Parafunnel ("Parafunnel," "we," "our," or "us"), operated by WebMar Studio, provides a multi-site funnel visualization dashboard for marketing agencies that connects to Google Analytics 4 (GA4). This Privacy Policy explains how we collect, use, store, share, and protect your information, including data we receive from Google APIs ("Google user data"), when you use our website and service at parafunnel.com.
By using Parafunnel, you agree to the practices described in this Privacy Policy.
2. Google API Services User Data Policy (Limited Use)
Parafunnel's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Specifically, we affirm that:
We only use Google user data to provide or improve user-facing features of Parafunnel that are prominent in the user's experience.
We do not use Google user data to serve advertisements, including personalized, targeted, retargeted, or interest-based advertising.
We do not sell Google user data to third parties, data brokers, or information resellers.
We do not transfer Google user data to third parties except (a) as necessary to provide or improve user-facing features, (b) to comply with applicable law, or (c) as part of a merger, acquisition, or sale of assets with notice to users.
We do not use Google user data to train or improve generalized or non-personalized artificial intelligence, machine learning, or large language models.
We do not allow humans to read Google user data, except: (a) with the user's explicit consent for specific messages, (b) where necessary for security investigations, (c) to comply with applicable law, or (d) where the data has been aggregated and anonymized for internal operations.
We do not use Google user data for creditworthiness or lending purposes, or to build user profiles or databases beyond what is required to provide the Service.
3. Google OAuth Scopes We Request
When you connect your Google account to Parafunnel, we request the minimum scopes needed to deliver the Service. You can review and revoke these permissions at any time at myaccount.google.com/permissions.
openid, email, profile: To authenticate you and identify your account.
https://www.googleapis.com/auth/analytics.readonly: Read-only access to your Google Analytics accounts, properties, and report data. Used solely to display funnel visualizations and aggregated metrics inside Parafunnel. We do not modify, create, or delete anything in your GA account.
Billing information: handled by our PCI-compliant payment processor (e.g., Stripe). We do not store full card numbers on our servers.
Support and communication data: messages, feedback, and correspondence you send us.
4.2 Google User Data We Receive
When you connect Google Analytics via OAuth, we access and store only what is required to render your dashboards:
Google OAuth access tokens and refresh tokens (stored encrypted at rest).
Your Google account email and basic profile (name, profile picture) used to confirm the connected account.
GA4 account IDs, property IDs, and property display names that you choose to connect.
GA4 report data: metrics (e.g., sessions, conversions, engaged users) and dimensions (e.g., page path, source/medium, country) retrieved via the Google Analytics Data API to build funnel visualizations.
We do not access Gmail, Drive, Calendar, Contacts, Ads, or any other Google service data.
4.3 Automatically Collected Information
Usage data: features accessed, pages viewed, clicks, session duration.
Device and log data: browser type, operating system, device identifiers, IP address, referring URL, timestamps.
Cookies and similar technologies (see Section 9 and our Cookie Policy).
5. How We Use Your Information
We use the information we collect only to provide, maintain, secure, and improve Parafunnel. Specifically:
To authenticate you and connect your Google Analytics properties.
To fetch, cache, and display GA4 funnel metrics and visualizations inside your dashboard.
To process subscription payments, send billing receipts, and manage your account.
To send transactional communications (account notices, security alerts, service updates).
To respond to support requests and feedback.
To monitor, debug, and improve reliability, performance, and security of the Service.
To detect, prevent, and address fraud, abuse, or violations of our Terms.
To comply with legal obligations.
Google user data is used only for the first two bullet points above, and never for advertising, AI model training, or resale.
6. How We Share or Disclose Information
We share information only in the limited cases below. Google user data is never shared with analytics partners, advertisers, or data brokers.
Service Providers (Sub-processors): We share information with vendors who host and operate Parafunnel on our behalf under contractual confidentiality and data-protection obligations. These include our cloud hosting provider (Hetzner), our payment processor (Stripe), and our transactional email provider. These providers access data only to the extent necessary to perform their services.
Aggregated, Non-Google Analytics: We use privacy-respecting product analytics to understand usage of parafunnel.com itself (e.g., which pages are visited). These analytics are scoped to our own site usage and do not include your Google user data.
Legal and Safety: Where required by law, subpoena, court order, or to protect the rights, property, or safety of Parafunnel, our users, or the public.
Business Transfers: In connection with a merger, acquisition, financing, or sale of assets, in which case we will notify you and honor this Privacy Policy.
With Your Consent: Any other sharing will occur only with your explicit consent.
We do not sell your personal information or Google user data.
7. Data Security
We apply industry-standard safeguards to protect your information, including Google user data:
Encryption in transit: All connections to Parafunnel use TLS 1.2 or higher (HTTPS).
Encryption at rest: OAuth access and refresh tokens, passwords, and sensitive database fields are encrypted at rest.
Access controls: Role-based access, least-privilege principles, and audit logging for engineering access to production systems.
Secure infrastructure: Our servers are hosted in data centers with physical security, firewalling, and regular patching.
Secret management: Google API credentials and other secrets are stored in a secrets manager, never in source code or client-side assets.
Monitoring: Continuous monitoring for unauthorized access, anomalous activity, and vulnerabilities.
No method of transmission or storage is 100% secure. If we become aware of a security incident affecting your personal data or Google user data, we will notify you and applicable authorities as required by law.
8. Data Retention and Deletion
8.1 Retention Periods
Account data: Retained for as long as your account is active.
Google OAuth tokens and GA4 report cache: Retained only while your Google integration is connected. Deleted within 30 days of disconnection or account deletion.
Billing records: Retained for up to 7 years as required by tax and accounting law.
Support correspondence: Retained for up to 24 months after the ticket is resolved.
Backups: Encrypted backups are retained for up to 30 days and then rotated out.
8.2 How to Disconnect or Delete Your Google User Data
You can remove your Google user data from Parafunnel at any time by any of the following methods:
Disconnect inside Parafunnel: Go to Settings → Integrations → Google Analytics → Disconnect. This immediately revokes our access and queues your stored tokens and cached GA data for deletion within 30 days.
Revoke via Google: Visit myaccount.google.com/permissions and remove Parafunnel. We will receive a revocation signal and delete associated tokens and cached data within 30 days.
Delete your Parafunnel account: Use Settings → Account → Delete Account, or email privacy@parafunnel.com. All personal data and Google user data will be deleted within 30 days, except where we are legally required to retain it (e.g., billing records).
8.3 Requesting a Copy or Deletion of Other Data
To request a copy, correction, or deletion of any personal information we hold, email privacy@parafunnel.com. We will respond within 30 days.
9. Cookies and Tracking Technologies
We use strictly necessary cookies for authentication and session management, and limited analytics cookies to measure how visitors interact with our website. You can control cookies through your browser settings. For details, see our Cookie Policy.
10. Your Rights
Depending on your location (including the EU/EEA under GDPR and California under CCPA/CPRA), you may have the right to:
Access the personal information we hold about you.
Request correction of inaccurate data.
Request deletion of your data, subject to legal retention requirements.
Object to or restrict certain processing.
Request data portability (receive your data in a machine-readable format).
Withdraw consent at any time, including by disconnecting your Google account.
Parafunnel is operated from the European Union and primarily hosted in the EU (Hetzner, Germany). If your data is transferred to a country outside your jurisdiction, we rely on appropriate safeguards such as Standard Contractual Clauses and provider certifications.
12. Children's Privacy
Parafunnel is a B2B product for marketing agencies and is not directed to children under 16. We do not knowingly collect personal information from children. If you believe a child has provided us data, contact us and we will delete it.
13. Third-Party Services
Parafunnel integrates with Google Analytics and relies on third-party vendors (payment processor, hosting, email). Their own privacy policies govern data they process independently. Key links: Google Privacy Policy, Stripe Privacy Policy.
14. Changes to This Policy
We may update this Privacy Policy. Material changes will be notified by email to the address associated with your account and by a notice on this page at least 30 days before taking effect. Your continued use of Parafunnel after the effective date constitutes acceptance of the updated policy.
15. Contact Us
For privacy questions, data requests, or to report a concern: