In short
FlowOps uses your Google account to confirm who you are, and nothing more. It does not read your Gmail, your Drive or your Calendar. It does not sell anything to anyone, and it shows no advertising.
The rest of this page says the same thing in more detail, and explains what happens to the business information a rental company puts into FlowOps.
Who we are
FlowOps is software for small car rental companies, built and operated by the FlowOps team. Questions about anything on this page can go to flowopssupport@gmail.com.
Signing in with Google
When you choose Continue with Google, Google tells FlowOps three things:
- your name
- your email address
- your profile picture, if you have one
These are used to create your account, to show who is signed in, and to send you messages about the service. FlowOps requests only the basic sign-in permissions (openid, email and profile). It never asks for access to your Gmail, Google Drive, Google Calendar, Contacts or Photos, and it cannot read them.
FlowOps does not receive or store your Google password.
Limited Use
FlowOps's use and transfer of information received from Google APIs follows the Google API Services User Data Policy, including its Limited Use requirements. Information obtained through Google sign-in is used only to provide and improve FlowOps. It is never sold, never used for advertising, and never used to build advertising profiles.
Business information inside FlowOps
Separately from your Google account, a rental company using FlowOps stores its own working records in it. That normally includes customer names and phone numbers, WhatsApp messages exchanged with those customers, booking and rental records, photographs of vehicles and documents, and amounts charged.
This information belongs to the rental company. FlowOps holds it on that company's behalf so its staff can do their work. It is used to run the service and to fix faults in it — never for advertising, and never sold or rented to anyone.
If you are a customer of a rental company that uses FlowOps and you want your information removed, contact that company directly. They control their own records. We will help them carry out the request.
Where the information is kept
FlowOps runs on Supabase, which provides the database and file storage, on servers operated by Amazon Web Services. Information is encrypted in transit and at rest. Access is restricted to the account it belongs to, enforced by the database itself rather than only by the app.
FlowOps also connects to WhatsApp in order to send and receive messages on the rental company's own number. Messages passing through WhatsApp are also handled under WhatsApp's own privacy policy.
How long it is kept
Account information is kept while the account is open. Business records are kept until the rental company deletes them or closes its account. When an account is closed, its information is deleted within 90 days, except where a record must be kept longer to meet a legal or tax obligation.
You can ask for your own account to be deleted at any time by emailing flowopssupport@gmail.com. You can also disconnect FlowOps from your Google account at any time at myaccount.google.com/permissions.
Who else sees it
FlowOps does not sell, rent or trade information. It is shared only with the service providers needed to run the product — currently Supabase and Amazon Web Services for hosting, and WhatsApp for messaging — and only so far as they need it to do that job. It may also be disclosed where the law requires it.
Your rights
You can ask to see the information held about you, ask for it to be corrected, ask for it to be deleted, or ask for a copy of it. Write to flowopssupport@gmail.com and we will respond within 30 days.
Children
FlowOps is a tool for businesses and is not intended for anyone under 18. We do not knowingly collect information from children.
Changes to this policy
If this policy changes, the date at the top of the page changes with it, and account holders are told by email before any significant change takes effect.