Welcome to Access Pilot ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our application to manage user permissions for various third-party platforms including Google, Meta, Microsoft, Shopify, and others.
Access Pilot's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. We request only the scopes necessary to manage user permissions and do not use data for advertising.
Data accessed via Meta (Facebook/Instagram) APIs is used solely to facilitate the management of business assets. We do not retain Meta user data beyond the duration of the active session required to grant access.
Our application integrates with the Microsoft Identity Platform to verify ownership of Microsoft Advertising and Clarity accounts. Usage of this data follows Microsoft's standard developer terms.
We use the information we collect to:
We implement industry-standard security measures to protect your data. Our application architecture emphasizes client-side processing, meaning sensitive access tokens often remain within your browser's secure memory and are not persistently stored on our servers. All data transmission occurs over SSL/TLS encrypted connections.
Access Pilot ("we," "our," or "us") uses Google OAuth 2.0 to authenticate users and facilitate secure access granting. Below is a detailed explanation of each permission we request and how we use the associated data.
Access Pilot's use and transfer to any other app of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Access Pilot serves two distinct user roles, Consultants and Clients, and handles their data differently.
Consultants may sign in to Access Pilot using Google Single Sign-On. When doing so, we collect:
Clients authenticate with their Google account when they open an Access Request Link sent by a Consultant. During this authentication, we collect:
We do not use Client email addresses for marketing, advertising, analytics, or any purpose other than identifying the grantor to the Consultant. Client identity data is not stored beyond what is necessary to complete and record the access-granting transaction.
These scopes are requested from Clients only during the access-granting process. Consultants do not authenticate with these scopes.
These scopes are requested from Clients only during the access-granting process. Consultants do not authenticate with these scopes.
These scopes are requested from Clients only during the access-granting process. Consultants do not authenticate with these scopes.
You can revoke Access Pilot's access to your Google account at any time by visiting your Google Account Permissions page and removing Access Pilot from the list of connected applications.
We may employ third-party companies to facilitate our service (e.g., payment processors, AI generation for reports). These third parties have access to your Personal Data only to perform specific tasks on our behalf and are obligated not to disclose or use it for any other purpose.
If you have any questions about this Privacy Policy, please contact us at privacy@accesspilot.io