Privacy Policy
Application: OpenClaw Drive Upload
Website: https://bamiensldrive.duckdns.org/
Last updated: October 3, 2026
1. Overview
OpenClaw Drive Upload ("the App") is a private tool operated by its owner on the owner's own server. Its only function is to create a daily backup of the owner's own business database and upload that backup file to a folder in the owner's own Google Drive account through the Google Drive API. This policy explains what Google user data the App accesses, how it is used, stored, shared and deleted.
2. Information the App accesses
- Google OAuth credentials: when the owner authorizes the App with Google, the App receives an OAuth access token and a refresh token for that Google account. It does not receive or store the account password.
- Google Drive data: the App requests the Google Drive scope
https://www.googleapis.com/auth/drive. It uses this access only to (a) create/upload backup files in one designated Drive folder, and (b) list and delete expired backup files (older than 30 days) inside that same folder. - The App does not read, download, copy or analyze the content of any other file or folder in the Drive account, and does not access Gmail, Contacts, Calendar or other Google services.
- The App does not collect personal data from website visitors. The website consists of static pages only and has no login, forms, cookies for tracking, or analytics. Standard web-server access logs (IP address, time, requested page) may be kept temporarily for security and troubleshooting.
3. How the information is used
- OAuth tokens are used only to authenticate API requests that upload the owner's backup files to the owner's Google Drive and to remove expired backups from the same folder.
- The backup files contain the owner's own business database (for example production records and staff names used internally). They are used only for disaster recovery and restoration of the owner's own system.
- The data is not used for advertising, profiling, marketing, credit decisions, or training of AI/ML models.
4. Google API Services User Data Policy (Limited Use)
The App's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, the App only uses Google user data to provide and improve the user-facing backup function described above, does not transfer it to others except as necessary to provide that function or to comply with law, does not use it for advertising, and does not allow humans to read it except with the owner's consent, for security purposes, or where required by law.
5. Storage and security
- OAuth tokens are stored in a file on the owner's private server, readable only by the system administrator account (file permissions restricted to the owner/root). They are not published, embedded in web pages, or sent to any third-party service.
- Backup files are stored (a) in the owner's Google Drive folder, and (b) temporarily on the owner's server, where local copies are automatically deleted after about 3 days.
- Connections to Google APIs use HTTPS/TLS. Access to the server is restricted to the owner.
6. Sharing and disclosure
The App does not sell, rent, trade or share Google user data or backup contents with any third party. Data is transmitted only between the owner's server and Google (the Google Drive service) and may be disclosed only if required by law. Google processes the stored files under its own Privacy Policy.
7. Data retention and deletion
- Backup files in Google Drive are kept for 30 days and then automatically deleted by the App. The owner can delete any backup file or the folder at any time directly in Google Drive.
- OAuth tokens are kept until the owner revokes access or removes them from the server.
- To revoke access: go to https://myaccount.google.com/permissions, select "OpenClaw Drive Upload" and choose "Delete all connections / Remove access". After revocation the App can no longer access the account.
- To request deletion of data: contact us using the details below. We will delete stored OAuth tokens and any remaining backup copies related to your account within a reasonable time after verifying the request.
8. Children's privacy
The App is not directed to children and does not knowingly collect information from children.
9. Changes to this policy
This policy may be updated from time to time. The latest version is always available at https://bamiensldrive.duckdns.org/policy, with the "Last updated" date shown above.
10. Contact
For questions about this policy or to request data deletion, contact the App owner via the Facebook Fanpage Messenger: facebook.com/1365130780015538. Please do not send passwords or access tokens.