Privacy Policy

Warden · Shpaga Chat Moderator (https://yt.shpaga.party) · Last updated: October 7, 2026

Warden ("the Service", "we") is a private live chat moderation tool operated by Yaroslav Zakabluk, an independent developer based in Kyiv, Ukraine. The Service helps a single YouTube channel and the moderators appointed by that channel keep the live chat of the channel's own broadcasts free of spam and abuse.

1. Use of YouTube API Services

The Service uses YouTube API Services. By using the Service you agree to be bound by the YouTube Terms of Service. Information obtained through YouTube API Services is also governed by the Google Privacy Policy. Our use of information received from YouTube API Services adheres to the YouTube API Services Developer Policies, and Warden's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

2. Who can use the Service

Access is limited to the channel owner and moderators appointed by the channel. Accounts are created by the channel's administrator; there is no public sign-up. The Service is not open to the general public.

3. Information we access and collect

4. How we use information

We do not sell, rent or share user data with third parties, and we do not use it for advertising, profiling, or any purpose other than moderating the channel's live chat.

5. Sharing

Data is visible only to the channel owner and its authorized moderators. Moderation actions are sent to YouTube through the YouTube Data API. We may disclose information only if required by law.

6. Cookies and device storage

The dashboard uses only strictly necessary cookies for signed-in moderators: a session cookie and a CSRF protection cookie. It also stores the moderator's interface preferences (for example the colour theme) in the browser's local storage. We do not use analytics or advertising cookies, and we do not place any cookies or other data on the devices of the channel's viewers.

7. Storage and retention

8. Revoking access

The owner of the bot account and any moderator who connected their own account can revoke the Service's access at any time via the Google security settings page. The channel administrator can disconnect the bot account, and moderators can disconnect their own account, in the dashboard. After revocation we delete the stored tokens and stop using that account.

9. Deleting your data

You can request deletion of any data related to you, including data about your participation in the channel's live chat, by emailing slavious@gmail.com. We will delete it within 7 days.

10. Security

All traffic uses HTTPS. OAuth tokens are encrypted at rest and are never shown in the dashboard. Access to the dashboard requires signing in with a moderator account created by the channel administrator; passwords are stored hashed, and every action is checked against the moderator's permissions and recorded in the audit log.

11. Changes

We may update this policy. The date at the top shows the latest revision.

12. Contact

Yaroslav Zakabluk · Kyiv, Ukraine · slavious@gmail.com