Privacy policy
Pending completion
This policy is an initial template. It must be completed with the real controller details, purposes, legal bases and providers.
Controller
Add the controller identity, address, contact email and, where applicable, data protection officer details.
Data we process
Describe data collected through forms, browsing, commercial communications, contracting or professional relationships.
Purposes and legal basis
Detail each purpose, its legal basis and whether processing depends on consent, contract, legitimate interest or legal obligation.
Recipients and providers
List providers, processors, analytics tools, advertising tools, CRM, hosting and international transfers where applicable.
Retention and rights
Explain retention periods and how to exercise access, rectification, erasure, objection, restriction, portability and withdrawal of consent.
从 Google 获取的用户数据
专项更新:2026年8月2日。本节说明 Nömad 如何访问、使用、存储、共享、保护和删除通过 Google API 获取的数据。
访问和请求的数据
只有获得授权的品牌所有者或管理员启动 OAuth 并明确授予权限后,Nömad 才会访问 Google 数据。我们采用增量授权,只请求读取所选 Google Analytics 4 指标、Google Tag Manager 清单、管理所选 Google Business Profile 商家资料、读取 YouTube 频道及视频元数据和向 YouTube 上传视频所需的范围。授权人员选择要连接到品牌的媒体资源、容器、商家资料或频道。
用途
这些数据仅用于在 Nömad 中显示所选账户和资源、提供请求的指标和清单、维护连接,以及将用户创建并明确批准和排期的视频发布到所选 YouTube 频道。Nömad 不出售 Google 用户数据,不将其用于个性化广告,也不用于训练通用人工智能模型。
存储、保留和保护
OAuth 令牌在应用层加密,只有获授权的服务器服务可以访问。我们采用 HTTPS、品牌角色访问控制、品牌之间的严格隔离和行级安全。标准化指标最多保留25个月,交付操作详情保留180天;如适用更短期限、用户删除请求或法律义务,则按其执行。
共享
我们仅与代表 Nömad 托管、保护和运营平台所必需的服务提供商共享 Google 用户数据,或在法律要求时共享。这些提供商不得将数据用于自身目的。
断开、撤销和删除
品牌所有者或管理员可在 Nömad 的“连接”部分断开每项集成。移除某项授权下的最后一个连接时,我们会尝试远程撤销访问并删除存储的令牌。YouTube 授权被撤销、过期或断开时,我们会立即删除或匿名化获授权的 YouTube API 数据。你也可以在 Google 账户权限中撤销 Nömad,或发送邮件至 legal@nomad.ooo 请求访问或删除。
对从 Google API 接收的信息的使用和转移遵守 Google API 服务用户数据政策,包括“受限使用”要求。