Data Retention & Lifecycle Policy
Operating Legal Entity: Viewsmo Technologies Inc. · Effective Date: October 11, 2026
1. Purpose and Scope
Viewsmo Technologies Inc. (“Viewsmo”, “we”, “us”) is committed to minimizing data storage and strictly limiting the lifecycle of creator media and telemetry. This policy applies to all media uploads, transcribed text, intermediate audio/video clips, rendered outputs, OAuth authorization tokens, and user account records across our web applications and serverless processing workers.
Zero Indefinite Retention: In accordance with our security principles, no user data category is retained indefinitely without explicit user control or a documented legal requirement.
2. Artifact Retention Schedule
The table below outlines the precise retention window, target storage tier, and legal/technical justification for each artifact processed by Viewsmo:
| Artifact Category | Retention Period | Storage Location | Purge Trigger & Justification |
|---|---|---|---|
| Source Upload Master Files Original user-uploaded video files (.mp4, .mov, etc.) | 7 Days | storage.source-videos | Kept temporarily to allow project re-renders and edits; automatically deleted after 7 days. |
| Intermediate Audio & Extracted Subclips Temporary clipped segments, normalized WAVs, and ASS subtitle working files | 2 Days | storage.clips | Pipeline working artifacts; purged within 48 hours of job termination. |
| Final Rendered Shorts (Free Tier) Exported 1080x1920 MP4 vertical videos, SRT sidecars, and manifests for free accounts | 30 Days | storage.rendered-shorts | Allows download window for free tier users; purged after 30 days. |
| Final Rendered Shorts (Paid Tier) Exported 1080x1920 MP4 vertical videos, SRT sidecars, and FCPXML files for Pro/Studio accounts | 90 Days | storage.rendered-shorts | Extended storage retention for paying creator subscriptions. |
| OAuth Refresh & Access Tokens Google / YouTube Data API credentials stored in channel_tokens | Immediate (< 1 min) | database | Retained only while channel connection is active. Permanently purged within 1 minute of disconnect. |
| Job Manifests and Pipeline Telemetry Sanitized pipeline stage execution metrics, timestamps, and error classes (no raw transcripts) | 90 Days | database | Retained for system diagnostics, SLA compliance, and security monitoring. |
3. YouTube OAuth Token Handling & Revocation
When a creator links their channel through the YouTube Data API OAuth 2.0 flow:
- Tokens are stored in encrypted database storage (
channel_tokens) strictly to read channel statistics, verify owned videos, and perform authorized uploads. - Immediate Disconnect Purge: When you disconnect a channel in Viewsmo, access tokens, refresh tokens, and channel ID links are permanently deleted from our databases within 60 seconds.
- Third-Party Revocation: You can also instantly revoke Viewsmo’s access at any time via Google’s native dashboard at https://myaccount.google.com/permissions.
4. User Account Deletion & Verifiable Evidence
Creators may delete their account and all associated records at any time directly through the dashboard or by calling our automated deletion API (POST /api/user/delete).
Upon submission, our deletion worker performs an immediate cascade:
- Purges all raw and rendered objects in Supabase Storage.
- Revokes and deletes all channel tokens and analytics snapshots.
- Deletes all render jobs, brand presets, and billing ledger mappings.
- Permanently deletes the Supabase Auth user record.
- Issues an immutable cryptographic Deletion Receipt containing timestamp, itemized counts, and unique receipt ID for verification.
5. Security, Incident Response & Contact
For data privacy inquiries, DPA execution, or security incident reports, our appointed officers can be reached directly: