This policy explains what data mCRM ("we", "us") accesses when you connect a third-party account, how we use it, and your choices.
When you connect a service, we access only the data needed for the feature you enable, using the permissions you grant at sign-in. For Google Workspace this may include: sending email on your behalf (Gmail), reading calendar events you choose to sync, and reading Search Console and Analytics reporting for sites you own.
Connected-account data is used solely to provide the features you turned on inside mCRM (e.g. sending a customer email you composed, showing your schedule, displaying your own analytics). We do not use it for advertising, and we do not sell it.
mCRM's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not transfer Google user data to third parties except as necessary to provide or improve the features you use, for security, or to comply with law; we do not use it for advertising; and no humans read it except with your consent, for security, or as required by law.
Access tokens are encrypted at rest (AES-256-GCM) and stored per company. We keep connected-account data only as long as the connection is active.
You can disconnect any service at any time from the app's Connections screen, which revokes our stored tokens. To request deletion of your data, email [email protected] and we will remove it.
Last updated July 2026 · Privacy · Terms · [email protected]