Privacy Policy: Quixess Social (Google Analytics Integration)
Last updated: August 8, 2026
Quixess Social (“the Platform”) is published by Quixess Inc. This policy describes how we collect, use, store, and protect data when you connect your Google Analytics property to Quixess Social via Google OAuth 2.0 and the Google Analytics Data API. Quixess Social is an independent product and is not affiliated with, endorsed by, or sponsored by Google LLC.
1. Google API Services User Data Policy
Quixess Social’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Your use of data is also governed by the Google Privacy Policy.
We limit our use of Google user data to the practices explicitly disclosed in this policy. We do not:
- Transfer Google user data to third parties unless necessary to provide or improve user-facing features, with your consent, or for security or legal purposes.
- Use Google user data for serving advertisements.
- Allow humans to read Google user data unless we have your affirmative consent, it is necessary for security purposes, or it is required by law.
2. Data We Collect Through Google Analytics
2.1 Data you authorize via Google OAuth
When you connect your Google Analytics property, we request the following scopes. We only access data covered by the scopes you approve:
| Scope | Data accessed | Purpose |
|---|
| analytics.readonly | Website traffic, page views, sessions, acquisition, and audience metrics (read-only) | Display website analytics alongside social media performance in the dashboard |
| userinfo.profile, userinfo.email, openid | Basic Google profile (name, email, profile picture) | Identify your account and display connected account info |
2.2 Data handling after connection
| Data | Storage location | Purpose |
|---|
| OAuth access and refresh tokens | Our secured database, never exposed to the frontend | Authenticate read-only API calls to fetch your Analytics reports |
| Analytics report data | Fetched on demand and shown in your dashboard | Display website metrics; report data is read-only and is not modified |
| Basic account profile (name, email) | Per-tenant isolated database | Display your connected account |
2.3 Data we do NOT collect
- Personally identifiable information about your website’s visitors
- Gmail messages, contacts, or calendar data
- Google Drive files or documents
- Google Ads or billing information
- Data from properties or accounts you do not explicitly connect
3. How We Use Your Data
Data accessed through the Google Analytics integration is used exclusively to provide Quixess Social features:
- Analytics dashboard: Display Google Analytics website data alongside social media metrics for a unified view.
- Reporting: Summarize traffic, acquisition, and audience trends to help you understand content performance.
The Analytics scope is read-only. We never modify your Analytics configuration or data. We do not sell, rent, or share your Google data with third parties, and we do not use it for advertising or profiling.
4. Data Storage and Security
- All Google API communication uses HTTPS (TLS 1.2+).
- OAuth tokens are stored in our secured database and are never exposed to the frontend or included in client-side code.
- Connection data is stored in per-tenant isolated databases, ensuring your data is never mixed with another organization’s.
- Access tokens are short-lived (~1 hour) and automatically refreshed using the stored refresh token. Expired or revoked tokens are discarded.
- Infrastructure is hosted on secured cloud environments with role-based access controls.
5. Data Deletion and Revocation
You can revoke Quixess Social’s access to your Google Analytics data at any time through any of these methods:
- Disconnect from dashboard: Go to Settings → Connections, find your Google Analytics connection, and click “Disconnect”. The stored connection and tokens are deleted immediately.
- Revoke via Google: Go to Google Account → Third-party apps with account access, find Quixess Social, and choose Remove Access.
- Request via email: Contact [email protected] to request full data deletion.
When access is revoked, the stored connection and OAuth tokens are permanently removed from our systems within 24 hours.
6. Data Retention
- Analytics report data is fetched on demand and is not retained beyond the current session view, other than short-lived caching to keep the dashboard responsive.
- OAuth tokens are retained for as long as your Analytics property remains connected and your Quixess account is active.
- If you disconnect the property or delete your Quixess account, all related data and tokens are deleted within 24 hours.
7. Third-Party Services
The Google Analytics integration communicates only with:
- Google APIs (googleapis.com), Google Analytics Data API
- Quixess backend API: to store and process your data securely
No analytics SDKs, ad networks, or third-party trackers are involved in the Google Analytics integration.
8. Your Rights
You may:
- Revoke access at any time by disconnecting from your Quixess dashboard or removing the app from your Google Account settings.
- Request data deletion by disconnecting your account or contacting [email protected].
- Request a data export by contacting [email protected].
9. Children's Privacy
Quixess Social is not intended for use by anyone under the age of 13. We do not knowingly collect data from children through the Google Analytics integration or any other part of the service.
10. Changes to This Policy
We may update this policy from time to time. Changes will be posted at this URL and the “Last updated” date will be revised. Continued use of the Google Analytics integration after changes constitutes acceptance.
11. Contact
For questions about this privacy policy or your data: