Zoom BackUpz

Privacy-First Architecture Notice

Zoom BackUpz is engineered with a strict local-first, zero-knowledge architecture. All recording media files, video files, audio streams, and transcripts downloaded from Zoom are processed and stored directly on your own hardware or private storage destination. We operate zero intermediary cloud servers that inspect, hold, or sell your meeting content.

1. Introduction

This Privacy Policy applies to the Zoom BackUpz application ("the App", "we", "us", or "our"), designed to help individuals and organizations securely download, index, and archive Zoom Cloud Recordings to their own private storage. This policy outlines how Zoom BackUpz accesses, collects, uses, retains, and protects information when you connect the application to your Zoom account via Zoom OAuth 2.0.

By installing, authorizing, or using Zoom BackUpz, you acknowledge the terms described in this Privacy Policy. If you do not agree with this policy, please do not authorize or use the application.

2. Information We Access and Process from Zoom

When you authorize Zoom BackUpz to connect with your Zoom account, the App requests permission to access specific data strictly necessary to facilitate recording backup and local indexing:

3. How We Use Your Information

Information accessed through the Zoom API is used exclusively for the following operational purposes:

We do NOT:

4. Data Storage, Retention, and Security

Local Encryption & OS Keychain

Your Zoom OAuth credentials (access token, refresh token, client credentials) are never stored in plaintext. On Windows, they are encrypted using the Windows Data Protection API (DPAPI), binding decryption keys exclusively to your logged-in Windows user account.

Local-Only File Storage

All downloaded recordings, chat logs, transcripts, and database indexes reside strictly in the folder destination you specify (e.g. your local hard drive, external drive, or authenticated WebDAV network storage). Zoom BackUpz operates without a central database server.

Data Retention & Deletion

Authentication tokens are retained on your device only for as long as your session is active. Clicking Sign Out in the application immediately deletes all stored access and refresh tokens from your OS keychain. Uninstalling the application removes the desktop software. You can delete downloaded recording files from your computer at any time using your native operating system file manager.

5. Your Data Subject Rights (GDPR & CCPA/CPRA)

Depending on your jurisdiction (including the European Economic Area, United Kingdom, and California), you possess specific legal rights regarding your personal information:

How to Exercise Your Rights: Since Zoom BackUpz does not store personal data on cloud servers, you have immediate sovereign control over your data directly on your device. For any inquiries or assistance regarding data rights, contact us at support@zoombackup.pages.dev.

6. How to Disconnect and Revoke Access

You can revoke Zoom BackUpz's access to your Zoom account at any moment:

  1. Navigate to the Zoom App Marketplace and sign in.
  2. Click Manage in the upper-right corner of the page.
  3. Click Added Apps from the left menu.
  4. Locate Zoom BackUpz and click Remove.
  5. Confirm the deauthorization. This instantly revokes all existing API tokens.

7. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or applicable legal requirements. The updated policy will be posted on this page with an updated "Effective Date". We encourage you to review this policy periodically.

8. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please reach out to our team:

Email: support@zoombackup.pages.dev
Support Portal: https://zoom-backup-callback.pages.dev/support