Privacy & Google API data

Privacy Policy

Last Updated: July 23, 2026

This policy explains how Workspace by Aells, operated by Aells, collects, uses, protects, retains, and deletes information, including data received through Google APIs.

1. Scope and responsible service

This Privacy Policy applies to the public website and authenticated Workspace by Aells application available at workspace.aells.com. Workspace by Aells is a Business Operating System for company CRM, quotations, inventory, HRMS, finance, projects, tasks, and role-controlled workflows.

Aells is responsible for operating the application. Questions about this policy or Google API data can be sent to support@aells.com.

2. Information processed by Workspace by Aells

Account information

Identity and contact information supplied through the configured authentication provider, such as a user name, email address, user ID, company membership, role, and permissions.

Business records

Company-authorized records used by enabled modules, including CRM, quotations, attendance, daily work, payroll, leave, expenses, invoices, projects, tasks, and inventory.

Operational information

Security, session, audit, integration, and support information required to operate, troubleshoot, and protect the service.

3. Google API data we access

Google Drive and Google Sheets access is optional. A company member with the required permission must explicitly start the Google OAuth connection before Workspace by Aells can use Drive-backed features.

  • Google Drive files: files and folders created by Workspace by Aells or deliberately opened for the application through a connected workflow.
  • Google Sheets data: spreadsheet identifiers, sheet names, cell values, and related metadata required for company-controlled CRM lead and quotation workflows.
  • CRM lead data: manual and validated imported lead records written to, read from, updated in, or deleted from the company-owned lead Sheet.
  • Quotation files and registers: company-authorized quotation folders, generated documents, and register data used by the quotation workflow.
  • Connection credentials: OAuth access tokens, refresh tokens, expiry information, and the file identifiers needed to reconnect the company workflow.
  • Storage information: Google Drive storage-quota information used to warn an authorized company user when the connected Drive is nearing its limit.

Workspace by Aells requests only the Google Drive drive.file scope. This limited scope permits the application to use Google Sheets files created by, or deliberately opened with, Workspace by Aells without requesting access to every file in the connected account.

4. How Google user data is used

Google user data is used only to provide or improve the features the user and company request, including:

  • Creating or locating a private company CRM lead Sheet.
  • Reading and writing manual or validated imported CRM lead records.
  • Creating and managing company-authorized quotation folders, files, and registers.
  • Displaying connected Drive storage information and operational connection status.
  • Maintaining the authorized connection until the company disconnects it or the Google account owner revokes access.

Google user data is not used for advertising, retargeting, credit decisions, resale, data-broker services, or unrelated profiling. Google Workspace API data is not used to develop, improve, or train generalized artificial-intelligence or machine-learning models.

5. Storage, security, and company control

  • Company CRM and quotation files created through the integration remain in the connected Google account's Drive and are subject to that account's sharing settings.
  • Workspace by Aells stores only the integration metadata needed to operate the workflow, such as relevant file identifiers and connection status.
  • OAuth credentials are handled on the server and kept in restricted secret storage; they are not included in public pages or exposed to other company users through the browser interface.
  • HTTPS, authentication, company membership checks, role permissions, server-side authorization, session controls, and database access controls are used to protect application data.

The connected Google account owner controls Drive file ownership, sharing, and deletion. Workspace permissions separately control which authorized company members may operate the integration.

6. Sharing and transfer

We do not sell Google user data or transfer it to advertising networks, data brokers, or information resellers. Data may be processed by infrastructure, authentication, database, security, and support providers only as needed to operate and protect Workspace by Aells, under applicable confidentiality and data-protection obligations.

Information may also be disclosed when required by applicable law, legal process, or a valid government request, or when necessary to protect users, the service, or the rights and safety of others.

7. Retention, disconnection, revocation, and deletion

  • Google OAuth credentials are retained only while the company keeps the integration connected and the credentials remain necessary to provide the requested feature.
  • Using the in-product disconnect action removes the stored Workspace connection credentials and stops future authenticated Drive and Sheets operations until the company reconnects.
  • Disconnecting Workspace does not automatically delete company-owned files from Google Drive. The Google account owner continues to control and may delete those files directly in Drive.
  • Users can independently revoke Workspace by Aells access from their Google Account permissions page at any time.
  • Application metadata and business records are retained only for the period needed to provide the service, meet company instructions, resolve disputes, maintain security, or comply with applicable legal obligations.
  • A verified user or authorized company representative may request access, correction, export, or deletion by emailing support@aells.com. We verify the requester's authority before acting and process valid requests within the period required by applicable law and contractual obligations.
Manage Google Account access

8. Google API Services User Data Policy

Workspace by Aells' use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

This policy will be updated if the application changes how it accesses or uses Google user data. Material changes will be reflected by the updated date on this page and, when required, through an in-product notice.

9. Privacy contact

Workspace by Aells Privacy Team

Email: support@aells.com

Include the company name, affected account, and the type of privacy request. Do not send passwords, OAuth tokens, or other secret credentials by email.