maassi privacy policy

Maassi Privacy Policy

Effective date: September 2, 2026

1. Who operates Maassi

Maassi is an internal operations application operated by Hash Ecommerce. This Privacy Policy describes how Maassi accesses, collects, uses, stores, protects, and shares information received through Google API Services.

Contact: hashecommerce@gmail.com

2. Google data Maassi accesses

After an authorised Google account owner grants consent, Maassi may access the following Google user data:

• Google Drive: file names, metadata, folder structure, permissions, and file content.
• Google Docs: document content and metadata.
• Google Sheets: spreadsheet content, values, structure, and metadata.
• Gmail: email messages, message metadata, attachments where required, labels, and mailbox state. Maassi may send messages and modify authorised mailbox content.
• Google Calendar: calendars, events, attendees, schedules, and related metadata. Maassi may create and update authorised events.

Maassi does not request access to Google Contacts.

3. Why this data is used

Google user data is used only to provide authorised Hash Ecommerce operations, including:

• Locating and reading business records.
• Creating and updating operational documents and spreadsheets.
• Reading and organising relevant business email.
• Sending communications explicitly authorised through business workflows.
• Reading schedules and creating or updating business calendar events.
• Maintaining continuity, security, and auditability of authorised operations.

Google user data is not used for advertising, behavioural profiling, data brokerage, or unrelated purposes.

4. How data is processed and stored

Maassi processes Google user data only when required for an authorised operational request or workflow.

OAuth credentials and operational information may be stored on Hash Ecommerce’s access-controlled server. Relevant content or operational outputs may also appear in restricted logs, task records, or conversation history where necessary to complete and document authorised work.

Access is restricted through account controls, server permissions, and least-privilege operational rules.

5. Data retention and deletion

OAuth credentials are retained while Google access remains authorised. Operational information is retained only while needed for the authorised business purpose, security, continuity, dispute resolution, or legal obligations.

Users may revoke access at any time through:

https://myaccount.google.com/permissions

Users may request deletion of applicable Google-derived data by emailing hashecommerce@gmail.com. Requests will be verified and applicable data deleted unless retention is required for legal or legitimate security purposes.

6. Data sharing and transfers

Hash Ecommerce does not sell Google user data.

Google user data is not shared with advertisers, data brokers, or third parties for their independent marketing purposes.

Data may be processed by infrastructure, communication, and application-service providers only where necessary to operate Maassi and provide the authorised function. Such processing is limited to operating and securing the service.

Data may also be disclosed where legally required or where necessary to protect users, Hash Ecommerce, or the service from fraud, abuse, or security threats.

7. Artificial intelligence and automated processing

Maassi may use automated systems to interpret authorised requests and produce operational responses. Google user data is used only to provide the requested or authorised functionality.

Hash Ecommerce does not use Google user data to train or improve generalised artificial-intelligence or machine-learning models.

8. Human access

Human access to Google user data is restricted to cases where the user has given permission, where access is required for security or abuse investigation, where required by law, or where data has been aggregated and anonymised for internal operational purposes.

9. Google Limited Use compliance

Maassi’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements:

https://developers.google.com/terms/api-services-user-data-policy

10. Security

Hash Ecommerce uses reasonable administrative and technical safeguards to protect credentials and Google user data, including restricted server access, file permissions, access controls, and credential revocation procedures.

No system can guarantee absolute security. Users should revoke access and contact hashecommerce@gmail.com if they suspect unauthorised use.

11. Changes to this policy

This policy will be updated if Maassi changes how it accesses or uses Google user data. Additional consent will be requested where required before materially different use begins.

12. Contact

Hash Ecommerce
https://hashecommerce.com/
hashecommerce@gmail.com