Privacy Policy
JesChat Studio ("JesChat", "we", "us", or "our") is committed to protecting your privacy and ensuring you have complete control over your data. JesChat is a local, client-side desktop software application designed for video game streamers and live creators to customize stream chat overlays and perform stream moderation during live broadcasts.
JesChat operates 100% locally on your computer. We do not maintain remote user tracking databases, we do not operate telemetry servers, and we never collect, monetize, or sell your personal information or credentials.
1. Data Collection & Processing Architecture
JesChat is distributed as a self-hosted desktop client application. All processing of live stream chat messages, graphics rendering, and local UI occurs directly on the user's host operating system.
- No External Server Transmission: JesChat does not send your data, stream chat logs, or account credentials to any developer-owned, third-party, or intermediary tracking servers.
- No Advertising / Analytics SDKs: The application contains no advertising trackers, analytics SDKs, fingerprinting tools, or behavioral measurement beacons.
2. Google & YouTube User Data
JesChat offers optional integration with YouTube Live via Google OAuth 2.0 to enable streamers to moderate live chat during their broadcasts.
Requested Google OAuth Scope
JesChat explicitly requests access only to the following scope:
https://www.googleapis.com/auth/youtube.force-ssl
Why This Scope is Necessary (Scope Justification)
Under the YouTube Data API v3 architecture, moderation actions within a live broadcast require the youtube.force-ssl authorization scope:
- Live Chat Message Deletion: Calling
liveChatMessages.deleteto remove offensive or rule-violating chat messages directly from the JesChat moderation dock. - User Timeouts & Bans: Calling
liveChatBans.insert(with temporary or permanent durations) to protect the streamer's community from harassment or spam. - Active Stream Chat Retrieval: Calling
videos.list (liveStreamingDetails)to resolve the broadcaster's currentactiveLiveChatId.
Note: The YouTube Data API does not provide a narrower or read-only scope capable of performing live chat message deletion and moderation bans. JesChat requests only this single permission necessary for these real-time moderation features.
3. Data Protection Mechanisms for Sensitive Data
To ensure the absolute security and privacy of sensitive user data, OAuth credentials, and tokens, JesChat implements robust technical and operational safeguards:
A. Encryption in Transit
All direct API communications between your local JesChat client and Google / YouTube endpoints are strictly encrypted using industry-standard Transport Layer Security (TLS 1.2 and TLS 1.3) over HTTPS. OAuth tokens and moderation commands are never transmitted over unencrypted HTTP channels.
B. Protection at Rest (Local Storage Isolation)
When you complete the Google OAuth authorization flow, the resulting OAuth tokens (access_token, refresh_token, and expiration timestamp) are stored strictly within the user's local application configuration file (connection.json) on the host machine.
- Tokens are protected by host operating system user-level file access permissions.
- Tokens reside exclusively on your local storage drive; they are never synchronized to external cloud databases, external backup servers, or shared with third parties.
C. In-Memory Security & Lifecycle
Tokens are loaded into application runtime memory solely to authenticate requests sent directly to official Google endpoints (https://www.googleapis.com/...). They are never written to unencrypted debug log files or broadcast to public overlay endpoints.
4. Data Retention, Deletion, and Revocation
You have continuous, unilateral control over your credentials and stored data at all times:
-
In-App One-Click Disconnect: You can disconnect your YouTube account at any time by opening the JesChat Connection Settings and clicking "Disconnect". This immediately purges the access token, refresh token, and associated channel identifiers from both active runtime memory and the local
connection.jsonfile. -
Complete Local Data Deletion: Removing the JesChat folder or deleting the
connection.jsonfile completely and permanently removes all stored authentication artifacts from your system. -
Revoking Access via Google Account: You can revoke JesChat's authorization at any moment directly from your Google Security management portal:
https://myaccount.google.com/permissions
5. Prohibition on AI / Machine Learning Model Training
JesChat does not use, retain, transfer, or process user data obtained through Google Workspace or YouTube APIs to develop, improve, fine-tune, or train generalized Artificial Intelligence (AI) and/or Machine Learning (ML) models.
6. Google API Services User Data Policy Compliance (Limited Use)
JesChat's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
7. Third-Party Sharing & Commercialization
We hold a strict zero-sharing policy:
- We do not sell your personal data or Google user data.
- We do not rent, lease, or monetize user credentials, chat metadata, or stream interaction logs.
- We do not transfer Google user data to data brokers, advertising networks, or marketing platforms.
8. Twitch Integration
JesChat also supports Twitch chat and moderation. Similar to Google OAuth, Twitch user tokens are saved strictly on your local machine and utilized exclusively to connect to Twitch IRC / EventSub / Helix API for stream overlay and chat moderation purposes.
9. Policy Updates
If we make material changes to this Privacy Policy, we will update the "Last Updated" date at the top of this page. Because JesChat is a local application without mandatory accounts or mailing lists, updates will also be reflected in the official application repository and release notes.
10. Contact Us
If you have questions, feedback, or data privacy inquiries regarding JesChat Studio or this Privacy Policy, please contact the developer directly:
- Developer: JesChat Studio Development Team
- Primary Email: jestr.sr@gmail.com
- Official Website: https://jeschat.live