FurtherOps
Privacy Policy
Last updated: July 29, 2026
Overview
FurtherOps (“the platform,” “we,” “us”) is an internal operations platform operated by Further for use by authorized employees of Further and its affiliated companies. It is hosted at https://ops.further.ai and access is limited to users signing in with an approved company Google Workspace account. This policy explains what data the platform accesses, how it is used, how it is protected, and the choices available to users — with particular attention to data obtained through Google APIs.
Information we access
When you sign in, we receive your basic Google profile information (name, email address, and profile image) to authenticate you and enforce access controls. When you explicitly connect an optional feature — such as exporting to Google Slides, attaching a Google Drive folder, or sending email — the platform accesses only the specific Google data described below, and only after you grant permission on Google’s consent screen.
Google user data and the scopes we request
FurtherOps requests the following Google OAuth scopes. Each is requested only when you choose to use the feature it powers, and each is scoped as narrowly as the feature allows.
openid, email, profileAuthenticates you and lets us enforce role- and resource-based access control. We do not use this information for advertising or share it outside the platform.
https://www.googleapis.com/auth/drive.fileUsed by the Connect tool. When you select a folder or files through Google's own file picker, we read the content of those specific items to build proposal and estimation context, and we create new files that the platform generates on your behalf. This scope grants access only to files you explicitly pick or that the app itself creates — never your full Drive.
https://www.googleapis.com/auth/presentationsUsed by Slides export and Slides Sync to create and update presentations that contain charts and metrics generated in the platform, so they can be delivered to your Google account. We only read and write presentations in connection with this export.
https://www.googleapis.com/auth/gmail.sendUsed by the email feature to send messages that you compose or trigger within the platform, from your own address. This scope only permits sending; it does not permit reading, searching, or modifying your mailbox.
We intentionally do not request broad Google Drive or Gmail read scopes. Access is limited to files you select, files the platform creates, and the specific actions described above.
How we use the data
- To provide the specific feature you requested (Drive attachment, Slides export, email).
- To store the minimum necessary to keep a connection working — for example, encrypted OAuth tokens so you don’t have to reconnect on every use, and, where a feature requires it, content you supplied so the feature can operate.
- To operate, secure, debug, and improve the reliability of the platform.
We do not use Google user data for advertising, we do not sell it, and we do not use it to train generalized artificial-intelligence or machine-learning models. Where the platform uses AI features, Google user data is used only to provide the requested feature to you.
Limited Use disclosure
FurtherOps’s use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
How we share data
We do not sell personal information. We share data only with infrastructure sub-processors that host and operate the platform on our behalf (for example, Google Cloud Platform), and only as needed to run the service. We may disclose information if required by law. Human access to Google user data is limited to a small number of authorized administrators, and only where necessary to operate, secure, or support the platform, to comply with law, or with your consent.
Data retention and deletion
We retain data only as long as needed to provide the platform. You can revoke FurtherOps’s access to your Google account at any time from your Google Account permissions page, which invalidates the stored connection. To request deletion of data associated with your account, contact us at the address below and we will delete it, subject to any legal retention obligations.
Security
The platform runs on Google Cloud with access restricted to authenticated company accounts. Connections are encrypted in transit, OAuth tokens are stored with restricted access, and access to underlying data is governed by role- and resource-based permissions. No system is perfectly secure, but we take reasonable measures to protect the data we hold.
Changes to this policy
We may update this policy from time to time. Material changes will be reflected by updating the “Last updated” date above.
Contact
Questions about this policy or requests regarding your data can be directed to Further at privacy@gofurther.com.