← Back

Privacy Policy

Last updated 30 August 2026

What this application is

This is a private, single-operator analytics dashboard. It is used by TM Music Limited to view performance data for YouTube channels that TM Music Limited owns or manages. It is not a public service, it has no user sign-ups, and no one outside the operator can create an account.

What data is accessed

When the operator authorizes a YouTube channel, this application uses the YouTube Data API and the YouTube Analytics API to read, for that channel only:

  • Channel name, handle, thumbnail, subscriber count and video count
  • Video titles, publication dates, durations, view, like and comment counts
  • Daily analytics: views, watch time, average view duration, audience retention, subscribers gained and lost, likes, comments and shares
  • Daily estimated revenue, estimated ad revenue, CPM and ad impressions, where the channel is monetized
  • The email address of the Google account that granted the authorization

No viewer-level or personally identifying audience data is requested or stored. The application reads only; it never uploads, edits, deletes or publishes anything on a YouTube channel.

How the data is stored

Analytics figures are stored in a private PostgreSQL database so that historical date ranges can be reported on without re-querying YouTube. Google OAuth refresh tokens are encrypted at rest with AES-256-GCM and are never exposed to the browser or included in any page or API response.

Who the data is shared with

No one. The data is not sold, rented, shared with third parties, used for advertising, or used to train machine-learning models. It is visible only to the operator, behind a password-protected login.

Google API Services User Data Policy

This application's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Revoking access

Access for any connected Google account can be revoked at any time from myaccount.google.com/permissions, or by disconnecting the account inside this dashboard. Revoking access stops all future data collection immediately. Stored historical analytics can be deleted on request.

Retention

Daily analytics are retained for as long as the operator needs them for reporting. Removing a Google account's authorization deletes its stored credentials immediately.

Contact

Questions about this policy: tmmusiclimited@gmail.com

TM Music Limited · 47/7 Dhanmondi, Navana Tower, Dhaka, Bangladesh