🔒 Privacy Policy

YouTube TL;DS Chrome Extension

Last Updated: November 1, 2025 | Effective Date: November 1, 2025

1. Introduction

Welcome to YouTube TL;DS ("we," "our," or "us"). We are committed to protecting your privacy and being transparent about how we collect, use, and protect your personal information.

This Privacy Policy explains how the YouTube TL;DS Chrome Extension ("Extension") collects, uses, and safeguards your data when you use our service to generate AI-powered summaries of YouTube videos.

By installing and using our Extension, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

We collect the following types of information to provide and improve our service:

2.1 Personal Identification Information

Data Type What We Collect Purpose
Email Address Your email provided during registration Account creation, authentication, password reset, transaction receipts, service notifications

2.2 Authentication Information

Data Type What We Collect How It's Protected
Password Hashed password (never plain text) Encrypted with bcrypt (10 rounds). Original password cannot be recovered.
Session Token Authentication token valid for 1 year Stored securely in your browser's local storage. Encrypted in transit via HTTPS.
Device Fingerprint Encrypted unique device identifier Used only to prevent abuse of free tokens. Encrypted before transmission.

🔐 How Device Fingerprinting Works

To prevent abuse of our 100 free welcome tokens, we generate a unique "fingerprint" of your device using:

  • Screen characteristics (resolution, color depth)
  • CPU information (cores, architecture)
  • Memory capacity (RAM)
  • Storage capacity
  • Canvas rendering signature
  • WebGL GPU information
  • Platform (OS and architecture)

Important: This fingerprint is processed locally in your browser, hashed with SHA-256, and the encrypted hash is sent to our server. We cannot use this information to identify you personally or track your browsing activity.

2.3 User Activity Data

Data Type What We Collect Purpose
Summary History Video IDs, titles, dates of videos you summarize Display your history, enable cache discount system
Content Type Whether you generated a Summary, Transcript, or TL;DR Calculate token consumption, improve service
Token Usage Tokens consumed per action, timestamps Track your balance, provide usage statistics
Statistics Aggregated usage data, preferences Generate your personal dashboard and analytics

2.4 Transaction Data

Data Type What We Collect What We DON'T Collect
Transaction Metadata • Token balance
• Transaction date and time
• Amount in tokens and EUR
• Transaction type (payment/usage)
• Payment provider (PayPal)
Credit card numbers
Banking information
PayPal credentials
CVV/CVC codes
⚠️ Important: We DO NOT store any credit card information, banking details, or payment credentials. All payment processing is handled exclusively and securely by PayPal. We only receive confirmation of successful payments and update your token balance accordingly.

2.5 YouTube Content Data

Data Type What We Access Purpose
Video Transcripts Publicly available captions/subtitles from YouTube Generate AI summaries
Video Metadata Title, duration, language, video ID Display video info, detect language for summary generation

Note: We only access YouTube content when you explicitly request a summary. We do not monitor your YouTube browsing activity or collect information about videos you watch without using our Extension.

3. How We Use Your Information

We use the collected information for the following purposes:

  1. Provide Core Service: Generate AI-powered summaries, transcripts, and TL;DRs of YouTube videos
  2. Account Management: Create and manage your account, authenticate logins, enable password resets
  3. Token System: Track your token balance, process payments, record transactions
  4. History & Statistics: Display your summary history and usage statistics dashboard
  5. Cache System: Enable the 70% discount feature for previously summarized videos
  6. Anti-Abuse: Prevent exploitation of free token offers through device fingerprinting
  7. Service Improvement: Analyze usage patterns to improve AI models and user experience
  8. Customer Support: Respond to your inquiries and provide technical assistance
  9. Legal Compliance: Comply with legal obligations and enforce our Terms of Service

4. Data Storage and Security

4.1 Where Your Data is Stored

4.2 Security Measures

🛡️ How We Protect Your Data

  • HTTPS Encryption: All data transmitted between your browser and our servers is encrypted using TLS/SSL
  • Password Hashing: Passwords hashed with bcrypt (10 rounds) - we cannot recover your original password
  • Secure Storage: Sensitive data encrypted at rest in our database
  • No Plain Text Passwords: Your password is never stored or transmitted in plain text
  • Session Security: Session tokens stored in browser's secure storage with 1-year expiration
  • Payment Security: All payment processing handled by PayPal's secure infrastructure

4.3 Data Retention

5. Data Sharing and Third Parties

5.1 Third-Party Services We Use

Service Purpose Data Shared
PayPal Payment processing Transaction amount, your email (for receipts). PayPal handles all payment credentials.
OpenAI API AI summarization Video transcripts and metadata only. No personal information shared.

5.2 What We DON'T Do

5.3 When We May Disclose Information

We may disclose your information only in the following circumstances:

6. Your Rights and Choices

6.1 GDPR Rights (European Users)

If you are located in the European Economic Area (EEA), you have the following rights:

6.2 How to Exercise Your Rights

To exercise any of these rights, please contact us at:

We will respond to your request within 30 days.

6.3 Account Deletion

You can request deletion of your account and all associated data by:

  1. Sending an email to javocsoft@gmail.com with subject "Account Deletion Request"
  2. We will permanently delete your account within 30 days
  3. Transaction records may be retained for 7 years for legal compliance

7. Cookies and Tracking

Our Extension does not use cookies for tracking purposes. We use browser local storage (chrome.storage API) to store:

This data is stored locally in your browser and is not accessible to other websites or extensions.

8. Children's Privacy

Our Extension is not intended for children under the age of 13 (or 16 in the EEA). We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately at javocsoft@gmail.com.

9. International Data Transfers

Your data may be transferred to and processed in countries other than your country of residence. We ensure that such transfers comply with applicable data protection laws, including:

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, regulatory, or operational reasons. When we make changes:

Your continued use of the Extension after changes constitutes acceptance of the updated Privacy Policy.

11. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

To exercise these rights, contact us at javocsoft@gmail.com.

12. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Email: javocsoft@gmail.com
Website: https://www.youtubetlds.javocsoft.com
Developer: javocsoft.com

We are committed to resolving any privacy concerns you may have and will respond to your inquiry within 5 business days.