Spark Publisher

Privacy Policy

Effective and last updated: September 24, 2026

Scope

Spark Publisher is a private publishing utility operated by an individual creator for the Spark’s Laboratory YouTube and Instagram accounts. It is not offered for public registration. This policy explains how the utility handles platform account information when its owner authorizes it.

YouTube API Services

Spark Publisher uses YouTube API Services. By authorizing or using that integration, the user is also subject to the YouTube Terms of Service and the Google Privacy Policy.

The utility requests the minimum Google permissions needed to:

  • identify and verify the authorized YouTube channel;
  • upload a video chosen and approved by the channel owner;
  • set the owner-selected title, description, tags, audience declaration, and future publication time; and
  • read back the uploaded video’s channel, processing state, privacy state, and publication time to verify the result.

It does not request or use viewing history, contacts, comments, messages, advertising data, or YouTube Analytics data. It never asks for or stores a Google or YouTube password.

Information stored and how it is used

Google OAuth credentials are stored in the operator’s macOS Keychain. The local publishing record may store the authorized channel ID, the ID and URL of a video uploaded by the utility, its processing and scheduling state, and the owner-selected publication time. This information is used only to perform the requested upload, verify that it reached the correct channel, prevent duplicate uploads, and reconcile the publication record.

The website itself does not use analytics, advertising trackers, sign-up forms, or cookies.

Sharing and sale

Spark Publisher does not sell Google user data or share it with advertisers, data brokers, or unrelated third parties. Data is sent to Google only through the official YouTube API to carry out the owner’s requested action. The local YouTube workflow does not send Google authorization tokens to the Instagram scheduler, Cloudflare R2, or Trigger.dev.

Retention, deletion, and revocation

Authorization data is kept only while the owner maintains an active connection. The owner can revoke access and immediately delete the stored Google credential and locally stored YouTube API publication records by running spark-publish.py youtube-revoke or by emailing [email protected]. Email deletion requests are completed as soon as possible and no later than seven calendar days.

The owner may also revoke Google access at any time from Google’s third-party connections page. When authorization is revoked or can no longer be refreshed, stored YouTube API data associated with that authorization is deleted as soon as possible and within seven calendar days.

Deleting local Spark Publisher records does not delete content stored by YouTube. YouTube content can be deleted through YouTube Studio or another authorized client that supports deletion.

Security

The utility limits permissions to the functions it uses, stores credentials in the operating system’s secure credential store, validates the destination channel, and checks each approved media file before upload. No method of storage is completely risk free, but reasonable technical controls are used to prevent unauthorized access.

Children

Spark Publisher is an operator tool and is not directed to children or offered for public use. Video audience settings are explicitly selected by the channel owner for each publishing workflow.

Changes and contact

If the utility begins accessing or using platform data in a materially different way, this policy will be updated before that change is authorized. Questions, complaints, revocation requests, and deletion requests can be sent to [email protected].