Privacy Policy
Last updated: July 11, 2026
Rawafed ("we", "us") operates YouTube Scheduler ("the App"), an internal dashboard used to manage and schedule video uploads across multiple YouTube channels. This policy explains what data we collect, how we use it, and how it can be deleted.
Who can use this App
The App is a private, internal tool. Accounts are created by an administrator; there is no public sign-up. Access is limited to authorized employees/collaborators of Rawafed.
YouTube API Services
This App uses YouTube API Services to connect YouTube channels on behalf of authorized administrators, in order to import video metadata, schedule uploads, set publish times, and update thumbnails.
By connecting a YouTube channel to the App, you agree to be bound by the YouTube Terms of Service. Google's use of information received from the App is governed by the Google Privacy Policy.
Data we collect
- Account data: name, email, and hashed password for App login.
- YouTube channel data obtained via OAuth: channel ID, channel name, and an encrypted OAuth refresh token used to make authorized API calls on your behalf.
- Video metadata: title, description, privacy status, publish date/time, and duration, imported from connected channels for scheduling purposes.
- Thumbnail images you upload through the App, sent to YouTube via the API to set a video's thumbnail.
How we use data
Data is used solely to operate the App's features: importing existing videos, scheduling publish times, and updating thumbnails for the YouTube channels an administrator has explicitly connected. We do not sell data and do not use it for advertising.
Data storage & security
OAuth refresh tokens are stored encrypted at rest (AES-256-GCM) and are never displayed or logged in plain text. Data is stored in a private database and is not shared with third parties other than Google, as required to operate the YouTube API integration.
Data deletion
An administrator can disconnect a YouTube channel at any time from the Channels page, which revokes the App's access and deletes the stored refresh token. You can also revoke the App's access directly from your Google Account permissions page. To request deletion of any other data associated with your account, contact us at rawafed120@gmail.com.
Contact
Questions about this policy can be sent to rawafed120@gmail.com.