Toravo

Legal

Toravo Studio – Privacy Policy for the YouTube and TikTok connections

Toravo Studio is the private production software of the artist Toravo. It runs only on the artist's own computer in his home network and is used by exactly one person: the owner of the connected YouTube channel. It uses the YouTube API Services to upload the artist's own music videos to his own channel.

1. Controller

Tobias Harmssen-Harms
Seumeweg 29
27753 Delmenhorst
Deutschland
E-mail: [email protected]

2. YouTube API Services and Google

Toravo Studio uses the YouTube API Services. By connecting a YouTube account you agree to the YouTube Terms of Service. Google's handling of your data is described in the Google Privacy Policy.

3. Which data is accessed and why

Toravo Studio only accesses the YouTube channels of the owner himself (Toravo and Kernträger). It requests these OAuth scopes:

  • youtube.upload – upload the owner's own music videos, Shorts and thumbnails when he starts an upload.
  • youtube.readonly – read the channel name and the list of the channel's own uploads (titles, IDs, visibility, view counts) to show which videos are online and to link Shorts to their music video.
  • youtube.force-ssl – edit the owner's own videos (titles, descriptions, translations), manage his own playlists, and read comments on his own videos so he can reply to them. Every reply is written or approved by the owner and posted only when he clicks "Post"; nothing is posted automatically.
  • yt-analytics.readonly – read the channel's own statistics (views, watch time, audience retention, subscribers gained) to show them in the studio's statistics page.

The access and refresh tokens for these scopes are stored so the studio stays connected. Toravo Studio does not access messages, private data of viewers or data of any other channel, and it does not use YouTube data for advertising.

3a. TikTok

Toravo Studio can publish the owner's own short videos to his own TikTok account via TikTok's Login Kit and Content Posting API. It requests the scopes user.info.basic (show which account is connected), video.upload (send a video to the account's TikTok inbox as a draft) and video.publish (publish a video the owner has chosen, with the caption and privacy setting he selected). Every post is started by the owner. Toravo Studio does not read followers, messages, comments or any data of other TikTok users. The TikTok access and refresh tokens are stored like the YouTube tokens (see section 4); "Disconnect TikTok" deletes them, and access can be revoked in the TikTok app under Settings → Security → Manage app permissions. TikTok's own handling of data is described in the TikTok Privacy Policy.

4. Storage, sharing and deletion

Tokens and the channel name are stored only on the artist's own server in Germany, in a file readable only by the studio (file mode 0600). Video IDs and links are stored with the video project. Statistics are only kept as a cache that is refreshed regularly; fetched comments are kept for at most 30 days and then deleted. Nothing is sold or shared with third parties; YouTube data is sent only to Google/YouTube to perform the actions the owner starts.

"Disconnect YouTube" in the studio deletes the stored tokens immediately. Access can also be revoked at any time in the Google account under myaccount.google.com/permissions (see also Google's help on third-party access); stored YouTube data is then deleted within 30 days at the latest. For any other request, including deletion of all data, write to the e-mail address above.

5. Your rights

Under the GDPR you have the right of access, rectification, erasure, restriction, data portability and objection, and the right to lodge a complaint with a supervisory authority (die Landesbeauftragte für den Datenschutz Niedersachsen, Prinzenstraße 5, 30159 Hannover). See also the general privacy policy of this website (German) and the Terms of Service of Toravo Studio.

Last updated: