BELOW THE UNKNOWN

Privacy Policy

Last updated: 27 September 2026

1. Who we are

Below The Unknown ("the project", "we") is an underwater discovery and entertainment YouTube channel (@BelowTheUnknown). It is run by an individual creator, the channel owner ("the operator"). Contact: belowtheunknown@leosmia.co.

2. What this policy covers

This policy explains what information is handled by (a) this website and (b) the project's private publishing tool, which uploads the project's own videos to YouTube.

3. We use YouTube API Services

The publishing tool uses YouTube API Services (the YouTube Data API v3). By using YouTube, you agree to the YouTube Terms of Service. Google's handling of your information is described in the Google Privacy Policy.

4. Who can use the publishing tool

The publishing tool is an internal, owner-operated tool. Only the channel owner signs in to it, and only to publish to the Below The Unknown channel. It is not a public app or service: no one else can sign in, connect a Google or YouTube account, or manage a channel with it.

5. Google sign-in and the permission requested

The channel owner authorizes the tool through Google OAuth 2.0. The tool requests a single permission (OAuth scope):

https://www.googleapis.com/auth/youtube.upload, which lets it upload videos to the authorized YouTube channel.

It does not request permission to read, edit or delete other videos, comments, playlists, subscribers, analytics or any other YouTube or Google account data.

6. What the tool does with YouTube

The tool performs one YouTube API operation, videos.insert, using Google's documented resumable upload method, to upload a finished Short to the Below The Unknown channel. Each upload includes the video file and the metadata chosen by the operator: title, description, tags (when used), category, privacy status, embedding setting, a "not made for kids" setting, a setting not to notify subscribers, and a disclosure that the video contains altered or synthetic (AI-generated) content.

7. Information processed

The tool does not collect information about viewers of the channel or about any other YouTube user.

8. How information is used and shared

Information received from Google/YouTube is used only to upload the project's videos and to record the result of each upload (for example, the new video's ID). AI tools are used to create the videos before upload; YouTube's response is received after the upload and is used only to record the upload result.

We do not sell Google user data, use it for advertising, or transfer it to advertising platforms, data brokers or information resellers.

9. Where information is stored and how it is protected

The publishing tool is a self-hosted automation (n8n) running on a virtual private server rented from a hosting provider (Hostinger). The OAuth credentials are stored in n8n's credential store in encrypted form. They are never published or shared.

10. How long information is kept

The automation keeps records of its workflow runs ("executions"). These records can include generated video prompts and metadata, the upload response and the YouTube video ID. Under the current configuration, execution records are removed automatically by n8n's pruning after about 14 days, or sooner if the number of stored records exceeds the configured limit. Video files used during a run are stored on the server's disk separately from these records, and they may stay there after the related execution record has been removed. The copy of each video published on YouTube stays on YouTube until the operator deletes it there.

OAuth credentials are kept until the operator removes the credential from the automation or Google access is revoked (see section 12).

11. This website

This website does not use cookies, analytics or tracking scripts, and it does not ask you for personal information. It is hosted on Cloudflare Pages, which may process technical request data (such as IP address) under Cloudflare's own privacy policy. If you email us, your email address and message are used only to reply to you.

12. How to revoke access

A Google account holder can remove an app's access at any time from their Google Account: open Google's security settings page at https://security.google.com/settings/security/permissions (in your Google Account this appears under "Access to your Google Account" / linked apps), select the app, choose "See details" and then "Remove access". After access is removed, the publishing tool can no longer upload to that account.

13. Google API Services User Data Policy

Below The Unknown's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

14. Changes

If this policy changes, the new version will be posted on this page with an updated "Last updated" date.

15. Contact

For privacy or data questions or complaints, email belowtheunknown@leosmia.co.