ

OAuth client secretとtokenは公開リポジトリへ保存せず、Macの専用フォルダでアクセスを制限します。投稿前には、対象チャンネル、ファイルhash、メタデータ、本人承認を照合します。通信結果が不明な場合は自動で新規投稿を繰り返さず、保存済み状態とYouTube上の状態を照合します。

インターネット上の送受信はGoogle・YouTubeが提供するHTTPS endpointを使用します。

12. 本ポリシーの変更

本アプリのデータ利用目的または取扱いを変更する場合は、本ポリシーを更新し、必要な場合は変更後の利用を開始する前に改めて同意を取得します。

13. 連絡先

公開連絡先: petitpont.official@gmail.com


English: Hotty YouTube Publisher Privacy Policy

Last updated: October 4, 2026

1. Scope

This Privacy Policy applies to Hotty YouTube Publisher (the “Application”), a local application used personally by its owner. The Application is not distributed or sold to the public and does not provide a service that operates third-party user accounts.

2. Use of YouTube API Services

The Application uses YouTube API Services. Use of the Application is subject to the YouTube Terms of Service. Information processed by Google is also subject to the Google Privacy Policy.

The Application’s use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

3. Google and YouTube user data accessed

The Application uses the OAuth scope https://www.googleapis.com/auth/youtube.force-ssl after the owner grants consent through Google’s OAuth screen. This is a broad scope that can permit viewing and editing YouTube videos, ratings, comments, captions, and related data.

The current implementation actually accesses or processes:

  • the authorized channel ID, display name, handle, and uploads playlist ID;
  • recent upload video IDs, titles, and descriptions for duplicate prevention;
  • the target video’s title, description, category, tags, privacy status, processing status, and scheduled publication time;
  • video and thumbnail files and metadata selected and approved by the owner;
  • OAuth access and refresh tokens, granted scope, and expiration metadata; and
  • upload state needed for resumable transfer, reconciliation, and result verification.

The Application does not request or store the user’s Google password and does not collect browser cookies.

4. Purpose and user control

Data is used only to provide functions specifically requested and approved by the owner:

  • verifying the destination channel and preventing mis-posting;
  • checking for duplicate uploads;
  • uploading an approved video as private;
  • applying approved metadata and a thumbnail;
  • reading back and verifying the private upload result;
  • applying a separately approved schedule or description update; and
  • reconciling uncertain network outcomes without blindly creating duplicate uploads.

The Application is not designed to publish a video without the owner’s final approval. A private-only approval disables subscriber notifications and blocks scheduling.

5. Local storage

OAuth client configuration, OAuth tokens, approved manifests, operation state, and verification results are stored on the owner’s Mac. OAuth tokens are stored outside the public source repository in a dedicated local JSON file protected by operating-system file permissions.

The current implementation has no external application server, hosted application database, advertising system, or analytics service for user data.

Approved video content and required metadata are transmitted to Google and YouTube only to perform the functions requested by the owner.

6. Sharing, sale, and advertising

The Application does not sell Google user data. It does not use Google user data for advertising, retargeting, personalized or interest-based advertising, credit-worthiness, lending, data brokerage, or information resale.

The current implementation does not share Google user data with third parties, except for the transmission to Google and YouTube necessary to perform the function requested by the owner.

7. Limited Use

The Application’s use and transfer to any other application of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Data use is limited to providing or improving the disclosed, user-facing features of the Application.

8. Retention

The Application keeps OAuth tokens locally only while the owner’s authorization remains active and the tokens are needed to provide the Application’s functions.

Data obtained from YouTube API Services and stored locally is either refreshed from YouTube API Services, if it remains necessary, or manually deleted within 30 days of retrieval or the previous refresh. Data that is no longer needed is not refreshed merely to extend its retention.

After access is revoked, use ends, or a deletion request is received, the OAuth token and related locally stored data are manually deleted as soon as possible and no later than seven days.

The current implementation does not provide automatic retention enforcement, one-command deletion, or in-application programmatic OAuth token revocation. The 30-day review and seven-day response described above are manual operating procedures. This Policy does not promise automated processing that the Application does not implement.

9. Revoking access

The user can remove the Application’s access at any time from the Google Account Third-party connections page. Google’s current instructions are available in Google Account Help.

After revocation, the operator manually deletes the OAuth token and related locally stored data as soon as possible and no later than seven days.

Deleting local Application data does not delete data hosted by YouTube. YouTube-hosted data must be managed separately in YouTube Studio or another authorized YouTube application.

10. Deletion requests

Contact for data access or deletion requests: petitpont.official@gmail.com

The Application does not currently provide an automated deletion-request interface. After a request is received, the operator identifies the applicable data and manually deletes it as soon as possible and no later than seven days. The completion record does not contain OAuth tokens, full API responses, upload session URLs, or other secret values.

11. Security

OAuth client credentials and tokens are kept out of the public source repository and protected in a dedicated local folder. Before an upload, the Application checks the destination channel, file hashes, approved metadata, and approval record. When a write outcome is uncertain, it does not blindly create a second upload and instead reconciles saved and remote state.

Data in transit is sent to documented Google and YouTube HTTPS endpoints.

12. Changes

If the Application’s use of Google user data changes, this Policy will be updated and, where required, renewed consent will be obtained before the new or changed use begins.

13. Contact

Public contact: petitpont.official@gmail.com