Privacy Policy
Last updated: August 14, 2026
1. Overview
Project Insight is a content intelligence service for creators. This Privacy Policy explains what information Project Insight accesses, collects, uses, stores, shares, and deletes, including information received through supported creator-platform APIs.
2. Information we collect
We may collect account information you provide to Project Insight, such as your name, email address, creator niche, content goals, publishing preferences, and connected social media profile URLs.
When you choose to connect a supported social platform through its official authorization flow, we may receive information that you authorize that platform to share with us. Depending on the permissions you grant, this can include profile or channel information, content identifiers and metadata, publication timestamps, and performance metrics.
We also collect service-operation information such as job status, API usage records, timestamps, error diagnostics, and security-related logs needed to operate and protect the service.
3. Google and YouTube user data
When you connect YouTube Studio Analytics, Project Insight uses Google OAuth and requests read-only access required to analyze the YouTube channel you choose to connect. Project Insight does not request your Google password and does not receive permission to publish, edit, or delete your YouTube videos.
Depending on data available through the YouTube Data API, YouTube Analytics API, and YouTube Reporting API, authorized data may include your YouTube channel identifier and title, video identifiers and metadata, views, watch time, average view duration, average percentage viewed, likes, comments, shares, subscriber changes, audience-retention information, and available reach metrics such as impressions and click-through rate.
Project Insight may store Google OAuth access and refresh tokens so that requested analytics can be refreshed without requiring you to reconnect for every sync. These credentials are stored server-side in encrypted form and are not exposed to other users or used as login credentials.
4. How we use Google and YouTube data
We use authorized Google and YouTube data only to provide features requested by the user, including displaying creator analytics, calculating channel and content performance signals, comparing content against the creator's own baseline, generating personalized content recommendations, refreshing connected analytics, and maintaining service reliability and security.
We do not sell Google user data, use it for targeted advertising, or use YouTube authorization to publish, edit, or delete content. Project Insight's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
5. Service providers and data sharing
Project Insight uses infrastructure and service providers needed to operate the product, including hosting, database, authentication, social-platform APIs, and AI service providers. These providers receive only the information reasonably necessary to perform the requested service.
When AI features are used, Project Insight aims to process minimized analytics summaries or derived metrics instead of unnecessary personal information. OAuth credentials are not sent to AI providers. We do not sell connected-platform data to third parties.
6. TikTok data
If you connect TikTok, Project Insight only requests TikTok permissions needed for features you choose to use. TikTok authorization can be revoked from your TikTok account settings. Project Insight uses TikTok data to display and analyze your own creator profile and content performance.
7. Instagram data
If you connect an Instagram professional account through Instagram Login, Project Insight requests only the permissions needed to identify the professional account and read its owner analytics. Project Insight does not request your Instagram password and does not request permissions to publish content, read or send direct messages, manage comments, run ads, or modify your Instagram profile.
Authorized Instagram data may include the professional account identifier, username, display name, account type, owned media identifiers and metadata, captions, media type, permalink, publication timestamp, thumbnail URL, likes, comments, views, reach, shares, saves, and available Reels watch-time or skip-rate insights.
Project Insight uses this Instagram data to display creator analytics, calculate performance baselines and outliers, compare the creator's own Reels, and generate content recommendations. Instagram access tokens are stored server-side in encrypted form and are used only to refresh analytics requested by the account owner.
8. AI processing
Project Insight may use AI providers to generate recommendations and explanations from creator analytics and derived performance signals. We aim to minimize the information sent for AI processing and do not provide platform passwords or OAuth credentials to AI providers.
9. Data storage and security
We use technical and organizational safeguards designed to protect user information, including authenticated access, user-level data separation, encrypted transport, protected environment secrets, and encryption for sensitive integration credentials where applicable. No online system can guarantee absolute security.
10. Data retention and deletion
We retain information only for as long as reasonably necessary to provide the service, maintain account history, comply with applicable obligations, resolve disputes, and protect the service. OAuth credentials are retained while the relevant integration remains connected or until they are revoked or deleted.
You can revoke Project Insight's Google access through your Google Account permissions. Project Insight also provides a process for disconnecting YouTube Studio Analytics and deleting stored private Google/YouTube-authorized analytics data. See the Data Deletion page for instructions.
You can also disconnect Instagram from the Instagram section of My Project. Project Insight then deletes the stored Instagram access credential, authenticated Instagram profile metadata, stored owner media analytics and associated private metric snapshots for that connection.
If you request deletion of authorized platform data, or if Project Insight can no longer verify that the authorization remains valid, we will delete the applicable stored authorized data within 30 days, except where limited retention is required for legal, security, or fraud-prevention obligations.
11. Your choices and requests
You may disconnect a supported social account, revoke permissions through the relevant social platform, or request deletion of Project Insight account data. Where applicable, you may also request access, correction, or deletion of personal information associated with your account.
Disconnecting a private platform authorization does not necessarily remove public information that Project Insight can lawfully access without that authorization. The Data Deletion page explains available deletion options.
12. Children
Project Insight is not designed for children under the age required to independently consent to online services in their jurisdiction. We do not knowingly seek to collect personal information from children in violation of applicable law.
13. Changes to this policy
We may update this Privacy Policy as Project Insight changes. Material updates will be reflected by changing the “Last updated” date and, where appropriate, by providing additional notice in the service.
14. Contact
For privacy questions or data requests, use the Project Insight data-deletion process or the developer contact information associated with the Project Insight applications and authorization screens.