Chinkoo keeps account and community information separate from public YouTube API Data.
YouTube API Services notice
Chinkoo uses YouTube API Services. This Privacy Policy and the Google Privacy Policy may apply when you use YouTube-related features. Chinkoo does not request access to your YouTube account or password. It retrieves only public YouTube information on its server.
This policy applies to the chinkoo.com website, member accounts, anonymous community, MV Pulse, Records, Challenge Hubs, notifications, and contact features. Chinkoo processes only information needed to provide these services. Public data received from the YouTube API and Chinkoo member activity are kept in separate data layers and shown as separate items.
2. Information we process
Google sign-in
Google user ID, verified email address, display name, email-verification status, encrypted sign-in tokens, and connection/update times. Chinkoo requests only openid, email, and profile scopes. It does not request YouTube account or channel scopes.
Public YouTube API Data
Video ID, title, description, channel ID and name, publication time, duration, thumbnail URL, public view/like/comment counts, live status, and the last time checked. Chinkoo does not retrieve a member’s YouTube watch history or subscriptions.
Chinkoo account and activity
Join and recent-activity times; posts, comments, reactions, saves, shares, follows, submissions, reports, inquiries and messages; Pal Code, notification preferences, points, and moderation actions. Google name and email are not displayed with public posts or comments.
Connection and device data
Sign-in session ID and creation/expiry times, IP address and browser/device information (User-Agent) needed for security, and error/request logs. Optional first-party analytics store only a random session key, page path, and a limited set of feature events.
Member submissions
Post and comment text, external-content URLs, uploaded images, report reasons, and inquiry text. To prevent abuse while resolving a TikTok short URL, Chinkoo uses a one-way temporary key derived from the account identifier and the check time for no more than 24 hours.
3. How and why we use the information
Google sign-in information is used to verify identity, prevent duplicate or stolen accounts, maintain sessions, and support account recovery. Member activity is used to provide posts, comments, messaging, notifications and points; handle requests; review reports; and prevent abuse. Public YouTube API Data is used to identify official music videos, show the latest public numbers, refresh them on a defined schedule, diagnose collection errors, and document the source. Optional anonymous statistics are used only to decide which pages and features to improve.
Chinkoo validates and organizes this information on its server and may process it in Cloudflare Workers, the D1 database, and R2 object storage. Only fields intended for publication are displayed. Chinkoo does not combine account identifiers with public YouTube API Data to infer an individual member’s YouTube behavior.
4. Internal access, external processors, and public disclosure
Chinkoo does not sell or rent personal information and does not disclose it for personalized advertising. Chinkoo currently uses no third-party advertising network. Information is disclosed or processed only in the following circumstances.
Chinkoo owner and authorized moderators
They have limited access to account identifiers and activity records when necessary to operate the service, answer an inquiry, investigate security issues, or review a report. Account information is available only in access-controlled administration tools and remains separate from anonymous numbers shown on public posts.
Other users and search services
Published posts, comments, per-thread anonymous numbers, uploaded images, and shared external links are public on the internet and may appear in search results or social previews. Email addresses, Google names, private messages, and private preferences are not public.
Message recipients
When a member starts a conversation through a Pal Code, the chosen message name, message text, and sent time are disclosed to the selected recipient. Messages do not appear in public search or community pages. Only a reported message and the limited context needed to review it may become accessible to moderators.
Cloudflare
Cloudflare may process request IP/device information, sessions and accounts, submitted content, and uploaded files to provide web hosting, security, delivery, D1 database, and R2 object-storage services.
Google
Google sign-in exchanges account identity and OAuth communication data with Google. When Chinkoo calls the YouTube Data API, it sends its server-side API key and the video or channel ID being requested; it does not send a Chinkoo member ID or email address. When the embedded YouTube player loads on an MV detail page, Google/YouTube may receive the browser’s IP address, device/browser information, page URL, cookies or similar identifiers. Playback may send additional player and viewing-interaction information.
Resend
Only when a member enables email notifications, Chinkoo sends Resend the recipient address, notification subject and body, destination link, and unsubscribe information to deliver the message. Chinkoo stores the returned provider message ID and delivery success/failure state.
YouTube, TikTok, Instagram, and X
Other social-media cards inside community content load their provider player only after a user chooses “Load player” or enables automatic loading on that device. The provider may then receive the IP address, browser/device details, cookies or similar identifiers, and usage information. Opening an original link is governed by that provider’s policy.
Legal requests
Chinkoo may disclose relevant information only to the extent permitted by law when required by a valid legal request or when strictly necessary to protect the rights and safety of users or the service.
5. YouTube data separation
Chinkoo uses a single server-held API credential to request only public data from the YouTube Data API v3. Member sign-in uses only basic Google profile authentication. Chinkoo does not request, collect, or store YouTube OAuth scopes, YouTube login credentials, or user-specific YouTube Authorized Data. Public YouTube counters are not combined with member profiles, comments, reactions, or points. They are shown separately with their source and last-check time. Chinkoo editorial comparisons, records, and community reactions are separately labeled and are not represented as official YouTube metrics.
6. Retention and deletion
Public YouTube statistics and Chinkoo’s own analyses derived from those statistics may be retained for up to 36 months only within the scope allowed by the applicable YouTube API policy. Other API Data, such as video title, channel name, and description, is refreshed through the API or deleted within 30 days. If a video is deleted, made private, or can no longer be verified, Chinkoo stops and clears the related display and stored values as soon as reasonably possible.
Account information and member content are retained until account deletion or until the purpose is complete. Pending report evidence is held until review ends; resolved report text and private attachment copies for 90 days; and minimal incident/sanction records for 180 days, then automatically deleted. Optional analytics events are deleted after 30 days, and temporary TikTok-resolution limit keys after no more than 24 hours. A legal-retention exception is separated and given a defined end time.
7. Cookies, browser storage, and optional analytics
Chinkoo uses cookies or browser storage for the sign-in session, language, acceptance of this policy, drafts, and external-media preferences. Optional anonymous analytics operate only after a user separately permits them. They do not place account ID, email, IP address, raw searches, or post text in the event store. Essential only provides full site access without optional analytics, and the choice can be changed below at any time.
PRIVACY CHOICENot accepted on this device yet
You can change this choice at any time. Essential only immediately removes the anonymous visit-session key.
OTHER SOCIAL PLAYERSOff · connect only after a click
This preference applies to YouTube posts, TikTok, Instagram, and X cards inside community content. MV detail pages use the standard YouTube player as explained above.
8. Your choices and deletion
From Account Settings, a member can download Chinkoo-held account data as JSON and delete the account after reconfirming the verified email. Deletion removes the authentication account and tokens, profile, Pal Code, messages, images, authored post/comment text, and ordinary activity. The reporter identity in an open report is immediately anonymized; minimal resolved report or sanction records remain anonymous only for the limited safety period above.
You can also remove the Google sign-in connection in your Google Account. Chinkoo does not use YouTube Authorized Data, so there is no YouTube account permission to revoke. Use the contact page for questions about account deletion or privacy handling.
Chinkoo uses restricted administration access, encrypted sign-in tokens, server-only secrets, separated report/sanction records, and data minimization. If the processing purpose or disclosure scope changes materially, Chinkoo will give notice before the change takes effect and request acceptance again when required. The effective date and consent version distinguish the new policy from earlier choices.