Privacy Policy

Last updated: August 21, 2026

Overview

ImproveASO Funnels ("we," "us," or "our") is a Google Analytics 4 funnel-analysis service available at funnels.improveaso.com (the "Service"). It helps users discover GA4 properties and events, build and save funnels, visualize conversion and drop-off, and run saved funnels through user-authorized MCP clients.

This policy explains what information we collect, why we use it, how it is shared and protected, and how you can delete it. Questions can be sent to privacy@improveaso.com.

Information We Collect

Account information

  • Your Google account name, email address, profile image, and Firebase user identifier when you sign in.
  • Support messages you choose to send us.

Google Analytics information

When you separately connect Google Analytics, we request the read-only analytics.readonly permission. This lets the Service read Google Analytics account, property, and data-stream metadata; event names and parameters; aggregate event counts; and aggregate funnel results for properties you are authorized to access.

We also store the OAuth access and refresh tokens needed to maintain that connection. The permission is read-only: the Service cannot edit your Google Analytics properties or data.

Information you create

  • Saved funnel names, steps, filters, property and stream selections, and date settings.
  • MCP access-token metadata and audit records for actions performed through MCP.

How We Use Google User Data

  • Display the GA4 properties, streams, events, and parameters available to you.
  • Run the funnel analyses you request and show aggregate conversion and drop-off results.
  • Refresh your Google authorization so you do not need to reconnect on every visit.
  • Run saved funnels through an MCP client only when you create and provide an MCP token to that client.
  • Maintain security, prevent abuse, troubleshoot errors, and provide support.

We do not use Google user data for advertising, sell it, or use it to build advertising profiles. We do not allow humans to read your Google Analytics data except with your explicit consent for support, when required for security or legal compliance, or when the data has been aggregated so it cannot identify you.

Google API Services User Data Policy

ImproveASO Funnels' use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.

Storage, Security, and Retention

Account records, saved funnels, OAuth tokens, and MCP-token metadata are stored using Google Firebase and Google Cloud infrastructure. Data is protected in transit with HTTPS and by platform encryption at rest and access controls. MCP token secrets are stored only as cryptographic hashes after they are first shown to you.

We retain account and saved-funnel data while your account remains active. Google OAuth tokens are retained only while your Google Analytics connection remains active. Short-lived OAuth state records expire after approximately ten minutes. Audit and security records may be retained as reasonably necessary to protect the Service and meet legal obligations.

Sharing and Third-Party Services

We do not sell your personal information. We share information only as needed with:

  • Google Firebase and Google Cloud for authentication, hosting, databases, and server infrastructure.
  • Tawk.to if you use the optional support-chat widget.
  • An MCP client you authorize when you create an MCP token and configure that client to use the Service.
  • Authorities or advisers when required by law or reasonably necessary to protect rights, safety, and security.

We require service providers to process information only to provide their contracted services and subject to appropriate confidentiality and security obligations.

Your Choices and Data Deletion

  • Use the in-app Disconnect Google Analytics control to delete the OAuth tokens stored by the Service.
  • Revoke ImproveASO Funnels from your Google Account permissions page to stop Google authorization.
  • Revoke any MCP token from the in-app MCP access panel.
  • Delete individual saved funnels in the Service.
  • Request deletion of your account and associated Service data by emailing privacy@improveaso.com. We will verify the request and respond within 30 days.

Cookies and Local Storage

We use authentication storage and cookies needed to keep you signed in and remember app preferences such as theme selection. We do not use Google Analytics user data for advertising cookies or cross-site tracking.

Children's Privacy

The Service is intended for professionals and is not directed to children under 13. We do not knowingly collect personal information from children. Contact us if you believe a child has provided personal information to the Service.

Changes to This Policy

We may update this policy as the Service changes. We will update the date above and provide additional notice when a material change requires it.

Contact

For privacy questions or requests, email privacy@improveaso.com.