1. What Google data do we access?
RecensioAI requests access to your Google Business Profile through the following OAuth scope:
https://www.googleapis.com/auth/business.manage
With this scope we can read and manage the following data on your behalf:
- Business profile information (name, address, phone, hours, description)
- Reviews and ratings (text, stars, author, date, replies)
- Google Posts (messages, images, publish dates)
- Photos and media on your profile
- Q&A (questions and answers)
- Performance insights (searches, views, interactions)
2. How do we use this data?
We use this data solely to provide the services you have requested. Concrete examples:
- Sync reviews to your RecensioAI dashboard so you can manage and reply to them.
- Generate AI-assisted replies based on review text, which you can then edit and publish.
- Publish Google Posts from the RecensioAI dashboard.
- Display performance insights so you can monitor your visibility on Google Maps.
- Update your profile information from the dashboard.
3. Limited Use Statement
RecensioAI's use of information received from Google APIs, including information from the Google Business Profile API, adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Specifically, this means we will NOT use your Google data:
- sell, share, or transfer to third parties for advertising or AI training purposes;
- use for building user profiles for advertising purposes;
- use for purposes not directly related to providing our services.
4. Data Retention and Deletion
Your Google data is only retained while you have an active connection. You can at any time:
- Disconnect your Google Business Profile connection via your RecensioAI dashboard (Settings → Google Profile → Disconnect).
- Delete your account, after which all linked Google data will be deleted within 30 days.
- Submit a request via support@recensioai.com to have specific data deleted.
5. Security
All communication with Google APIs occurs via encrypted HTTPS connections. OAuth tokens are encrypted in our database and are not accessible to unauthorized parties. We implement Row Level Security (RLS) and strict access controls.
6. Website analytics (Google Analytics 4)
Alongside the business profile you can optionally connect your Google Analytics 4 property. This connection uses a separate OAuth client and a single, strictly read-only scope:
https://www.googleapis.com/auth/analytics.readonly
This scope is read-only: we cannot create, change or delete anything in your Analytics account. We read aggregated statistics only — never data about individual visitors:
- The number of visitors and sessions per period.
- Traffic sources (for example Google search, social media, direct).
- Most-viewed pages of your website.
- Conversion events such as phone clicks, direction requests and form submissions.
- The names of the Analytics properties you can choose from while connecting.
What do we use it for? Solely to display these numbers inside your own RecensioAI dashboard (Performance tab), translated into plain language next to your Google Business Profile statistics. We do not use Analytics data for advertising or to train AI models, and we never sell or share it with third parties.
Retention: we keep a cache of these aggregated numbers for as long as the connection is active, so your dashboard stays fast. The OAuth tokens are stored encrypted and are never readable by the browser or by other users.
Revoking access:
- In the app: Settings → Integrations → Google Analytics → "Disconnect". The tokens and the cached numbers are deleted.
- In your Google account: myaccount.google.com/permissions (Third-party access).
Our use of data from the Google Analytics APIs is likewise fully subject to the Google API Services User Data Policy, including the Limited Use requirements, as described in section 3 above.
7. Contact
Questions about this Google Data Use policy? Contact us at support@recensioai.com or view our Privacy Policy and Terms & Conditions.
