Privacy Policy
Effective date: July 17, 2026
1. Who we are
KumoMCP is a hosted Model Context Protocol (MCP) service that lets you connect your Google Search Console and Google Analytics data to AI assistants through a personal MCP URL. This policy explains what data we collect, why, and how you stay in control.
2. Information we collect
We collect only what the service needs to operate:
- Account data: your email address and, if you sign in with Google, your basic profile (email, name). If you register with a password we store a salted hash, never the password itself.
- Google OAuth tokens: when you authorize Google access we store the refresh token, encrypted with AES-256-GCM before it reaches our database.
- Google data accessed on your behalf: Search Console and Analytics data is fetched on demand when your AI assistant calls a tool, is returned to your MCP client, and is not retained as a copy on our servers.
- Usage logs: tool name, timestamp and endpoint identifier for each MCP call, used for quotas, abuse prevention and debugging. Logs never contain your tokens or your Google data.
- Cookies: session cookies required for sign-in. No advertising or cross-site tracking cookies.
3. How we use Google user data (Limited Use)
KumoMCP only requests read-only Google scopes (Search Console and, if you enable it, Google Analytics). We use this access solely to answer the queries you or your AI assistant make through your own MCP endpoint.
KumoMCP's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy (https://developers.google.com/terms/api-services-user-data-policy), including the Limited Use requirements.
We do not use Google user data for advertising, do not sell it, do not transfer it to third parties except as necessary to provide the service or comply with law, and do not allow humans to read it except with your consent, for security purposes, or where required by law. We do not use Google user data to train machine-learning models.
4. Data sharing
We do not sell or rent your data. We share data only with the infrastructure providers that run the service (hosting, database, email delivery), bound by their own confidentiality obligations, or when required by law.
5. Data retention and deletion
You can disconnect Google from your dashboard at any time; this revokes the connection and invalidates the stored token. You can also revoke access from your Google account's security settings.
To delete your account and all associated data, contact us at [email protected]. We delete account records, encrypted tokens and endpoint keys; aggregate usage statistics that contain no personal data may be retained.
6. Security
OAuth tokens are encrypted at rest (AES-256-GCM), traffic is encrypted in transit (TLS), each customer's MCP endpoint is isolated from every other tenant, and we request the minimum, read-only scopes needed for the service to work.
7. Changes to this policy
We may update this policy as the service evolves. Material changes will be announced on this page with an updated effective date.
8. Contact
Questions about privacy? Email [email protected].