Transparency

Google API Data Policy

Creedn uses Google APIs to power two things: account sign-in and outbound email. This page explains exactly which permissions we request, why, and how we protect your data.

Last updated: May 2026

What is Creedn?

Creedn is a creator management platform that helps independent content creators manage brand deals, track revenue, organise their content calendar, and automate outbound communications — all in one place. It is used by creators on YouTube, Instagram, TikTok, and other platforms.

Gmail — Outbound email only

Sensitive scope
https://www.googleapis.com/auth/gmail.send

Why we need this: Creedn sends invoices, brand pitch emails, and payment reminders directly from a creator's Gmail address. This ensures emails appear from the creator's own address rather than a generic no-reply — which is essential for professional brand communications.

What we send: Only emails explicitly triggered by the creator (e.g. clicking "Send Invoice" or "Send Pitch"). Automated follow-ups are only sent when the creator has configured and enabled them.

What we never do: We never read your inbox. We never access, store, or process any received emails. We do not request gmail.readonly or any inbox access permissions.

Basic profile — Account login

https://www.googleapis.com/auth/userinfo.email
https://www.googleapis.com/auth/userinfo.profile

Used solely for Google Sign-In to create and authenticate a Creedn account. We receive your name and email address only. This data is never shared with third parties.

Permissions we do not request

Creedn intentionally does not request the following Google permissions:

gmail.readonlyWe do not read your inbox — inbox scanning has been permanently removed from Creedn.
gmail.labelsWe do not create or modify Gmail labels.
gmail.modifyWe do not modify, archive, or delete any emails.
youtube.readonly / yt-analytics.readonlyYouTube analytics are connected separately via the YouTube OAuth flow, not bundled with Gmail.

Data security & privacy

  • All data is transmitted over HTTPS/TLS.
  • OAuth tokens are stored encrypted in our database (Supabase, hosted on AWS).
  • We do not sell, rent, or share any Google user data with advertisers or third parties.
  • You can revoke Creedn's access at any time from your Google Account security settings.
  • Deleting your Creedn account permanently removes all associated Google tokens and connection data.
  • Creedn's use of Google user data complies with the Google API Services User Data Policy, including the Limited Use requirements.

Limited Use compliance

Creedn's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Contact

For questions about this policy or to request data deletion, email privacy@creedn.com