Google data transparency

How Asteri uses Google data

Google integrations are optional. An organization owner or administrator chooses each connection separately, sees the requested permissions before approving them, and can disconnect at any time.

Separate grants

Signing in does not grant Gmail, Calendar, Drive, Ads, or Business Profile access.

Encrypted tokens

OAuth access and refresh tokens are encrypted at rest and transmitted over TLS.

Organization controls

Google data is isolated to the connected Asteri organization and its authorized users.

Google Sign-In

openidemailprofile
Data accessed
Your Google account identifier, name, email address, and profile image when you choose Google Sign-In.
How Asteri uses it
Create or sign in to your Asteri account and display your account identity. Sign-In credentials are kept separate from service-integration credentials.
Disconnection and retention
Your Asteri account identity remains until the account is deleted. You can unlink Google Sign-In through your Google Account permissions.

Google Calendar

calendar.eventscalendar.calendarlist.readonlyuserinfo.email
Data accessed
The connected account email, calendar list, and event data including titles, descriptions, locations, attendees, organizers, availability, and start/end times.
How Asteri uses it
Let an authorized user select calendars, create or update events for Asteri work, avoid scheduling conflicts, synchronize busy time, and remove Asteri-created events when the user chooses that behavior.
Disconnection and retention
Disconnecting removes the OAuth connection and Asteri calendar mappings and stops future synchronization. It does not delete unrelated events from Google Calendar.

Google Drive

drive.file
Data accessed
Only files and folders that the user creates with Asteri or explicitly opens or selects for use with Asteri, together with their names, types, sizes, links, and modification times.
How Asteri uses it
Browse authorized files, create folders, upload and download files, obtain user-requested links, and delete a selected Drive item when the user directs Asteri to do so.
Disconnection and retention
Asteri stores the encrypted OAuth connection. File bytes may pass through Asteri only to complete the requested transfer. Disconnecting deletes the stored connection and does not delete files from Google Drive.

Google Business Profile

business.manageuserinfo.email
Data accessed
Business accounts and locations, public listing details, reviews and reviewer display information, owner responses, posts, verification state, and performance metrics.
How Asteri uses it
Manage connected business locations, display and respond to reviews, publish business content, and report location performance to the authorized organization.
Disconnection and retention
Disconnecting immediately deletes the encrypted OAuth tokens and Asteri-cached Business Profile locations, reviews, posts, performance data, and related review-request history.

Google Ads and Data Manager

adwordsdatamanageruserinfo.emaildatamanager.partnerlink
Data accessed
The connected account email; accessible Google Ads customer accounts; campaign, ad-group, keyword, spend, performance and conversion-action information; and partner-link status when partner onboarding is used.
How Asteri uses it
Import marketing performance, connect leads and revenue to campaigns, configure and verify conversion actions, upload user-authorized conversion or event data, and create or remove a Data Manager partner link when requested.
Disconnection and retention
Disconnecting attempts to revoke the Google grant, deletes stored OAuth tokens and connection configuration, and stops future imports and uploads. Previously imported campaign and conversion records may remain as organization business records until account deletion or a verified deletion request.

Your controls

Asteri does not sell Google user data, use Google Workspace data for advertising, or transfer Google user data to advertising platforms. Our use and transfer of information received from Google APIs follows the Google API Services User Data Policy, including its Limited Use requirements.