Privacy Policy
Last updated: 18 August 2026
Churchly.tech, operated by Churchly Tech Pty Ltd ("Churchly", "we", "us"), helps churches turn a single sermon into a week of shareable content — short clips, daily reflections, a study guide and more — and, when you choose to connect your accounts, publishes the content you approve to your own channels on your instruction. This policy explains what we collect, how we use it and your choices. Questions: support@churchly.tech.
Information we collect
- Account & organisation: your name, email, church/organisation name, role and the team members you invite.
- Media you upload: sermon recordings (audio/video) or links you provide for processing.
- Generated content: transcripts, clips, reflections, study guides and related assets Churchly produces from your media.
- Connected social accounts (only if you connect them): secure authorisation tokens and basic account identifiers (e.g. your YouTube channel, Facebook Page, Instagram Business account or TikTok account) needed to publish on your behalf. We never receive or store your social-media passwords.
- Billing: plan and usage records (payments are handled by our payment processor).
- Usage & device data: log data needed to operate and secure the service.
How we use your information
We use your information solely to provide Churchly: to process your sermons into content, let you review and approve it, and — where you have connected an account and instructed us to — publish the content you approve to the accounts you connect. We use connected-account data only for those publishing actions. We do not sell your personal information, and we do not use your content to train third-party AI models.
Connected platforms & their data
Google / YouTube. Churchly uses YouTube API Services to provide its YouTube features (connecting your channel and uploading the videos you approve). By using these features you also agree to the YouTube Terms of Service, and Google's handling of your information is described in the Google Privacy Policy. Churchly's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
What YouTube data we access, collect and store. When you connect a YouTube channel we access, collect and store: (a) OAuth authorisation tokens issued by Google (encrypted at rest — we never see or store your Google password); (b) your channel identifier and channel name, so we can show you which channel is connected; and (c) for each video Churchly uploads on your instruction, the resulting YouTube video ID, upload status and processing status returned by the YouTube API. We do not access your YouTube watch history, subscriptions, analytics, comments or any other channel data.
How we use, process and share this data. We use the stored authorisation tokens solely to upload the videos you approve to your channel, to set video metadata you choose (title, description, privacy setting, thumbnail) and to confirm the upload succeeded. Internally, this data is accessible only to Churchly systems and authorised personnel operating the publishing service. Externally, it is shared only with: (i) Google/YouTube itself, to perform the actions you request; and (ii) our cloud hosting and database providers, which store it on our behalf under confidentiality obligations. We do not share YouTube API data with advertisers or any other third parties, we do not sell it, and we do not use it to train AI models.
Refreshing and deleting stored YouTube data. Authorisation tokens are refreshed via Google approximately every hour while your channel remains connected; stored channel details are refreshed each time you connect or publish. You can delete Churchly's stored YouTube data at any time: disconnecting the channel in Churchly's Publish settings deletes the stored authorisation tokens and revokes Churchly's access with Google, and you can also revoke Churchly's access to your data at any time via the Google security settings page. Deleting your Churchly account, or emailing support@churchly.tech, removes all stored YouTube data (tokens, channel identifiers and upload records) within 7 days.
Meta / Facebook & Instagram. When you connect a Facebook Page or Instagram Business/Creator account, we access the page and account identifiers and the permissions needed to publish the content you approve, subject to the Meta Platform Terms.
TikTok. When you connect TikTok, we access the account identifier and the permission needed to post the content you approve, subject to TikTok's developer terms.
You can disconnect any platform at any time from your Churchly settings, which revokes Churchly's stored access for that account.
How we share information
We share information only with: (a) the platforms you connect, to publish content you approve; (b) service providers who help us run Churchly (cloud hosting, AI content-generation providers, transactional email and payment processing) under confidentiality obligations; and (c) where required by law. We do not sell your data.
Cookies & data stored on your device
Churchly stores, accesses and collects information on or from your device to operate the service. Specifically, we place cookies and use similar technologies (such as browser local storage) on your device or browser to: keep you signed in (session/authentication tokens), remember your workspace and interface preferences, and secure the service (for example CSRF protection). Our service providers — cloud hosting and, where you use them, sign-in providers such as Google — may also place or recognise cookies or similar technologies on your device or browser when you use Churchly. We do not use advertising cookies. You can clear or block cookies in your browser settings, though parts of Churchly (such as staying signed in) may stop working.
Data retention & deletion
We keep your data while your account is active or as needed to provide the service. You can request deletion of your account and associated data at any time by emailing support@churchly.tech; we will delete your personal data and revoke connected-account tokens within 7 days, except where we must retain limited records to meet legal or billing obligations. Disconnecting a social account deletes the stored authorisation for that platform and revokes Churchly's access with the platform. For Google/YouTube you can additionally revoke Churchly's access yourself at any time from the Google security settings page.
Security
We protect authorisation tokens and personal data with encryption in transit and at rest and restrict access to authorised personnel. No system is perfectly secure, but we work to safeguard your information.
Your rights
Depending on where you live, you may have rights to access, correct, export or delete your personal data. Contact support@churchly.tech to exercise them.
Children
Churchly is intended for churches and their authorised team members and is not directed to children under 16.
Changes
We may update this policy; we will post a new "Last updated" date here and, for material changes, notify you.
Contact
Churchly Tech Pty Ltd (operator of Churchly.tech)
Email: support@churchly.tech
Website: www.churchly.tech
This policy is provided in good faith to describe our practices accurately.