gog

Privacy Policy

How gog accesses, uses, stores and shares Google user data.

Last updated: 17 September 2026

  1. About this application
  2. Google data we access
  3. How we use the data
  4. How we store the data
  5. How we share the data
  6. Data retention and deletion
  7. Your rights and controls
  8. Google API Services User Data Policy
  9. Children's privacy
  10. Changes to this policy
  11. Contact

1. About this application

gog ("the Application") is a personal, self-hosted command-line client for Google Workspace services. It is operated by a single individual for their own personal use, on their own machine, against their own Google Account.

The Application is not a hosted or multi-tenant service. It has no public sign-up, no user database, and no third-party users. It is a personal-use application with fewer than 100 users — in practice, one. There is no separate data controller distinct from the operator; the operator and the sole user are the same person.

This Privacy Policy explains what Google user data the Application can access, how that data is used and stored, and how you can revoke access at any time.

2. Google data we access

Access is granted through Google's standard OAuth 2.0 authorization flow. Nothing is accessed unless you explicitly authorize it, and the Application can only reach the Google services covered by the scopes you grant. Depending on which services the operator enables, the Application may access the following categories of data:

Google serviceData accessible when authorizedTypical operation
GmailEmail messages, threads, headers, labels and mailbox settingsSearch, read, label, draft, send
Google CalendarCalendars, events, attendees, times and event metadataList, create, update events
Google DriveFiles, folders, file metadata, sharing metadataSearch, list, upload, download
Google DocsDocument content and structureRead, export
Google SheetsSpreadsheet cell values, ranges and sheet metadataRead, update, append
Google SlidesPresentation content and metadataRead
Google Contacts / PeopleContacts, contact groups and profile informationList, search
Google TasksTask lists and task itemsList, create, update
Google ChatSpaces, messages and membership metadataRead, send
Google MeetMeeting spaces and conference recordsRead
Google Forms / SitesForm definitions and site metadataRead
Apps ScriptScript projects associated with your accountRead, execute
Google AnalyticsAnalytics properties and performance metricsRead reporting data
Search ConsoleSearch performance, queries, impressions, indexed pagesRead reporting data
Google AdsCampaign, ad group, keyword and performance metricsRead reporting data
YouTubeChannel, video and playlist data associated with your accountRead
Google PhotosPhotos and albums you explicitly select or authorizeRead, upload
Google ClassroomCourses, coursework and rosters (education accounts)Read
Account basicsYour email address and basic profile identifierIdentify the authorized account

Which of the above is actually available depends entirely on the scopes you grant. Any service you have not authorized is inaccessible to the Application.

3. How we use the data

Google user data is used solely to perform the operations you explicitly request from the command line, on your own account. For example: searching your own mailbox, listing your own calendar events, or reading a spreadsheet you own.

Specifically, we do not:

4. How we store the data

The Application is designed to be stateless with respect to your Google content:

5. How we share the data

Your Google user data is not shared with anyone. It is transmitted only between your machine and Google's APIs, over encrypted HTTPS connections.

There are no third parties receiving your Google user data, no sub-processors, and no data resale of any kind. The only circumstance in which data might be disclosed is where required by applicable law or valid legal process — and because no Google content is retained, there is no stored data to disclose.

6. Data retention and deletion

Because Google content is not persisted, there is no retained Google user data to delete on a schedule. The only retained items are the OAuth credentials described in section 4.

You can delete these at any time:

7. Your rights and controls

At any time, and without needing to contact anyone, you can:

8. Google API Services User Data Policy

gog's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Limitations on use of Google user data are described in section 3 of this policy, and the data handling practices described here are limited to those disclosed above.

9. Children's privacy

The Application is a personal productivity tool operated by a single adult user. It is not directed to, marketed to, or intended for use by children under the age of 16, and it does not knowingly access data belonging to children.

10. Changes to this policy

This policy may be updated to reflect changes in the Application or in applicable requirements. The "Last updated" date at the top of this page will be revised accordingly. Because the Application serves only its operator, material changes take effect immediately upon publication.

11. Contact

For any question about this policy or about how your Google user data is handled: