Our code can only access your data while you’re accessing the add-on. We don’t sync your data to our own servers and we don’t have any direct access to your data.

We use Google’s PropertyService which allows us to attach limited data (such as saved API requests) to the spreadsheet itself and to the user, on Google’s servers. We then use Google Apps Script which runs exclusively on Google servers.

The only data that syncs to our servers is the data entered and sent to Stripe (our payment processor) during the subscription process. When you install the add-on, we also collect your email address for email marketing purposes.

We collect analytics data that uses a unique identifier for you and tracks app usage such as running API requests.

We at Apipheny do not have access to view any of the information stored in your Sheets nor any of your saved API parameters/headers.

An example of the data collected is that a user made 40 API requests this month (with no further details beyond when each request was triggered). This limited data is collected so that we can better understand feature usage and cater further development to user needs.

This is what you will see when you install and open Apipheny for the first time:

Apipheny Privacy and Permissions

Every app that Google approves must go through a strict security & privacy approval process, including ours. Google’s Cloud Platform/API Trust & Safety Team has approved the Apipheny add-on for the 4 following “scopes”, which you can see on the OAuth screen in the screenshot above:

1. See, edit, create, and delete your spreadsheets in Google Drive – Scope: https://www.googleapis.com/auth/spreadsheets. This permission allows the add-on to manipulate the spreadsheet to be able to insert the API data.

2. Connect to an external service – Scope: https://www.googleapis.com/auth/script.external_request. This permission is necessary for the add-on to be able to make API calls to external applications.

3. Display and run third-party web content in prompts and sidebars inside Google applications – Scope: https://www.googleapis.com/auth/script.container.ui. This permission allows the add-on to be inserted into the menu of Google Sheets so you can open the add-on in a sidebar and make API requests.

4. Allow this application to run when you are not present – Scope: https://www.googleapis.com/auth/script.scriptapp. One of the features of the add-on is the ability to schedule API requests to run every hour, day, week, or month. This scope allows the add-on to create triggers to run the scheduled API requests.
 
When you install and open the add-on for the first time, Google will ask you to allow access for the 4 permissions listed above.

We do not have access to view any of the information stored in your Sheets or any of your saved API information. All of your spreadsheet/API information is stored by Google and we don’t have access to it.
 
None of your API or spreadsheets information is synced to our servers.
 
Your payments and credit card information is stored by Stripe or AppSumo.
 
We also store your email address when you install the app for email marketing purposes. We do not share your email address with any third-parties. You can unsubscribe from our emails at any time.

Here you will find information describing the data collected by our website (the “Website”) and via our Google Sheets add-on Apipheny (the “Add-on”), hereinafter called the “Service”.

This Privacy Statement governs personal information we collects from customers, users and online visitors (“you” or “your”) in connection with your use of the Service, applications and services (including support and education), where we post or link to this Privacy Statement, as well as information we automatically collect from your online visits (e.g. data collected via cookies). For the purposes of this Privacy Statement, “personal information” means any information that, by itself, can identify you or can be combined with other information to identify you.

As a general code of conduct, we always try our best to minimize the amount of information we need to collect and use, while still providing you with the highest level of Service.

Information Collected and Used

Log data

Each access to our Website generates logs data that includes, but may not be limited to: your IP address, your web browser user-agent, the language preferences of your web browser, the date and time of your visits.

Each access to our Add-on generates logs data that includes an anonymous and temporary number that Google Sheets generates. As each call to your API is anonymous, in order to count the number of unique API calls we receive, we also make a hash of your sheet locale, id and timezone.

We may use your personal information for legitimate business purposes, including: to provide and deliver the Services you request; send you transaction information; including confirmations and transaction status; product and services information, updates, security alerts and support and administrative messages; administer your account, including verifying your information; respond to your comments and questions and provide customer support or other services; offer Live Chat assistance to facilitate; operate and improve our websites, products and services; provide you with information about products and services; perform other functions or serve other purposes, as disclosed to you at the point of collection, or as otherwise required or allowed under applicable law.

Billing Data

We collect your credit card information when your subscribe and pay to access to some part of the Service.

We never store your credit card information. All payment and billing operation and services are processed by Stripe. Stripe allows us to see when invoices are due, processing or paid, or any other status.

Cookies

We use Google Analytics, Rewardful, Google Ads, Quora Ads, HotJar, and Drift Chat on our Website. Our website and add-on uses cookies to collect statistics on your visits and interactions on our Website or Add-on, which includes cookies required for our affiliate program.

Service Providers

We may employ third-party companies and individuals due to the following reasons: to facilitate our Service; to provide the Service on our behalf; to perform Service-related services; or to assist us in analyzing how our Service is used.  An example of a third-party service provider we use is SendinBlue for email marketing.

Security

The protection of your data is important to us. We are striving to use, to the best of our knowledge, available means of protection. However, please be aware that no method of transmission over the internet, or method of electronic storage is 100% secure or reliable, and we cannot guarantee the absolute security of the Service.

Data Sharing

We will share the data we collected about you for any legal obligations and rights. We may disclose your personal information in these circumstances: In connection with the establishment, exercise or defense of legal claims; to comply with laws or to respond to lawful requests or legal process; for fraud or security monitoring purposes (e.g., to detect and prevent cyberattacks); to protect our rights or our employees rights; or as otherwise permitted by applicable law.

Retention of Data

We may retain your personal information data as long as is necessary to fulfill the purposes for which it was collected and in accordance with applicable law.

Deletion of Data

Your data is saved and attached to the spreadsheet that you use Apipheny with. To delete your data, first delete your saved API requests in each spreadsheet you used Apipheny with, before uninstalling Apipheny.

Children’s Privacy

The Service does not address anyone under the age of 18. We do not knowingly collect personally identifiable information from children under 13. In the case we discover that a child under 13 has provided us with personal information, we immediately delete this from our servers. If you are a parent or guardian and you are aware that your child has provided us with personal information, please contact us at support@apipheny.io so that we will be able to do necessary actions.

Changes to this Privacy Statement

We may update our Privacy statement from time to time. Thus, you are advised to review this page periodically for any changes. These changes are effective immediately after they are posted on this page.

Contact

If you have any questions, concerns or comments about this Privacy Statement or our privacy practices, please contact us via email at support@apipheny.io