MADHOUSE is a private, single-operator tool for producing and publishing music videos to its operator's own YouTube channels. It is not offered to the public and has no user accounts.
When the operator connects a YouTube channel, Google is asked for these scopes:
youtube.readonly — list the channel's own videos, their titles,
descriptions, privacy status and scheduled publish times.yt-analytics.readonly — read the channel's own view counts, watch time
and subscriber figures.youtube.force-ssl — write back to the operator's own videos: set the
description, tags and scheduled publish time, and add videos to a playlist.The app only ever touches channels the operator has explicitly connected. It does not read other people's channels, does not use YouTube search, and never uploads video files on the operator's behalf — uploading is done by hand in YouTube Studio.
Everything is stored on a single private machine owned by the operator, reachable only over their own Tailscale network. There is no shared server and no third-party database.
Only to operate the app: deciding when to schedule the operator's own videos, writing their descriptions and tracklists, grouping them into a playlist, and showing the operator their own analytics. The data is never used to train models, never sold, never shared with anyone, and never combined with data from other sources.
None. No advertising networks, no analytics vendors, no data brokers. The only network destination for Google data is Google's own APIs.
Google data is kept only while a channel is connected. Disconnecting a channel in the app deletes its stored credentials immediately. The operator can also revoke the app's access at any time at myaccount.google.com/permissions, which invalidates the stored token at Google's end.
Cached video and analytics records that remain after disconnection carry no credentials and can be deleted by the operator at will.
MADHOUSE's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
The app is not exposed to the public internet. It is reachable only from the operator's own private network, over HTTPS. Credentials are never sent to the browser: the app's API strips refresh tokens from every response.
The app is not directed at children and collects no data from them. Some of the music it produces is aimed at family audiences, but that is published content, not collected data.
Any change to this policy is published on this page with a new date above.
Questions about this policy: syarifsatusatu@gmail.com