Privacy Policy
Effective Date: March 2026
AI Content Spy ("we", "our", "us") is a Chrome extension that analyzes YouTube channel content strategies using AI. This Privacy Policy explains how we collect, use, and protect your information.
1. Information We Collect
Account Information
- Google Account Email: When you sign in with Google OAuth, we collect your email address for authentication and account management.
- Account Tier: We track your subscription tier (Free, Pro, or Team) for quota management.
Usage Data
- YouTube Channel Data: When you analyze a channel, we process publicly available channel metadata (channel name, video titles, descriptions, view counts, publish dates) to generate analysis reports.
- Analysis Count: We track the number of analyses performed per month for quota enforcement.
What We Do NOT Collect
- Your YouTube viewing history or watch activity
- Your YouTube account credentials
- Browsing data on non-YouTube websites
- Personal videos or private channel data
2. How We Use Your Information
- Authentication: Your Google email is used to identify your account and manage your subscription.
- Analysis: YouTube channel data is sent to an AI language model to generate strategy reports.
- Quota Management: We track usage to enforce tier-based analysis limits.
- Caching: Generated reports are cached for up to 24 hours to improve performance and reduce redundant API calls.
3. Third-Party Services
We use the following third-party services:
- Google OAuth: For secure user authentication. Subject to Google's Privacy Policy.
- Cloudflare: For API hosting, caching (Cloudflare Workers, D1 database, KV storage). Subject to Cloudflare's Privacy Policy.
- LLM API Providers: Analysis requests are processed by large language model APIs (e.g., OpenAI, Google Gemini) to generate reports.
4. BYOK (Bring Your Own Key) Mode
AI Content Spy supports a "Bring Your Own Key" mode where you can provide your own API key for OpenAI or Google Gemini. When using BYOK mode:
- Your API key is stored locally in your browser's extension storage and is never sent to our servers.
- Analysis requests are sent directly from your browser to your chosen LLM provider (OpenAI or Google).
- Data processing is governed by the privacy policy of your chosen provider.
- We have no access to or visibility into the data exchanged between your browser and the LLM provider in BYOK mode.
5. Data Retention
- Analysis Reports: Cached for up to 24 hours, then automatically deleted.
- User Accounts: Persist until you request deletion.
- Usage Logs: Monthly analysis counts are reset at the beginning of each billing cycle.
6. Data Security
We implement reasonable security measures to protect your data, including HTTPS encryption for all data in transit, secure storage on Cloudflare's infrastructure, and OAuth 2.0 for authentication.
7. Your Rights
You have the right to:
- Request access to the personal data we hold about you
- Request deletion of your account and associated data
- Withdraw consent at any time by uninstalling the extension
8. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify users of significant changes through the extension or our website.
9. Contact Us
If you have questions about this Privacy Policy, please contact us at labs@zoe.im.