Privacy Policy for DriveHub
Last Updated: July 27, 2026 | Developer: Sovlix | [email protected]
Thank you for using DriveHub ("we," "us," or "our"). DriveHub is a Google OAuth application developed by Sovlix that allows WordPress websites to connect to Google Drive. This Privacy Policy outlines how we collect, use, and protect your information when you use DriveHub.
1. Information We Collect
1.1 Google Account Data
When you connect your Google account to DriveHub, we collect the following:
- OAuth Access Token - short-lived credential (1-hour expiry) used to make Google Drive API requests on your behalf.
- OAuth Refresh Token - long-lived credential used to obtain new access tokens automatically. Stored encrypted in your WordPress database.
- Google Account Email Address - collected to identify which Google account is connected. Displayed in DriveHub plugin settings.
- Google Drive File Metadata - file names, IDs, MIME types, and thumbnail URLs retrieved on demand to display file listings. Not permanently stored on your server.
- Google Drive File Content - retrieved or streamed on demand when a configured feature previews, embeds, downloads, or uploads a file. DriveHub does not permanently copy this content to your WordPress server.
1.2 Google Drive OAuth Permission
DriveHub requests the https://www.googleapis.com/auth/drive scope, which allows it to see, edit, create, and delete all files in the connected Google Drive account. This full Drive permission is requested for every connection. Selecting an application folder or specific folder in DriveHub controls which folders a configured module displays or uses; it does not reduce the OAuth permission granted by Google.
1.3 Connection Data
When the optional Sovlix OAuth proxy is used during the connection flow, your WordPress website URL and a short-lived authorization code are transmitted through the proxy server solely to complete the OAuth token exchange. This data is not stored after the exchange is complete.
2. Purpose of Data Collection
Google user data collected by DriveHub is used exclusively to:
- Authenticate API requests to Google Drive on behalf of the connected account.
- Browse, list, and display Google Drive files and folders on your WordPress website.
- Allow file uploads from your website directly to specified Google Drive folders.
- Generate embed links and previews for Drive files displayed on your site.
- Support role-based and user-specific folder access as configured in DriveHub settings.
DriveHub does not use Google data for advertising, profiling, analytics, or any purpose beyond the core file management features above. It does not access Gmail, Google Calendar, Google Contacts, or any other Google service.
3. Google API Services
DriveHub uses Google Drive API Services to enable Google Drive integration on WordPress websites. By using DriveHub to interact with Google Drive, you are also subject to the Google Terms of Service.
DriveHub's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
4. Google Privacy Policy
As DriveHub uses Google Drive API Services, your data may also be subject to Google's Privacy Policy. For more information on how Google collects and processes data, please refer to the Google Privacy Policy.
5. Data Sharing
We do not sell, rent, share, or transfer Google user data to any third party. OAuth tokens are stored only in your own WordPress database on your own server. Sovlix does not retain copies of your tokens after the OAuth connection is established.
6. Data Protection Mechanisms
We take the protection of your sensitive data seriously and have implemented the following security measures:
- Encryption: OAuth refresh tokens are encrypted using industry-standard encryption protocols before being stored in your WordPress database.
- HTTPS: All communication between your WordPress site, the Sovlix OAuth proxy, and Google uses HTTPS (TLS encryption). No credentials are transmitted in plaintext.
- Revocation: You can revoke DriveHub's access to your Google account at any time by visiting myaccount.google.com/permissions or from the DriveHub settings page.
7. Data Retention
Google OAuth tokens are retained in your WordPress database until you disconnect the Google account from DriveHub settings or delete the plugin. The Sovlix OAuth proxy does not store any tokens or user data after the initial connection is complete.
8. Third-Party Services
DriveHub relies on the following third-party services:
- Google Drive API - core integration. Subject to Google Privacy Policy and Google Terms of Service.
- Freemius - used for premium license management, billing, and updates. Subject to Freemius Privacy Policy.
9. Updates to the Privacy Policy
We may update this Privacy Policy from time to time. Changes will be reflected on this page with an updated date. Significant changes will be communicated via email to active users.
10. Contact Information
If you have any questions, concerns, or requests related to this Privacy Policy, you can contact us at:
Email: [email protected]
Website: sovlix.com/support
© 2026 Sovlix. All rights reserved. | DriveHub | Terms of Service