Google API Privacy Policy
Effective date: 21 September 2026
This policy explains how WINMARQUE INSPIRE S.R.L., operating as Lynx Marketing („Lynx Marketing”, „we”, „us”), uses information obtained through Google APIs in the internal application called LYNX Marketing Ops. This application is a narrowly controlled agency operations tool available only to authorized personnel. It is not offered as a consumer service.
Google data we access
For the dedicated manager mailbox workflow, the application requests only the Gmail read-only scope https://www.googleapis.com/auth/gmail.readonly. This permission may allow the application to view email messages and settings in the Google Account that an authorized user explicitly connects.
The application does not request Gmail permissions to send, compose, modify, move, label, archive, or delete email. It cannot use this Gmail authorization to send messages or change mailbox content.
How we use Google user data
- To let authorized Lynx Marketing personnel review relevant business correspondence and operational information in the dedicated manager mailbox.
- To support internal agency workflows requested and controlled by the authorized account holder.
- To maintain security, diagnose errors, and protect the integrity of the authorized workflow.
Google user data is not used for advertising, profiling, or sale. We do not sell Google user data. We do not transfer Google user data to third parties except where necessary to provide or secure the application, to comply with applicable law, or with the user’s explicit direction. Human access is limited to authorized personnel where necessary for the internal workflow, security, support, or legal compliance.
Limited Use compliance
Our use and transfer to any other application of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Data minimization, storage, and retention
We access only the data reasonably necessary for the authorized internal task. OAuth credentials are protected using access controls and encrypted operating-system storage. We avoid retaining message content when transient processing is sufficient. Any operational data derived from Gmail is kept only as long as needed for the relevant agency workflow, security, audit, or legal obligations, and is then deleted or anonymized where appropriate. Retention periods may vary according to the business record and applicable legal requirements; we periodically review stored data and remove material that is no longer needed.
Security
We use reasonable technical and organizational safeguards, including least-privilege authorization, restricted personnel access, encrypted credential storage, and controlled operational environments. No method of storage or transmission is completely secure, so we cannot guarantee absolute security.
Revoking access and requesting deletion
You can revoke the application’s Google Account access at any time from Google Account third-party connections. Revocation prevents future access but does not automatically delete information that was lawfully retained before revocation.
To request deletion of Google-derived data held by Lynx Marketing, or to ask a privacy question, email office@lynxmarketing.pro. Please identify the connected account and the request. We may need to verify authority before acting and may retain limited information where required by law, security, or the establishment, exercise, or defense of legal claims.
Changes to this policy
We may update this policy when the application, legal requirements, or our practices change. The effective date above identifies the current version.
Contact
WINMARQUE INSPIRE S.R.L. / Lynx Marketing
Website: https://lynxmarketing.pro/
Privacy contact: office@lynxmarketing.pro