Google API Compliance

Last updated: June 1, 2026

Google API Services User Data Policy — Limited Use Compliance

waai's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

How We Handle Your Google Data

  • Minimum scope. We only request the OAuth scopes necessary to provide the features you enable — Google Calendar (read/write events), Google Drive (read/upload/share files), Google Docs (read/template documents), and Google Sheets (read/append rows).
  • Purpose-limited use. Data received from Google APIs is used solely to deliver the requested waai features. We do not process Google data for any purpose unrelated to the services you have explicitly enabled.
  • No selling or sharing. We do not sell, rent, or transfer Google API data to third parties for any purpose.
  • No advertising. Google API data is never used for advertising, analytics, or any purpose beyond providing the waai service.
  • Encrypted at rest. All Google OAuth tokens are encrypted at rest using Fernet symmetric encryption and are never stored in plaintext.
  • User control. You may revoke waai's access to your Google data at any time by disconnecting the plugin from the waai Settings page or through your Google Account Permissions page.

Data Retention

Google API data is retained only for as long as the plugin connection is active. When a customer disconnects their Google account, stored OAuth tokens and any cached Google data are deleted from our systems.

Limited Use Disclosure

The use and transfer of raw or derived user data received from Google Workspace APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Contact

If you have questions about how waai handles Google API data, please contact us at hello@waai.me.