
Legal
Privacy Policy
Last updated July 28, 2026. This policy explains how VidHunters handles information while the product is in beta.
Information We Collect
Cookies, Browser Storage, and Similar Technologies
- Authentication cookies. Supabase authentication session cookies keep you signed in and protect authenticated requests. Without them, you cannot use account features.
- Security and account-flow cookies. VidHunters uses a short-lived OAuth state cookie while you connect YouTube to prevent request forgery, and a short-lived password recovery cookie while you reset a password. When beta access is enabled, an essential beta-access cookie remembers that access decision.
- Local and session storage. We store transient product state such as a selected source video or script brief, unread in-app notifications, a pending checkout or top-up reference, and scan-progress state. This lets the interface continue a request, show its completion state, and avoid losing context during normal navigation. Session storage is normally cleared when the browser session ends; local storage remains until it is cleared by the browser or the product removes it after the related flow ends.
We do not use advertising cookies, sell device-derived information, or allow third parties to serve advertising content through VidHunters. You can control cookies and browser storage through your browser settings. Blocking or deleting essential cookies or storage may sign you out, end an in-progress connection or checkout flow, or prevent some account features from working.
YouTube API Services and Connected Channels
OAuth Tokens and Data Retention
How We Share, Transfer, and Disclose Google User Data
- Authorised workspace members. If a workspace owner grants another VidHunters user viewer or editor access, that member can see the workspace's connected-channel details, public YouTube research, competitors, signals, generated scripts, and member identity details needed to use the shared workspace. Access ends when the owner removes that member or the workspace is otherwise closed.
- Service providers acting on our behalf. We use Supabase for authentication and database infrastructure, Vercel for application hosting, OpenAI for a user-requested AI feature, Resend for product emails, Polar for billing, and TranscriptAPI for public YouTube video and transcript retrieval. Each provider receives only the information needed for its role and is permitted to process it only to provide services to VidHunters, not for its own advertising, sale, or generalised AI/ML training.
- Legal, safety, and rights protection. We may disclose information when we reasonably believe disclosure is required by law, legal process, or government request, or is necessary to protect the security, rights, property, or safety of VidHunters, our users, or others.
- Corporate transaction. If VidHunters is involved in a merger, acquisition, financing, reorganisation, bankruptcy, or sale of assets, information may be transferred to the relevant successor or counterparty as part of that transaction, subject to applicable law.
We do not share OAuth access tokens or refresh tokens because VidHunters does not retain them after the connection flow. We also do not use Google user data to serve personalised advertising, determine creditworthiness, or train VidHunters' or a third party's generalised AI or machine-learning models.
How We Use Information
AI and Service Providers
Public YouTube Data
Data Security
Your Choices and Deletion Requests
Changes to This Policy
Questions about privacy or account data? Email team@vidhunters.com.