Effective date: July 17, 2026

SouzBit, LLC (“SouzBit,” “we,” or “us”) operates CloudMemoir, an Apple TV app that lets you browse and view photos and videos from a cloud account you choose to connect.

Information CloudMemoir accesses

When you connect Google Drive, CloudMemoir requests read-only access to your existing Drive files. This allows the Apple TV app to:

  • browse your existing Drive root and folder hierarchy;
  • read folder and supported photo/video metadata;
  • load thumbnails; and
  • retrieve a photo or video when you choose to view or play it.

CloudMemoir cannot use this permission to create, edit, move, share, or delete files in your Google Drive.

CloudMemoir also processes the authorization code, refresh token, short-lived access token, pairing records, and CloudMemoir session records needed to connect your Apple TV securely. We do not request Google identity scopes such as your Google profile or email address.

If you connect Microsoft OneDrive, CloudMemoir accesses equivalent folder and photo/video information allowed by the Microsoft permissions shown during connection.

How information is used

Cloud data is used only to provide, maintain, and secure the cloud-browsing and media-viewing features you request. CloudMemoir does not sell Google user data or cloud media, use it for advertising, use it to determine creditworthiness, or use it for surveillance or unrelated analytics.

Human access to Google user data is prohibited except when you give permission for support, when needed to investigate security or abuse, when required by law, or when the information has been aggregated and anonymized as permitted by applicable policy.

CloudMemoir’s use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Where information is processed and stored

Google Drive folder metadata, thumbnails, and selected media travel directly between Google and your Apple TV. The CloudMemoir authorization broker does not proxy or store Drive file content or Drive folder/file metadata.

The broker stores the Google refresh token encrypted with Google Cloud Key Management Service in Google Cloud Firestore. The refresh token remains server-side. It is used only to obtain short-lived Google access tokens for your authenticated Apple TV.

Your Apple TV stores a CloudMemoir broker session in Apple Keychain. It keeps short-lived Google access tokens only in memory. The app may store provider-namespaced folder and media metadata locally and cache downsampled thumbnail bytes in the app’s cache directory to make browsing responsive. CloudMemoir does not intentionally write credentials or Drive content to application logs.

Service providers and transfers

CloudMemoir uses:

  • Google OAuth and Google Drive to authorize and provide the Google data you request;
  • Google Cloud Run, Firestore, Key Management Service, Secret Manager, Logging, and Monitoring to operate and secure the authorization broker;
  • Cloudflare to route and protect traffic to the public authorization broker; and
  • Apple platform services and storage on your Apple TV to operate the app.

These providers may process limited account, device, request, and operational information according to their own terms and privacy commitments. CloudMemoir does not send Google Drive file content or metadata through Cloudflare or the authorization broker.

Retention

  • OAuth state, pairing, and one-time delivery records expire after approximately 10 minutes and are explicitly deleted when consumed where applicable. Firestore cleanup may occur later.
  • A CloudMemoir TV session is valid for no more than 90 days unless refreshed or revoked. Expired records are rejected immediately and later removed through database cleanup.
  • The encrypted Google refresh token and its connection record are retained while Google Drive remains connected.
  • Device-local folder metadata and thumbnails are retained to make browsing responsive until you clear the cache, disconnect that provider, delete the app, or the operating system removes cache files.
  • Minimized broker security and operational audit events are retained for no more than 400 days and then scheduled for deletion. Audit events linked to a connection are deleted earlier when you disconnect. We may retain information longer only when required by law or necessary to investigate security or abuse.

Firestore time-to-live deletion is asynchronous and may take additional time after a record expires. Deleted information may also remain for a limited period in provider-managed recovery systems if recovery protection is enabled; it is not used for normal product operation during that period.

CloudMemoir uses a seven-day Firestore point-in-time recovery window for the production authorization database. Data deleted from the active database may remain recoverable for up to seven days before aging out of that recovery window. CloudMemoir does not currently maintain a longer-lived Firestore backup schedule.

Your choices and deletion

To disconnect Google Drive on Apple TV:

  1. Open Settings in CloudMemoir.
  2. Under Connected Accounts, select Disconnect next to Google Drive.
  3. Wait for CloudMemoir to confirm completion.

Disconnecting revokes the Google authorization grant, deletes the encrypted refresh token and linked broker sessions and records, removes the CloudMemoir session from Apple Keychain, and clears Google Drive metadata and thumbnail caches stored by CloudMemoir on that Apple TV. It does not delete or change files in your Google Drive.

You can also revoke CloudMemoir from the third-party access page in your Google Account. Revoking access at Google prevents future access but may not by itself clear local app caches; use CloudMemoir’s Disconnect and Clear Cache controls as well.

If you cannot use the app, email [email protected] to request deletion. Include enough information for us to locate and verify the connection without sending passwords, access tokens, refresh tokens, or pairing codes. We will acknowledge the request and explain any verification needed before deletion.

Security

CloudMemoir uses HTTPS in transit, encrypts the server-side Google refresh token with Google Cloud KMS, restricts service access through dedicated identities, stores the Apple TV session in Keychain, and uses short-lived access tokens. No system can guarantee absolute security, but we review access and operational controls appropriate to the data processed.

Children

CloudMemoir is not directed to children under 13, and we do not knowingly collect children’s personal information independently of a cloud account chosen and controlled by the user.

Changes to this policy

We may update this policy as CloudMemoir changes. The effective date above identifies the current version. Material changes will be communicated through the website, app, release notes, or another appropriate channel.

Contact

For privacy questions or deletion requests, contact:

SouzBit, LLC

[email protected]