Privacy Policy

Last updated: 2026-09-03

SocialGuap is operated by Social Guap, 131 Continental Dr, Suite 305, Newark, DE 19713, United States ("SocialGuap," "we," "us," or "our").

This Privacy Policy explains how we collect, use, disclose, store, retain, and delete information when you use SocialGuap, including our website at socialguap.com, the marketplace, account features, Google Sign-In, and the optional YouTube connection for creators.

By creating a SocialGuap account you agree to this Privacy Policy. If you do not agree, do not use SocialGuap.

1. Information We Collect

Depending on how you use SocialGuap, we collect the following categories of information.

Account and authentication information

  • Email address.
  • Password hash if you create a password-based account.
  • Account role (clipper, creator, or brand).
  • Email-verification status and the date you accepted our Terms.
  • Session, login, and security information.
  • If you use Google Sign-In, the verified email address Google returns through the sign-in flow (see Section 3).

Profile information

  • Display name and biography.
  • Profile images and banners you upload.
  • Niches, platforms, formats, goals, profile mode, and other profile settings.
  • Social profile links and usernames, follower or subscriber numbers you enter, and verification status.
  • Creator rate cards, usage-rights add-ons, portfolio samples, and other marketplace information you choose to publish.
  • Visibility settings that control which profile items other users can see.

Verification information

  • For bio-code verification: the one-time code we issue, the public profile or channel you name, and the result of our automated check of that profile's public bio or channel description.
  • For the YouTube connection: the information described in Section 4.

Marketplace, transaction, and payout information

  • Campaigns, applications, pitches, offers, orders, deliveries, reviews, and disputes.
  • Clip and content-submission URLs and the view counts recorded for them.
  • Subscription, payment, payout, refund, chargeback, and transaction records.
  • Stripe customer, subscription, payment, and connected-account identifiers.

Payment-card information is entered on Stripe-hosted pages and processed by Stripe. SocialGuap does not store full payment-card numbers.

Communications

  • Messages, pitches, applications, support requests, dispute communications, and other communications sent through or to SocialGuap.
  • Contact details inside marketplace messages are automatically masked to enforce our on-platform transaction rules.

Technical, security, and usage information

  • IP address (received through Cloudflare).
  • Login timestamps and security logs.
  • Device, browser, request, and diagnostic information.
  • Rate-limiting, fraud-prevention, abuse-prevention, and audit records.
  • Website analytics described in Section 9.

Public creator-directory information

SocialGuap displays some creator pages assembled from publicly available information about creators who have not joined SocialGuap. For YouTube creators this is the channel name, avatar, banner, and public subscriber count, obtained through YouTube API Services. Such pages carry no membership signal and do not represent that the person has joined or endorsed SocialGuap. Information on these pages is retained while the page is published.

Requests to correct or remove a public creator-directory page may be sent to [email protected]. We honor removal requests promptly.

2. How We Use Information

We use information to:

  • Create, authenticate, secure, and administer accounts.
  • Operate creator, brand, and clipper profiles and directories.
  • Operate campaigns, applications, pitches, messaging, orders, deliveries, payouts, leaderboards, verification, and other marketplace features.
  • Verify ownership of social accounts and YouTube channels.
  • Process subscriptions, payments, and payouts through Stripe.
  • Prevent fraud, abuse, spam, account takeovers, view manipulation, and prohibited off-platform activity.
  • Investigate and resolve disputes, refunds, and chargebacks.
  • Send transactional messages such as email verification, password resets, order and campaign updates, payout notices, and security notifications.
  • Provide customer support.
  • Maintain, troubleshoot, secure, and improve SocialGuap.
  • Comply with legal, tax, accounting, security, and regulatory obligations.

We do not sell personal information.

3. Google Sign-In

SocialGuap offers Sign in with Google as an optional way to create an account or log in.

When you use Google Sign-In, Google provides SocialGuap with the basic account information made available through the sign-in flow (the openid, email, and profile permissions). SocialGuap stores only the verified email address returned by Google and uses it to authenticate you and associate you with a SocialGuap account. SocialGuap refuses sign-ins for email addresses Google has not verified. SocialGuap does not store Google profile names, pictures, Google account identifiers, or Google sign-in tokens.

Using Google Sign-In does not give SocialGuap access to your YouTube channel. YouTube access is requested separately, in context, only if a creator chooses to use the YouTube connection described in Section 4.

4. Google OAuth and YouTube API Services

SocialGuap uses Google OAuth 2.0 and YouTube API Services (the YouTube Data API and the YouTube Analytics API) for the optional creator YouTube connection, and the YouTube Data API for reading public YouTube information as described below.

YouTube permissions requested

When a creator chooses to connect a YouTube channel, SocialGuap sends the creator to Google's authorization screen and requests the following two read-only permissions. Both are required for the connection; if either is declined, no connection is created and nothing is stored.

  • https://www.googleapis.com/auth/youtube.readonly — to view the YouTube channels owned by the Google account you authorize, their public channel details, and the public statistics of their recent uploads.
  • https://www.googleapis.com/auth/yt-analytics.readonly — to view YouTube Analytics reports for those channels (audience, geography, watch time, monthly views, subscriber loyalty, and content type).

SocialGuap does not request:

  • YouTube upload, edit, delete, comment, playlist, subscription, or any other write permission.
  • https://www.googleapis.com/auth/yt-analytics-monetary.readonly or any YouTube revenue, earnings, CPM, or other monetary analytics.
  • Access to your Google password.

SocialGuap never posts, edits, or deletes anything on YouTube on your behalf.

YouTube information we access with your authorization

Using the permissions above, SocialGuap reads the following from YouTube API Services when you connect and again on each scheduled refresh (Section 4, "Storage, refresh, and authorization checks"):

  • Channel identity and public details for every channel owned by the Google account you authorize: channel ID, channel title, custom URL or handle, channel URL, channel thumbnail, subscriber count (the figure reported to you as the channel owner), total view count, video count, topic categories, made-for-kids status, default language, and the uploads playlist identifier. All channels found are connected; you choose which one is your primary channel.
  • Recent uploads: the video IDs and publication dates of your uploads from the last 90 days (up to 300), and for the 10 most recent uploads their public view, like, and comment counts and durations.
  • YouTube Analytics reports for the trailing 90 days (ending three days before the read, to allow for YouTube's reporting lag): viewer percentage by age group and gender; views by country (top 10) and, when the United States is the top country, by U.S. state (top 5); views, average view duration, and average percentage viewed; views per month for the last 12 complete months; views split by subscribed and non-subscribed viewers; and views split by content type (Shorts, long-form video, live).

What SocialGuap builds from this information

SocialGuap combines the information above into a channel fit card for each connected channel, stored as a snapshot with the date it was refreshed. The fit card contains:

  • Subscriber count.
  • Audience summary: the largest age groups and the gender split.
  • Top countries by share of views (and top U.S. states where available).
  • Reach: average and median views of your last 10 uploads, with an up, down, or flat indicator comparing your last three complete months of views with the three months before.
  • Attention: average watch time and average percentage of a video watched.
  • Engagement rate: likes plus comments divided by views across your last 10 uploads.
  • Subscribed-viewer share: the percentage of views that came from subscribers.
  • Content mix and cadence: the percentage of views from Shorts, long-form, and live content, and your average uploads per month over the last 90 days.
  • Safety: made-for-kids status and default language.

SocialGuap also uses your channel's topic categories to suggest niches for your profile. Suggestions are never applied unless you add them yourself, and niches on your profile are SocialGuap profile information, not YouTube data.

The subscriber count of your primary connected channel is used as the headline subscriber number on your SocialGuap profile.

How we use YouTube information

We use YouTube information only to provide the following user-facing SocialGuap features:

  • Confirming that you own the YouTube channel you connect. A successful connection marks your creator profile as verified, which unlocks pitching on brand campaigns.
  • Building and displaying your channel fit card and Connected badge, according to your visibility settings.
  • Showing the headline subscriber count on your profile.
  • Suggesting niches for your profile from your channel's topic categories.
  • Counting public views of clips submitted to pay-per-view campaigns to determine eligibility and calculate payouts (public data, see below).
  • Verifying ownership of a YouTube channel through bio-code verification (public data, see below).
  • Keeping stored YouTube information current, and troubleshooting and securing the connection.

SocialGuap does not use Google or YouTube user data for advertising, retargeting, data brokerage, credit or lending decisions, surveillance, or training generalized AI or machine-learning models, and does not sell it.

Who can see connected YouTube data

Your connected YouTube data is shown inside SocialGuap only. The audience for each part of it is:

  • Channel name, handle, and link to your channel — you, brands (in the fit card), and anyone who can see your creator profile where you list the channel on it.
  • Headline subscriber count — the subscriber count of your primary connected channel becomes your profile's subscriber number. It appears on your profile and on creator cards, including cards shown to visitors who are not signed in. Basic channel statistics (total views and video count) appear on your profile to signed-in users. The subscriber line inside the fit card follows your visibility setting.
  • Detailed audience analytics (age and gender, top countries, reach and trend, attention, engagement rate, subscribed-viewer share, content mix and cadence, safety) — you and brands, only where you have allowed visibility.

"Brands" here means signed-in SocialGuap users who can view full creator profiles and the creator directory. Visitors who are not signed in, and users whose access to the directory is limited, see no fit card and no audience analytics.

You control visibility from Settings › Verification, where each fit-card item has its own on/off setting. All items are visible when you first connect. Turning an item off removes it entirely from what other users see; it is never shown as "hidden" or "missing." You can change these settings at any time.

Every fit card names the channel, is labelled as coming from YouTube, shows the date it was last refreshed, and sits behind the Connected badge, which indicates that you completed the YouTube ownership check.

SocialGuap does not transfer connected YouTube data to third parties and does not make it available outside SocialGuap.

YouTube API data and SocialGuap figures

Fit-card items marked as coming from YouTube are based on YouTube API data, including the averages, percentages, and indicators described above that SocialGuap calculates from that data. Other figures shown near them, such as campaign earnings, response times, ratings, rate cards, and leaderboard positions, are SocialGuap information and are labelled as such.

Public YouTube information read with SocialGuap's own API key

Separately from the creator connection, SocialGuap reads the following public YouTube information through the YouTube Data API using SocialGuap's own API credentials. No creator authorization is involved.

  • Pay-per-view campaigns: the public view count of each YouTube video or Short submitted to a campaign. It is re-read on a schedule while the campaign is tracking that clip, and each reading is recorded so that payouts can be calculated and audited.
  • Signup: when a creator provides a YouTube channel during signup, the channel's public view count, video count, avatar, and banner are read to pre-fill the creator's profile. The avatar and banner are copied to SocialGuap's own storage.
  • Bio-code verification: the public channel description of the channel a creator names, read to check for the one-time verification code.
  • Public creator-directory pages: the channel name, avatar, banner, and public subscriber count described in Section 1.

Storage, refresh, and authorization checks

SocialGuap stores a YouTube OAuth refresh token only to maintain the connection you requested. The refresh token is encrypted at rest with a dedicated server-side key. Short-lived access tokens are obtained when needed and are never stored or logged.

While a connection is active, SocialGuap refreshes the fit card and re-confirms the authorization every 14 days. If a refresh fails (for example because the authorization was revoked or YouTube's quota was exhausted), SocialGuap retries once a day, notifies you in SocialGuap to reconnect, and leaves the last successful fit card in place unchanged until you disconnect or reconnect.

Public view counts of campaign clips are re-read while the campaign is tracking them. The recorded readings are kept for about 13 months for payout auditing, and the final count is kept with the campaign record. Public channel information read at signup and for directory pages is retained while the profile or page exists.

Disconnecting, revoking, and deleting YouTube data

You can disconnect any connected channel at any time in Settings › Verification. When you disconnect a channel:

  • SocialGuap deletes the connection and the stored refresh token immediately.
  • SocialGuap revokes its access token with Google (unless another channel you keep connected was authorized in the same grant and still needs it).
  • The last stored fit card for that channel is retained for up to 30 days so that brands you are already in contact with can still see it, and is then deleted automatically.
  • The Connected badge is removed and, if no other verified platform remains on your profile, your creator verification is removed. The headline subscriber count on your profile is no longer updated from YouTube.

You may also revoke SocialGuap's access from your Google Account at any time:

Google third-party access and permissions

When you revoke access on Google's side, SocialGuap learns of it at the next scheduled check (within 14 days). From then on SocialGuap stops reading your YouTube data, notifies you, and keeps the last fit card unchanged until you disconnect the channel in SocialGuap or ask us to delete it.

To have your stored YouTube data deleted, disconnect the channel in Settings › Verification or email [email protected]. On request we delete the stored connection, fit card, and related YouTube data within 7 calendar days, except for any specific record that must be retained by law where such retention is permitted by Google and YouTube policy.

Deleting data from SocialGuap does not delete anything on YouTube itself. To delete information stored on YouTube, use YouTube or another authorized client that supports that action.

Google and YouTube policies

SocialGuap's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements:

Google API Services User Data Policy

SocialGuap uses YouTube API Services subject to the YouTube API Services Terms of Service and Developer Policies. By using any SocialGuap feature that uses YouTube API Services, you also agree to the YouTube Terms of Service.

Google's handling of your data is described in the Google Privacy Policy:

Google Privacy Policy

5. How We Share Information

We disclose information only as necessary for the purposes described in this Privacy Policy.

Other SocialGuap users

Information you publish on your profile, marketplace listings, campaigns, pitches, reviews, and other marketplace-facing surfaces is visible to other users according to the product's access and visibility rules. Connected YouTube data is shown to other users only as described in Section 4.

Service providers

We use the following vendors and infrastructure providers to operate SocialGuap:

  • Stripe — subscriptions, payments, tax calculation, payouts, connected accounts and their identity and tax requirements, refunds, and chargebacks.
  • Resend — transactional email delivery.
  • Cloudflare — DNS, TLS, security, DDoS protection, and encrypted offsite backup storage.
  • Google — Google Sign-In, Google OAuth, YouTube API Services, and Google Analytics where enabled.
  • Umami — cookieless usage analytics where enabled.

Service providers may process information only as necessary to provide their services to SocialGuap, subject to applicable contractual and legal requirements.

Legal, safety, and compliance

We may disclose information where reasonably necessary to:

  • Comply with applicable law, court orders, subpoenas, or legal process.
  • Protect users, SocialGuap, or others from fraud, abuse, security threats, or unlawful conduct.
  • Establish, exercise, or defend legal claims.
  • Investigate disputes, payment fraud, or chargebacks, including providing delivery and transaction evidence to Stripe or a card network.

Business transfers

If SocialGuap is involved in a merger, acquisition, financing, reorganization, or sale of assets, information may be transferred as part of that transaction subject to applicable law and to any additional consent required by Google or other platform policies for Google user data.

6. Retention

We retain information only for as long as reasonably necessary for the purposes described in this Privacy Policy and any applicable legal or platform-specific requirements.

Account and profile information

Account and profile information is retained while your account is active. When an account-deletion request is completed, we delete your personal data except records that must be retained for legal, tax, accounting, payment, fraud, chargeback, or dispute purposes.

Financial, payment, tax, and dispute records

Payment, payout, tax, accounting, chargeback, fraud, and dispute records may be retained for up to 7 years, or for another period where required by applicable law.

Google and YouTube data

Google and YouTube data is subject to the shorter and more specific refresh, revocation, and deletion rules in Section 4, which take priority over the general periods above. In summary:

  • The refresh token and connection are deleted immediately when you disconnect.
  • The last fit card of a disconnected channel is deleted within 30 days.
  • Stored YouTube data is deleted within 7 days of a deletion request.

7. Security

We use reasonable administrative, technical, and organizational safeguards designed to protect information against unauthorized access, alteration, disclosure, or destruction, including:

  • TLS/HTTPS for data in transit.
  • Access controls on production systems.
  • Logging and auditing of sensitive operational activity.
  • Encryption at rest of stored YouTube OAuth refresh tokens.
  • Separation of server-side secrets from public application code.
  • Encrypted nightly offsite backups.
  • Security, fraud-prevention, and rate-limiting controls.

No method of storage or transmission is completely secure, and we cannot guarantee absolute security.

8. Your Choices and Rights

You can access and update your profile and account information in SocialGuap settings, and control the visibility of profile items and connected YouTube data there.

You can disconnect a YouTube channel at any time in Settings › Verification.

To request deletion of your account or stored personal data, export of your data, or to make access, correction, or other data-rights requests, email [email protected] from the email address on your account. When a request applies to Google or YouTube user data, the platform-specific deletion rules in Section 4 apply.

Depending on where you live, applicable law may give you additional rights relating to access, correction, deletion, portability, restriction, objection, or appeals. We honor such requests as required by the law that applies to you.

9. Cookies and Analytics

SocialGuap uses cookies necessary for authentication, sessions, security, and account functionality, including the sign-in session cookie and the admin session cookie.

Where enabled:

  • Google Analytics sets its own cookies (such as _ga) to measure aggregate site usage.
  • Umami measures aggregate page usage without cookies.

SocialGuap sets no third-party advertising cookies and does not use Google or YouTube user data for personalized advertising.

10. Children

SocialGuap is intended for users who are at least 18 years old and able to enter into a binding contract. SocialGuap is not directed to children under 13, and we do not knowingly collect personal information from them.

11. Changes to This Privacy Policy

We may update this Privacy Policy when our product, legal obligations, or data practices change. Material changes are announced on the Platform.

If we materially change how we access, use, store, or share Google user data, we will update this Privacy Policy and provide any notice or renewed consent required by Google policies or applicable law before using Google user data for the new purpose.

The "Last updated" date at the top of this page identifies the current version.

12. Contact

For privacy questions, data-rights requests, or complaints, including questions about our YouTube data practices:

Social Guap
131 Continental Dr
Suite 305
Newark, DE 19713
United States

Email: [email protected]