Mash Potato Town
Watch Party Privacy Notice
Effective: 29 July 2026
How the watch party works
The watch party is a custom Discord Activity. It coordinates playback state between members in the same Discord voice channel and displays YouTube's official, visible IFrame Player in each member's Activity. The application does not extract, download, proxy, or rebroadcast YouTube video or audio.
Data stored by the watch party
One watch-party coordination row is stored for each active Discord server and voice-channel pair. That row contains only:
- the Discord server ID, voice-channel ID, party-owner Discord user ID, and persistent watch-party panel message ID;
- for the current video and queued videos: an internal random item ID, YouTube video ID, canonical YouTube URL, title, official duration, requester Discord user ID and display name, request time, and queue order; and
- the party revision, playing or paused state, playback anchor position and timestamp, and the row's last-updated timestamp.
This watch-party data is kept in a database separate from the existing
/song recommendation records. The Activity does not copy,
replace, or erase those recommendation records.
Temporary Discord and consent data
Discord OAuth state values are random, kept only in server memory, and expire after five minutes. Activity session tickets are also random and memory-only. A ticket lasts no longer than the Discord OAuth token and the configured Activity session limit: one hour by default, configurable from one minute to 24 hours. The ticket temporarily contains the Discord user ID and display name needed to authenticate the Activity. OAuth access tokens are returned to the Activity for the Discord Embedded App SDK authentication step and are not persisted by this application.
Consent given through the /watch command is held only in
server memory for at most 24 hours and is lost when the process
restarts. A pending consent-and-add request expires after five minutes.
The checkbox on the Activity's start page is not written to the
watch-party database.
YouTube and Google requests
The server contacts YouTube Data API v3 only after the member has consented. It sends the submitted YouTube video ID using the application's server-side API key to confirm that the video exists, is public or unlisted, processed, embeddable, and supported, and to obtain its title and official duration. The application does not send the member's Discord user ID or display name in that YouTube Data API request.
After consent, the official privacy-enhanced YouTube iframe, rather than this application, makes player requests to YouTube or Google; Discord's Activity URL proxy may carry mapped requests where required. Those requests can include ordinary network and device information, such as IP and browser information. YouTube may show advertisements and may use cookies, local storage, or similar technologies according to its settings and policies. Privacy-enhanced embedding reduces some storage before interaction but does not mean that no data is sent to YouTube or Google.
Accounts and credentials not collected
The application does not request or store anyone's personal YouTube or Spotify account, provider password, cookies, credentials, OAuth token, watch or listening history, playlists, or personal recommendations. A server-project YouTube Data API key is used only by the server and is not a member credential.
Retention and deletion
Watch-party rows are automatically deleted after 29 days without an update. This includes an empty party row that still contains its owner or panel message ID. Cleanup runs on a schedule, so deletion may occur shortly after the 29-day point.
To request deletion of watch-party data described in this notice, contact a Mash Potato Town server owner or moderator through Discord. Provide your Discord user ID; do not provide a password, login code, cookie, or token. The owner or moderator will verify that the request comes from the Discord account concerned, delete watch-party rows that contain that user ID, and delete or replace any affected persistent watch-party panel message within seven days.
Discord, YouTube, and Google process and retain data under their own policies. A deletion from this application does not delete data those services independently hold. See the Discord Privacy Policy, Google Privacy Policy, and YouTube Terms of Service.