Privacy Policy

Last updated: 2026-08-28

This Privacy Policy explains how Hermes Workspace OAuth handles Google user data. Hermes Workspace OAuth is a private, owner-operated application for personal automation. It is not offered to the public.

Google data we access

When the account owner authorizes the application, it may access Gmail messages and settings needed for email workflows, Google Drive files, Calendar data, Contacts, Google Sheets, and Google Docs. The exact access is controlled by the scopes shown on Google's OAuth consent screen.

How data is used

Google data is used only to perform an explicitly requested personal workflow, such as reading or sending email, managing documents, or making a non-destructive backup. The application does not use Google data for advertising, profiling, credit decisions, or sale to data brokers.

Storage and sharing

OAuth credentials are stored on the owner's local machine with restricted file permissions. Drive backup adapters use separate local token copies to prevent refresh conflicts. Google data is not publicly exposed or sold. If the owner explicitly requests a workflow involving another configured automation service, only the data required for that workflow may be processed by that service.

Retention and deletion

The account owner controls the retention of Google data and backup copies. The owner may delete local copies, remove cloud backup copies, or revoke this application's access from Google Account security settings. Revoking access prevents future API access but does not itself delete files already stored in Google Drive.

Security

The application uses Google's OAuth 2.0 authorization flow and does not request or store the account password. No access token, refresh token, client secret, or private key is published on this website.

Contact

For questions about this application or this policy, contact lienyusen@gmail.com.