Last updated: July 23, 2026
Songdrop (“the app”, “we”, “us”) turns a pasted list of songs into a YouTube Music playlist. This policy explains what data the app accesses, why, and how it is stored. The app is operated by an individual developer; you can reach us at yaryna.vitaliy@gmail.com.
When you sign in with Google, you grant the app the following OAuth scopes, which are used only to perform actions you explicitly request:
youtube) — used to search YouTube for videos that match the songs you paste, create a playlist, and add those videos to it, on your behalf. We do not read, modify, or delete anything else in your YouTube account.openid) — used solely to obtain your stable account id (Google's sub), which lets us keep each user's saved history private to them. We do not store your name, email address, or profile picture.To let you export or restore playlists later, the app saves a history record in a Cloudflare D1 database. Each record contains:
sub) so the record stays private to you.Your Google access token is held only in your browser's sessionStorage for the duration of your session. It is never stored on our servers, and it is cleared when it expires or when you close the browser tab.
Songdrop's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We only request the minimum scopes needed to provide the app's core feature, and we do not transfer this data to others except as necessary to provide or improve that feature, to comply with applicable law, or as part of a merger or acquisition.
Your data is processed only by the services that make the app work: Google (to search YouTube and create your playlist) and Cloudflare (which hosts the app and stores your history). We do not share your data with anyone else.
Your history is kept until you delete it. You can remove any saved playlist from the history panel inside the app at any time, which permanently deletes that record and its songs from our database.
To request deletion of all data associated with your account, or if you have any question about your data, email yaryna.vitaliy@gmail.com. You can also revoke the app's access at any time from your Google Account permissions.
Requests to the app's API are authenticated by verifying your Google access token on every call, so no one can read or modify another user's history. Data in transit is protected by HTTPS. No method of storage or transmission is perfectly secure, but we take reasonable measures to protect your information.
The app is not directed to children under 13 (or the minimum age required in your country), and we do not knowingly collect data from them.
We may update this policy from time to time. Material changes will be reflected by updating the “Last updated” date above.
Questions about this policy? Email yaryna.vitaliy@gmail.com.