VEXPORA
The client portal
Vexpora is a managed digital marketing agency. The client portal is where a client sees what was done to their digital properties, and grants us limited permission to carry out that work in the accounts they own.
What the portal does
Records every change
Every change we make to a client site, its content or their channel is logged in the portal, with the before and after state. Clients see what was done without asking us.
Collects approvals
Content topics and keywords go to the portal for client approval before we write anything. The client rates, approves or rejects.
Connects client accounts
Delivering the service requires limited access to the client’s digital properties. That connection is made through the Google consent screen, never by handing over passwords.
The permissions we request
When a client connects their YouTube channel, the Google consent screen shows exactly the three permissions below. These are everything the app asks for.
youtube.force-sslEdit video details on the client channel
For example: fixing an existing video’s title and description so it can be found in search.
youtube.uploadUpload videos to the client channel
For example: publishing a video the client filmed and we edited for them.
yt-analytics.readonlyRead the channel’s viewership data
For example: how many views a video got this month, for the monthly performance report.
And what it does not
- Gmail and messages
- Google Drive and files
- Contacts
- Calendar
- Passwords
The three permissions above are the only ones the app requests. We do not hold the client’s password and never see it at any point.
Control stays with the client
- Revoke at any time
- A client can revoke access themselves at myaccount.google.com/permissions. Revocation is immediate and does not require contacting us.
- Access tokens are deleted
- Access tokens are deleted within 30 days of the engagement ending, or immediately on the client’s request.
- Used for one purpose
- The data is used solely to deliver the agreed service for that client. We do not sell it, do not pass it to third parties, and do not use it to train AI models.
Vexpora’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Questions
For questions about the portal, the permissions or the data we hold: vexpora@gmail.com
