Privacy Policy
Last updated: October 10, 2026
Scope of this notice. HAZO-Rclone-Backup is an owner-operated utility used to configure and perform offsite backups of HAZO server data to a Google Drive account controlled by the operator. This public website is informational; it is not a Google sign-in form, and no OAuth tokens are entered into these pages.
1. Google data and permissions
When the operator explicitly authorizes the utility, it requests the Google Drive API permission https://www.googleapis.com/auth/drive.file. This is a per-file permission intended to create, list, read, update or delete Drive files created or opened with this application. The utility is not designed to browse unrelated personal Drive content. We do not request full-Drive access for this workflow.
2. Why information is used
Authorized Drive access is used only to transfer owner-selected backup archives, confirm uploads, list or retrieve application-managed backup files for restore tests, and apply operator-defined retention. Backups may contain data from the HAZO infrastructure chosen by the operator; access to that source data is managed separately from Google OAuth.
3. Where information is stored
Backup archives are stored in the operator's Google Drive account. OAuth refresh/access tokens used by the command-line backup utility may be stored in a restricted configuration file on the operator-controlled server or workstation. The public Pages website does not receive or store OAuth credentials. Backups will be encrypted before upload when the planned Rclone Crypt setup is enabled and verified; encryption must not be assumed before that configuration is tested.
4. Sharing and disclosure
We do not sell Google user data, use it for advertising, train general-purpose AI models on it, or share it with independent data brokers. The transfer of backup data to Google Drive necessarily involves Google's services under Google's applicable terms. This informational website is served by Cloudflare, which may process ordinary technical request information under its own policies. We may disclose information only when legally required or necessary to secure the service.
5. Retention, deletion and revocation
Backup file retention is configured by the operator and is not yet represented as a fixed universal duration. The operator can delete backup files from Google Drive and can revoke the application's Google access via Google Account security settings. Revocation stops new authorized transfers, but does not automatically delete files already uploaded. Locally stored tokens should also be removed from the backup host upon decommissioning.
6. Security and limitations
Access is intended to be limited to the minimum practical OAuth scope; server credentials and encryption keys must be protected by the operator. We will validate encryption, automated jobs and restoration before calling the system production-ready. No online service can promise absolute security.
7. Your choices and contact
This utility is intended for the authorized operator of HAZO infrastructure, not as an open consumer backup product. For questions, access requests, or requests concerning stored data, contact privacy@hazo.com.tr. If practices change, this policy should be updated before the new use of Google data begins.
8. Google API Services User Data Policy
Use of information received through Google APIs is subject to the Google API Services User Data Policy, including its Limited Use requirements.