Privacy Policy

Hermes Shakvis · last updated 23 September 2026

1. Who this covers

Hermes Shakvis ("the application") is a private, single-user automation tool operated by Syamsul ("the owner") on his own self-hosted server. It has exactly one user: the owner, using his own Google account. It is not a public service, it has no other users, and it is not offered for sign-up.

2. What Google data the application accesses

With the owner's explicit consent through Google's OAuth process, the application may access the following data in the owner's own Google account:

Google serviceScope requestedWhat it is used for
Gmail gmail.readonly, gmail.send, gmail.modify Reading the owner's inbox so the application can summarise, search and find messages; drafting and sending email on the owner's behalf (work letters and replies); labelling messages the owner has asked to be organised.
Google Drive drive Finding, creating, uploading and downloading files that belong to the owner, so that letters and reports can be produced and shared.
Google Sheets spreadsheets Creating and editing the owner's spreadsheets — entering work data such as progress claims, quantities and material lists.
Google Docs documents Creating and editing documents — drafting letters and work documents for the owner.

No other Google data is requested or accessed. The application does not request access to the owner's Google Calendar or Contacts.

3. How the data is used

The data is used solely to carry out tasks the owner has asked for, inside his own account: reading and sending his email, and creating and editing his documents and spreadsheets. Nothing is used for advertising, profiling, analytics, marketing or any other purpose.

4. Data sharing

The application does not sell, rent, share or transfer Google user data to any third party. Google data is not used to train or improve any machine-learning or artificial-intelligence model, and it is not transferred to any human other than the owner.

5. Storage and retention

The application does not keep a separate copy or database of Gmail message content, Drive files, Sheets data or Docs content. Email and documents are read from, and written to, the owner's own Google account at the moment a task is carried out. A short-lived OAuth access token and refresh token are stored on the owner's own server so the connection can be maintained; no message or file content is stored there. Deleting that token (or revoking access in the Google account) ends the application's access immediately.

6. Security

The connection uses Google's OAuth 2.0 with tokens scoped only to the services listed above. The tokens live on a server controlled by the owner, with file permissions restricted to the owner's own account. Transport to Google is over HTTPS.

7. Revoking access

The owner can revoke the application's access at any time at myaccount.google.com/permissions (Third-party apps & services). Access can also be revoked from the Google Account security page. Revocation takes effect immediately.

8. Limited Use statement

Hermes Shakvis's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

9. Children

The application is not directed at children and has no users other than its owner.

10. Changes

If this policy changes, the revised version will be published at this address with an updated date.

11. Contact

Questions about this policy or about data handling: [email protected].