User control
Data Deletion and Revocation
How to revoke Google access, request deletion of locally stored data, and separately remove a published video from YouTube.
Current implementation status. An in-product disconnect button, programmatic token revocation, and automated local deletion workflow were not found in the reviewed snapshot. The steps below therefore include manual request handling. Audit submission remains on hold until those controls are implemented and verified.
A. Revoke the app's Google access
- Open the Google security settings page or current Google Account third-party access settings while signed in as the authorising channel owner.
- Locate the access entry associated with KJW Video Publisher's Google Cloud project.
- Remove access and retain confirmation evidence for the clinic's compliance record.
- Email jjjbel@gmail.com so the clinic can remove related locally stored data.
B. Request deletion of local OAuth/API-related data
- Email jjjbel@gmail.com with the subject “KJW Video Publisher data deletion request”.
- Identify the authorising Google account or clinic role without sending a password, one-time code, token, or secret.
- Specify whether the request covers authorisation credentials, channel/API data, upload records, or all locally stored data associated with the grant.
- The clinic will verify authority and document completion. Direct deletion requests should be completed as soon as possible and no later than 7 calendar days.
C. Delete a video already published on YouTube
Deleting local KJW Video Publisher data does not delete content stored by YouTube. To delete a published video, the channel owner must use YouTube Studio or another authorised API client that supports video deletion. KJW Video Publisher's reviewed implementation does not support video deletion.
D. These are separate actions
Local deletion
Removes locally held credentials, API Data, and operational evidence within the approved scope, subject to legal and security retention obligations.
YouTube deletion
Removes YouTube-hosted content through YouTube's own interface or a separately authorised deletion-capable client.
Policy timing
The clinic must act as soon as possible. A request through the client's own revocation/deletion mechanism requires related deletion no later than 7 calendar days. Data linked to access revoked through Google's settings must be deleted within the applicable YouTube policy period, and other stored API Data generally must be refreshed or deleted within 30 calendar days.
Do not send credentials
Never include a Google password, one-time verification code, OAuth client secret, refresh token, access token, or consent link in a deletion request.
한국어 안내
데이터 삭제 및 권한 철회
현재 구현 상태: 검토된 snapshot에서 제품 내 연결 해제 버튼, programmatic token revocation, 자동 로컬 삭제 흐름이 확인되지 않았습니다. 따라서 아래 절차에는 수동 요청 처리가 포함되며 해당 통제를 구현·검증하기 전에는 감사 제출을 보류합니다.
A. Google 계정에서 앱 접근 권한 철회
- 채널 소유자 계정으로 로그인한 뒤 Google 보안 설정 페이지 또는 현재의 Google 계정 제3자 앱 접근 설정을 엽니다.
- KJW Video Publisher의 Google Cloud 프로젝트와 연결된 접근 항목을 찾습니다.
- 접근 권한을 삭제하고 병원 내부 준수 기록을 위해 확인 증빙을 보관합니다.
- 관련 로컬 데이터 삭제를 위해 jjjbel@gmail.com으로 알립니다.
B. 로컬 OAuth/API 관련 데이터 삭제 요청
- 제목을 “KJW Video Publisher 데이터 삭제 요청”으로 하여 jjjbel@gmail.com에 이메일을 보냅니다.
- 비밀번호·OTP·token·secret은 보내지 말고 권한을 부여한 Google 계정 또는 병원 내 역할만 식별합니다.
- 인증정보, 채널/API Data, 업로드 기록 또는 해당 권한과 연관된 전체 로컬 데이터 중 삭제 범위를 적습니다.
- 병원은 요청 권한을 확인하고 처리 완료를 기록합니다. 직접 삭제 요청은 가능한 빨리, 늦어도 7일 안에 처리해야 합니다.
C. YouTube에 게시된 영상 삭제
로컬 KJW Video Publisher 데이터를 삭제해도 YouTube에 저장된 영상은 삭제되지 않습니다. 게시 영상은 채널 소유자가 YouTube Studio 또는 영상 삭제를 지원하는 별도의 승인된 API Client에서 삭제해야 합니다. 현재 검토된 KJW Video Publisher 구현은 영상 삭제를 지원하지 않습니다.
D. 서로 다른 작업
로컬 데이터 삭제는 승인 범위의 로컬 자격증명·API Data·운영 증빙을 제거하는 작업입니다. YouTube 영상 삭제는 YouTube 자체 인터페이스나 별도의 삭제 지원 클라이언트에서 수행하는 작업입니다.
처리 기한
가능한 빨리 처리해야 합니다. 클라이언트 자체 철회·삭제 요청은 늦어도 7일 안에 관련 데이터를 삭제해야 하며, Google 설정에서 철회된 접근과 관련된 데이터는 해당 YouTube 정책 기간 안에 삭제해야 합니다. 그 밖의 저장 API Data는 일반적으로 30일 안에 갱신하거나 삭제해야 합니다.
자격증명을 보내지 마십시오
삭제 요청에 Google 비밀번호, OTP, OAuth client secret, refresh token, access token 또는 동의 링크를 포함하지 마십시오.