Privacy policy

This policy explains how the Onlinq Google MCP Connector accesses and uses Google user data. It supplements the general Onlinq privacy statement.

Google data accessed

Purpose and use

Google data is used only to provide internal account inventory, analysis, and reporting to authorized Onlinq employees. It is not used for advertising profiles, sold, or made available through a client-facing or public service.

Storage, sharing, and security

The connector has no customer-data database and does not cache or persist Google Analytics, Search Console, or Google Ads report data. Only the OAuth refresh token required for continued access is stored server-side with restricted permissions. OAuth credentials and developer tokens are excluded from source control, logs, and tool output.

Google user data is not transferred to third parties except where required to provide Onlinq's contracted services or comply with law. Access is limited to authorized Onlinq personnel.

Retention and deletion

The OAuth refresh token is retained while the connector is authorized. Access and the stored token can be removed by revoking the Google OAuth grant. Requests concerning access or deletion can be sent to info@onlinq.nl.

Google API Services User Data Policy

The connector's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.