This page explains how customer information is handled when using the oraTuti webstore.
When you place an order or contact us, you may provide information such as your name, email address, phone number, delivery address and order details.
Customer information is used to process orders, arrange delivery or showroom pickup, provide customer support and maintain order records needed for the oraTuti shopping workflow.
Order information submitted through oraTuti is sent to the connected warehouse management system so that inventory can be allocated, picked, packed and dispatched or prepared for showroom pickup.
The webstore may store cart, wishlist and account convenience data in your browser so these features can work between page visits. Cookie Policy
If you have a question about personal information connected with an oraTuti order, use the Contact Us page. Contact Us
This disclosure applies specifically to the Google integration used by the oraTuti website and its internal WMS/admin application. oraTuti uses Google OAuth 2.0 and YouTube Data API v3 solely to upload oraTuti-created or administrator-approved videos to a YouTube channel explicitly authorized by the Google user.
oraTuti requests only https://www.googleapis.com/auth/youtube.upload. It stores the OAuth access token, refresh token when issued, granted-scope/connection status, and the YouTube video ID returned after a successful upload. The public YouTube URL is derived from that video ID. The application does not request youtube.readonly and does not read channel metadata, viewing history, subscriptions, comments, private videos, Gmail, Drive, contacts, calendars, or unrelated Google Account data.
OAuth credentials are used only to authenticate and maintain the user-authorized YouTube publishing connection. The returned video ID, derived URL and publication status are used only to record the upload result, associate it with the correct oraTuti product/content record, and avoid accidental duplicate publication.
OAuth credentials are stored server-side and are not exposed on the public website or to client-side JavaScript. Connections between the browser and oraTuti and between oraTuti and Google use HTTPS. Access is restricted to application processes and authorized operational tasks that require the credentials to operate the YouTube publishing feature.
oraTuti does not sell, rent, or disclose Google user data to advertisers, data brokers, information resellers, or unrelated third parties. Data is transmitted to Google/YouTube only as required to perform the user-authorized upload. Google user data is not used for targeted or personalized advertising, credit/lending decisions, generalized databases, or training generalized AI/ML models.
Human access to Google user data is not routine. It may occur only with the user's explicit permission for support/troubleshooting, when necessary to investigate a security incident, or when required by applicable law, and is limited to what is necessary.
Active OAuth credentials are retained while the YouTube integration remains active and they are needed for publishing. Users may revoke access through their Google Account third-party connection settings and may request deletion of stored OAuth connection data through the oraTuti Contact page. Credentials no longer required after a verified deletion request are deleted or rendered unusable. Publication IDs/logs may remain with the associated oraTuti content record unless earlier deletion is required.
oraTuti's use and transfer of information received from Google APIs complies with the Google API Services User Data Policy, including the Limited Use requirements.
This Google-data disclosure belongs to the oraTuti application and oratuti.com. Privacy, access, or deletion requests can be submitted through our Contact page.