Effective date: September 13, 2026

SouzBit, LLC (“SouzBit,” “we,” or “us”) operates CloudMemoir, an Apple TV app that lets you browse and view photos and videos from a cloud account you choose to connect.

Information CloudMemoir accesses

When you connect Google Drive, CloudMemoir requests read-only access to your existing Drive files. This allows the Apple TV app to:

  • browse your existing Drive root and folder hierarchy;
  • read folder and supported photo/video metadata;
  • load thumbnails; and
  • retrieve a photo or video when you choose to view or play it.

CloudMemoir cannot use this permission to create, edit, move, share, or delete files in your Google Drive.

CloudMemoir also processes the authorization code, refresh token, short-lived access token, pairing records, and CloudMemoir session records needed to connect your Apple TV securely. We do not request Google identity scopes such as your Google profile or email address.

If you connect Microsoft OneDrive, CloudMemoir requests access to read your files and basic profile and to keep the connection active. The app reads your display name and email address from Microsoft to identify the connected account on your Apple TV. OneDrive access and refresh tokens are stored in Apple Keychain on your TV. Profile information, folder metadata, thumbnails, and selected media travel directly between Microsoft and the TV; they are not sent to the CloudMemoir Google authorization broker. This release supports personal Microsoft accounts.

Subscriptions

Apple processes CloudMemoir Plus purchases, payment details, renewals, cancellations, and refunds. CloudMemoir uses Apple’s StoreKit service on your TV to verify subscription status and unlock paid features. A randomly generated identifier for the app installation is sent to Apple with purchases; it is not your Apple Account email or a cloud-account identifier. The app stores subscription status and the last verification date locally to support temporary offline access. The current CloudMemoir authorization broker does not receive subscription transactions or this installation identifier. CloudMemoir does not receive your payment-card details.

Help and support

Opening Get Help on Apple TV displays a fixed website address, QR code, and email address. It does not send TV diagnostics, cloud-account identifiers, or media to the support service.

If you choose to use the support website, we collect the reply email address, category, and message you submit, together with a case reference and processing records. Your reply email and message are encrypted in CloudMemoir’s support database and made available to authorized support operators. Google Cloud hosts the support service, and Google Workspace processes staff notifications and email conversations. You may also contact [email protected] directly; we receive your sender address, message, and email metadata.

The support form uses an essential cookie and related security records to protect submissions and display their confirmation. The cookie expires after 30 minutes and is not used for advertising or analytics. Security and operational records may include IP addresses, request timing, status, and minimized error information. We use these to prevent abuse, diagnose failures, and keep the service available, not to build advertising profiles.

The form does not accept attachments or collect TV diagnostics automatically. Do not send passwords, sign-in or pairing codes, tokens, payment-card details, receipts, transaction IDs, account IDs, or cloud-file links. The website displays a confirmation after a successful submission; we do not send an automatic receipt email. A person replies by email.

How information is used

Cloud data is used only to provide, maintain, and secure the cloud-browsing and media-viewing features you request. CloudMemoir does not sell Google user data or cloud media, use it for advertising, use it to determine creditworthiness, or use it for surveillance or unrelated analytics.

Human access to Google user data is prohibited except when you give permission for support, when needed to investigate security or abuse, when required by law, or when the information has been aggregated and anonymized as permitted by applicable policy.

CloudMemoir’s use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Where information is processed and stored

Google Drive folder metadata, thumbnails, and selected media travel directly between Google and your Apple TV. The CloudMemoir authorization broker does not proxy or store Drive file content or Drive folder/file metadata.

The broker stores the Google refresh token encrypted with Google Cloud Key Management Service in Google Cloud Firestore. The refresh token remains server-side. It is used only to obtain short-lived Google access tokens for your authenticated Apple TV.

Your Apple TV stores a CloudMemoir broker session in Apple Keychain. It keeps short-lived Google access tokens only in memory. The app may store provider-namespaced folder and media metadata locally and cache downsampled thumbnail bytes in the app’s cache directory to make browsing responsive. CloudMemoir does not intentionally write credentials or Drive content to application logs.

Sharing, disclosure, and service providers

CloudMemoir does not sell, rent, or disclose Google user data to advertisers, data brokers, information resellers, or other unrelated third parties. We share, transfer, or disclose Google user data only as needed to provide the user-requested Google Drive feature, operate and secure CloudMemoir, comply with law, or protect users and the service:

  • Google OAuth and Google Drive process the authorization request and return the Drive folder, file, thumbnail, and selected media data requested by the user. This information travels directly between Google and the user’s Apple TV.
  • Google Cloud, acting as CloudMemoir’s infrastructure provider, processes the encrypted Google refresh token and the limited connection, session, security, and operational records needed to operate and protect the authorization broker. CloudMemoir does not send Drive file content or Drive folder/file metadata to the broker or store it in Google Cloud.
  • Cloudflare, acting as a network routing and security provider, may process limited network, device, and HTTP request information needed to route and protect traffic to the authorization broker. CloudMemoir does not send Drive file content or Drive folder/file metadata through Cloudflare.
  • Apple platform services and storage on the user’s Apple TV process the session, short-lived access token, locally stored metadata, thumbnails, and selected media needed to operate the app on that device. CloudMemoir does not intentionally send Google Drive content or metadata to Apple servers.
  • SouzBit personnel may access limited Google user data only with the user’s permission for support, to investigate security or abuse, or when required by law. We may disclose information to legal authorities when legally required or necessary to protect users, CloudMemoir, or the public.

These recipients may use the information only for the purposes described above and according to their applicable contractual, legal, and privacy obligations. CloudMemoir does not transfer Google user data to third-party AI or machine learning services and does not use it to train generalized AI or machine learning models.

The support service separately processes the information described in Help and support. Apple processes App Store purchases, and Microsoft processes OneDrive authorization and requests under their applicable terms and privacy policies. We do not use support or subscription information for targeted advertising or share it with data brokers.

Retention

  • OAuth state, pairing, and one-time delivery records expire after approximately 10 minutes and are explicitly deleted when consumed where applicable. Firestore cleanup may occur later.
  • A CloudMemoir TV session is valid for no more than 90 days unless refreshed or revoked. Expired records are rejected immediately and later removed through database cleanup.
  • The encrypted Google refresh token and its connection record are retained while Google Drive remains connected.
  • Device-local folder metadata and thumbnails are retained to make browsing responsive until you clear the cache, disconnect that provider, delete the app, or the operating system removes cache files.
  • Minimized broker security and operational audit events are retained for no more than 400 days and then scheduled for deletion. Audit events linked to a connection are deleted earlier when you disconnect. We may retain information longer only when required by law or necessary to investigate security or abuse.

Firestore time-to-live deletion is asynchronous and may take additional time after a record expires. Deleted information may also remain for a limited period in provider-managed recovery systems if recovery protection is enabled; it is not used for normal product operation during that period.

CloudMemoir uses a seven-day Firestore point-in-time recovery window for the production authorization database. Data deleted from the active database may remain recoverable for up to seven days before aging out of that recovery window. CloudMemoir does not currently maintain a longer-lived Firestore backup schedule.

Support requests are subject to a 180-day retention period from form submission, or from the first received message for a direct-email conversation. Expired support database records are blocked from normal use and scheduled for deletion. Removing operator email copies requires a separate deletion process; deletion is not instantaneous. Copies in your mailbox or another recipient’s mailbox are outside CloudMemoir’s control.

Support form sessions expire after 30 minutes. Email-abuse prevention hashes expire after 24 hours. Support request/security logs and terminal delivery records are retained for up to 30 days, and count-only operational metrics for six weeks. Google-required audit logs have a 400-day retention period. Support database recovery copies may persist for up to seven days after active data deletion. Limited deletion records without message content are retained to complete and audit cleanup. Legal obligations or an active security investigation may require longer retention.

OneDrive credentials remain in the TV’s Keychain until the connection is removed. Subscription status and preferences remain locally until cleared or the app’s local data is removed. Apple manages retention of its own purchase records.

Your choices and deletion

To disconnect Google Drive on Apple TV:

  1. Open Settings in CloudMemoir.
  2. Under Connected Accounts, select Disconnect next to Google Drive.
  3. Wait for CloudMemoir to confirm completion.

Disconnecting revokes the Google authorization grant, deletes the encrypted refresh token and linked broker sessions and records, removes the CloudMemoir session from Apple Keychain, and clears Google Drive metadata and thumbnail caches stored by CloudMemoir on that Apple TV. It does not delete or change files in your Google Drive.

You can also revoke CloudMemoir from the third-party access page in your Google Account. Revoking access at Google prevents future access but may not by itself clear local app caches; use CloudMemoir’s Disconnect and Clear Cache controls as well.

To disconnect OneDrive, use Disconnect beside OneDrive in CloudMemoir Settings. This removes its locally stored credentials and clears its local metadata and thumbnail caches. It does not delete files from OneDrive or cancel an Apple subscription. You can separately manage CloudMemoir’s permission through your Microsoft account.

Manage or cancel CloudMemoir Plus through your Apple Account subscription settings. Disconnecting a cloud account or deleting CloudMemoir does not itself cancel a subscription.

For a privacy or deletion request, email [email protected] or choose Privacy or deletion on the support form. Include enough information for us to understand the request without sending passwords, tokens, pairing codes, or payment details. A person will explain any verification needed. A support case reference is not proof of account ownership. Where applicable, you may request access to, correction of, or deletion of information we hold; we may need to retain information required by law or for security.

Security

CloudMemoir uses HTTPS in transit, encrypts the server-side Google refresh token with Google Cloud KMS, restricts service access through dedicated identities, stores the Apple TV session in Keychain, and uses short-lived access tokens. No system can guarantee absolute security, but we review access and operational controls appropriate to the data processed.

Children

CloudMemoir is not directed to children under 13, and we do not knowingly collect children’s personal information independently of a cloud account chosen and controlled by the user.

Changes to this policy

We may update this policy as CloudMemoir changes. The effective date above identifies the current version. Material changes will be communicated through the website, app, release notes, or another appropriate channel.

Contact

For privacy questions or deletion requests, contact:

SouzBit, LLC

[email protected]