XiangChu Finance Uploader is a private, single-user application that publishes the channel owner's own video episodes to the owner's own YouTube channel. It requests two Google OAuth scopes, uses them only to publish and to label the owner's own videos, keeps a single OAuth token on the owner's own computer, and sells, shares or advertises with no Google user data at all.
The owner of the YouTube channel 湘楚財經日報 (@xiangchufinance) is the data controller and the only person who operates this application. Contact: ymcheung8633@gmail.com.
When the channel owner authorises the application through Google OAuth, Google grants it two scopes:
https://www.googleapis.com/auth/youtube.upload, which allows uploading video files to
YouTube, and https://www.googleapis.com/auth/youtube.force-ssl, which allows managing the
owner's own YouTube account data.
In practice the application handles only three kinds of information. First, the video files, thumbnail images and subtitle files that the owner has produced locally and supplies to the application. Second, the OAuth access token and refresh token that Google issues to the application so that it can act for the owner without asking for a password every day. Third, the identifiers and status values that YouTube returns for uploads the application itself performed, namely the video ID, the privacy status and the processing status.
The application does not access YouTube Analytics or monetisation data. It does not read any other channel's content. It does not read viewers' or commenters' personal data. It does not use Google Sign-In for any person other than the owner. It collects nothing at all from visitors to this website, which is a static page with no cookies, no analytics and no forms.
The information is used for one purpose only: publishing the owner's own episodes to the owner's own channel, and telling the owner whether each daily upload succeeded. The video files are uploaded to the channel; the tokens are used to authorise those uploads; the returned status values are shown to the owner.
The information is not used for advertising or ad targeting, not used for credit, lending or insurance decisions, not used for surveillance, not used to determine creditworthiness, and not used for any purpose unrelated to publishing the owner's own videos.
No Google user data is sold, rented, traded or otherwise shared with any third party. No Google user data is transferred to third parties except as technically required to perform the upload the owner asked for, which means the request to Google's own YouTube Data API. No Google user data is used to train or improve machine-learning models, and no person other than the owner reads it. No Google user data is used to create or distribute AI-generated non-consensual intimate imagery (AI NCII) or any similar content, and the application produces no such content.
The OAuth refresh token is stored only in a local file on the owner's own computer, named
youtube_token.json; it is never uploaded anywhere. The video, thumbnail and subtitle files
exist only on the owner's computer and, once published, on the owner's own YouTube channel. The application
keeps no database and no server-side copy of anything retrieved from Google APIs beyond the upload status
that it displays to the owner.
Deletion is straightforward and immediate. The token file can be deleted at any time from the owner's computer, and access can be revoked at any time at myaccount.google.com/permissions. Revoking access or deleting the token ends the application's ability to reach the account at once. A published video can be removed at any time in YouTube Studio.
The token file lives on the owner's own computer and is readable only by the owner's user account. Every upload is made over HTTPS to Google's API endpoints using OAuth 2.0. The application runs no server, so there is no server-side store to breach.
Because the application serves a single user, the channel owner, any request about personal data — access, correction, deletion, restriction or objection — is handled by that owner at the contact address in this policy. Where data is held by Google, the relevant controls are in the user's own Google Account, at myaccount.google.com/permissions and myaccount.google.com/dashboard.
The application is not directed to children and is not used by anyone other than the adult channel owner. The videos it publishes are marked “not made for kids”.
If the way this application handles information ever changes, the updated policy will be published on this page together with a new effective date. The version shown at the top of this page is always the current one.
XiangChu Finance Uploader's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, the application limits its use of Google user data to providing and improving the single feature described above, publishing the owner's own videos to the owner's own channel. It does not transfer that data to third parties except as necessary to provide that feature, does not use it for advertising, and does not allow humans to read it except with the owner's consent or as required by law.
Email: ymcheung8633@gmail.com — channel owner and developer.