WatchMe Privacy Policy

Effective date: 26 August 2026

This policy explains how WatchMe collects and uses personal data through its website, Discord integrations, dashboards, mobile applications and connected-platform features. WatchMe is operated by Daniel in England, United Kingdom, who is the data controller for the processing described here.

Information we collect

We may process account identifiers, display names, avatars, Discord server and channel settings, creator configuration, support messages, optional Arcade scores and achievement history, subscription status, security logs, device or session information, and content or scheduling data you choose to provide. If you sign in and submit an Arcade run, your Discord display name, avatar and score can appear on the public leaderboard.

Connected accounts, including TikTok

When you connect a supported account, we receive the permissions and information you approve on that platform's consent screen. For TikTok Login Kit this may include your TikTok open ID, display name and avatar. If publishing permissions are enabled and approved, WatchMe processes the content and settings you explicitly choose to send. Access and refresh tokens are stored server-side and are not exposed to other community members.

Google and YouTube account data

When you connect YouTube through Google OAuth, WatchMe requests YouTube read-only access and YouTube upload access. We use read-only access to identify and display your YouTube channel and public video information in WatchMe. We use upload access only when you explicitly choose to upload or publish a video through WatchMe. WatchMe does not upload, edit or delete YouTube content without your action.

Google access and refresh tokens are encrypted in transit, stored server-side and restricted to the connected account and authorised WatchMe services. Google user data is not sold, used for advertising, or transferred to third parties except as necessary to provide or secure the requested feature, comply with law, or with your explicit consent. WatchMe's use and transfer of information received from Google APIs complies with the Google API Services User Data Policy, including its Limited Use requirements.

How we protect Google user data

WatchMe applies technical and organisational safeguards to protect Google user data and OAuth credentials. HTTPS/TLS encryption protects data while it travels between your browser, WatchMe servers and Google APIs. Google access and refresh tokens are stored only in WatchMe's backend database; they are not placed in public pages, Discord messages or browser session storage. Production database access, application secrets and server administration are restricted to authorised WatchMe services and the authorised operator using authenticated, least-privilege access controls. Only an authenticated WatchMe user with permission to use the connected account or server can initiate a YouTube API action. We do not intentionally include OAuth token values in user-facing responses or routine application logs, and we use operational and security logs to identify errors, unauthorised access attempts and abuse.

Access is removed when it is no longer required. Disconnecting YouTube stops new API access and removes or expires the stored Google credentials associated with that connection. We review and update these safeguards as the service changes. No method of storage or transmission is completely secure, but we use these controls to reduce the risk of unauthorised access, disclosure, alteration or loss.

You can disconnect YouTube in WatchMe at any time. You can also revoke WatchMe's Google access through your Google Account connections. When you disconnect, we stop making new YouTube API requests and delete or expire stored Google tokens. You may request deletion of associated account data by emailing daniel@watchme-bot.com.

How we use information

We use information to authenticate users, display connected accounts, provide requested alerts and creator tools, process authorised posts, manage subscriptions, provide support, prevent abuse, maintain security and comply with legal obligations. Our legal bases include performing our contract with you, consent where required, legitimate interests in operating a secure service and compliance with law.

Sharing and processors

Information is shared only as needed with hosting, database, payment, analytics, support and connected-platform providers, including services you choose to connect such as Discord, TikTok, YouTube or Meta. Those providers process information under their own terms and privacy policies. We do not sell personal data.

Retention and security

We retain information only while needed to provide the service, meet legal obligations, resolve disputes and protect security. Retention periods vary by record type. We use access controls, encrypted transport and server-side credential storage, but no online service can guarantee absolute security.

Your choices and rights

You can disconnect connected accounts and stop using WatchMe. Depending on your location, you may request access, correction, deletion, restriction, objection or portability, and may withdraw consent. You may also complain to the UK Information Commissioner's Office or your local supervisory authority.

Children and international processing

WatchMe is not directed to children under 13, and connected platforms may impose higher minimum ages. Providers may process data outside the United Kingdom; we use available contractual and provider safeguards where required.

Contact and changes

Privacy requests can be sent to daniel@watchme-bot.com. We may update this policy and will publish material changes here with a revised effective date.