This Privacy Policy describes how Quantum Shield Labs LLC ("QSL", "we", "us") handles information in connection with the QSL Backup Google Drive integration.
1. Scope
QSL Backup is an internal infrastructure backup and disaster-recovery integration. It is not offered as a general consumer service. This policy applies to the Google OAuth authorization and Google Drive access used by that integration.
2. Information the integration may process
- Google authorization data: OAuth access and refresh tokens needed to maintain the authorized connection.
- Basic account context: limited account information returned as part of the authorization flow where Google provides it.
- Google Drive objects used by QSL Backup: files and folders created or made available to the integration under its granted permission.
- Operational metadata: minimal logs needed to confirm backup success, failure, timing, and troubleshooting events.
3. Google Drive permission
QSL Backup is configured to use the Google Drive drive.file scope. This scope is intended to allow the application to see, create, and manage only the Drive files it uses, rather than granting broad access to unrelated files in the account.
4. Backup contents
Backup data is encrypted before being uploaded to Google Drive. Google Drive therefore stores encrypted backup repository objects rather than a directly readable copy of the protected server files.
5. How information is used
Information accessed through Google APIs is used only to operate, secure, verify, troubleshoot, and restore the authorized backup workflow. We do not use Google user data for advertising, profiling, or sale.
6. Sharing
We do not sell Google user data. Data is disclosed only as necessary to operate the backup workflow through the applicable infrastructure and cloud providers, to comply with law, or to protect the security and integrity of QSL systems.
7. Storage and security
OAuth credentials and tokens are kept on controlled infrastructure and protected using operating-system access controls appropriate to the service. Backup encryption keys and repository credentials are managed separately from the encrypted backup objects stored in Google Drive.
8. Retention and deletion
Authorization tokens are retained while the backup connection remains active and may be removed when the integration is revoked or decommissioned. Encrypted backup objects are retained according to QSL backup and recovery requirements and may be deleted when they are no longer required. Operational logs are retained only as needed for security and reliability purposes.
9. Revoking Google access
The Google account owner can revoke QSL Backup access at any time using Google Account security controls. Revocation prevents further Google API access until the application is authorized again.
10. Changes to this policy
We may update this policy when the backup architecture, permissions, or applicable requirements change. The effective date above will be updated when material changes are published.
11. Contact
For privacy or data-access questions related to QSL Backup, contact michael@quantumshieldlabs.dev.
Google API Services User Data Policy
QSL Backup's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including applicable Limited Use requirements.